← STZ LLC Privacy Policy

Argos IP — how we handle Google user data

Annex to the STZ LLC Privacy Policy · Last updated: August 14, 2026

Argos IP is a product of STZ LLC: a management platform for parliamentary offices. One of its features lets an office connect its own Google account to keep the representative's schedule in sync with Google Calendar.

This annex states specifically which Google data we access, why, for how long we keep it, and how to revoke access. It complements — and does not replace — the main policy.

The connection is optional and always initiated by the office. No Google data is accessed before someone in the office explicitly connects an account, and access can be revoked at any time from within the product.

1. Scopes requested, and why each one is required

Scope Why it is required
openid
userinfo.email
To identify and display which Google account is connected, so the office knows where its events come from and can safely disconnect it.
calendar.calendarlist.readonly To list the account's calendars so the office can choose which one to sync. Without it we could not offer the choice — only assume a calendar.
calendar.events To read events from the chosen calendar and show them in the product's Agenda, and to create/update/delete there the events created in the product. Sync is bidirectional; without write access the feature would not work.

We do not request the broad calendar scope, which would allow creating or deleting calendars and changing sharing permissions. We ask only for what is needed to operate events.

2. What we store

Events

From the chosen calendar we store: title, description, location, start and end date and time, all-day flag, recurrence rule, status (confirmed, tentative, cancelled), the event's Google identifiers, and the attendee list. Attendees are read-only: Argos IP never sends invitations or e-mails on the office's behalf.

Access credentials

We store the OAuth tokens (including the refresh token) needed to keep syncing without asking for authorization again on every use. They live in a restricted table reachable only by the product's internal services — never exposed to the browser, to other offices, or to third parties.

3. How the data is used

Solely to display and sync the schedule of the office that connected the account. Concretely:

Offices are isolated from one another: data from a connected account is only accessible to the staff of that office.

4. How we protect this data (security)

The Google Calendar data and the OAuth tokens are protected by the technical and organizational measures described in the main policy, applied to sensitive information:

5. Limited Use — what we do NOT do

Argos IP's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

In particular, data obtained from Google is not:

6. Where it lives and for how long

Data is stored on Supabase infrastructure, on servers located in the United States. Because the office and the data subjects are in Brazil, this constitutes an international transfer, addressed in the main policy.

Synced events remain for as long as the account stays connected. On disconnect, the office chooses whether imported events should be removed as well. Tokens are deleted immediately upon disconnect.

7. How to revoke access

There are two paths, and each works independently:

8. Contact

Questions, data subject requests or security incidents should be directed to our data protection officer, Irineu Claro Sturza, at company@stz.llc.