Skip to main content

GA4 Account Handling

Last Updated: June 2026

1. Purpose and Scope

This document describes how Duneside accesses, uses, stores, and protects data from Google Analytics 4 (GA4) properties you choose to connect. Duneside is a read-only analytics and reporting platform for marketing agencies. We access GA4 data solely to produce website performance reports and consolidated cross-channel insights.

This policy supplements our Privacy Policy and Terms of Service.


2. User Authority and Property Ownership

You retain full ownership and authorityover your GA4 properties and Google Analytics accounts at all times. Connecting a property to Duneside is entirely voluntary. By connecting, you confirm that you have lawful permission to grant read access to the property's analytics data.

Duneside does not take ownership of, transfer, or resell your GA4 properties or Google Analytics accounts. You may revoke access at any time using the procedure in Section 9 of this document.


3. Google Analytics Data API Access — Data We Retrieve

Our application uses the Google Analytics Data API to retrieve read-only reporting data from GA4 properties you authorize. Specifically, we access:

  • Session, user, and engagement metrics (e.g., sessions, active users, engagement rate, average engagement time)
  • Event and conversion data (e.g., key events, conversion counts, event parameters you report on)
  • Traffic acquisition and source/medium breakdowns
  • Page and landing page performance (e.g., views, entrances, engagement)
  • Device, geography, and channel breakdowns you configure for reporting
  • Historical analytics data for user-selected reporting periods

We request only the minimum API scopes necessary to deliver the reporting features described above.


4. How We Use GA4 Data

Data retrieved from your GA4 properties is used exclusively to:

  • Generate website and marketing performance reports for your agency and clients
  • Provide consolidated reporting across multiple marketing channels within Duneside
  • Display analytics dashboards and exportable summaries you configure

We do not use GA4 data for advertising delivery, audience building, tag configuration, or any purpose unrelated to analytics and reporting.


5. Read-Only Commitment

Duneside is a read-only platform. Through the Google Analytics Data API, we do not perform:

  • GA4 property, data stream, or measurement ID creation or modification
  • Google Tag Manager container or tag changes
  • Audience, segment, or conversion definition creation or editing
  • Data import, deletion, or retroactive data adjustments
  • Any other analytics configuration or administrative actions

All GA4 configuration and tag management remains your responsibility and must be performed directly in Google Analytics, Google Tag Manager, or tools you separately authorize.


6. Prohibited Business Activities

Duneside does not engage in, and does not permit use of our Platform for:

  • Selling advertising inventory or media placements
  • Generating artificial traffic, sessions, or events
  • Reselling, brokering, or transferring Google Analytics accounts or properties
  • Operating traffic arbitrage or similar business models
  • Modifying or manipulating analytics data on your behalf

Our business model is limited to SaaS analytics and reporting services for agencies.


7. Authentication and Data Security

Access to GA4 is established through Google's official OAuth 2.0 authorization flow. Duneside does not collect or store your Google account password. API tokens are stored securely and used only to retrieve authorized reporting data.

Data is transmitted over encrypted connections (TLS). We apply access controls and industry-standard security practices to protect stored analytics data.


8. Data Retention and Deletion

GA4 analytics data is retained only while your GA4 integration remains connected and as needed to provide reporting for your selected date ranges. When you disconnect in Duneside, or when Google authorization is revoked and our systems are notified, we delete the associated integration and stored GA4 analytics data within a reasonable timeframe, subject to any legal retention obligations.


9. Account Removal Procedure

You may disconnect your GA4 property from Duneside at any time. Complete the steps below to stop future data access and remove data stored by Duneside.

  1. Disconnect in Duneside: Sign in to Duneside. Open Clients and select the client whose GA4 property you connected. In the Integrations section, find Google Analytics 4 and click Disconnect. When you disconnect, Duneside immediately stops retrieving new GA4 data for that connection, removes the stored integration connection from our systems, and deletes synced GA4 analytics data associated with that integration. If you manage multiple clients, repeat this for each client where GA4 is connected.
  2. Revoke Google authorization: After disconnecting in Duneside, the Google user who originally authorized the connection must revoke Duneside's access at myaccount.google.com/connections or via Google Account → Security → Your connections to third-party apps and services. Select Duneside and choose Remove access. If your agency connects via a Google Analytics account shared across a team, this step must be completed by the same Google user who completed the OAuth sign-in.
  3. If you cannot sign in to Duneside: You may complete Step 2 in your Google Account. Revoking access is sufficient to immediately stop Duneside from retrieving new GA4 data. If you also need confirmation that stored data has been removed from Duneside, email support@useduneside.com with your agency or company name, the email address on your Duneside account (if known), and the GA4 property ID(s) you disconnected. We will confirm removal and assist with any remaining data deletion requests within a reasonable timeframe.
  4. Automated removal via Google: If you remove Duneside from your Google Account connections, Google may notify us through their platform removal processes. When that happens, Duneside will delete the associated integration and stored GA4 analytics data linked to that authorization.

10. Contact

For questions about GA4 data handling, API access scope, or account removal, contact support@useduneside.com.

Questions regarding this document or your connected advertising accounts? Contact support@useduneside.com