Connected-source data use · version 2026-08-13.v1
What happens when you connect a source
This notice is the plain-language source-authorisation explanation approved for the Sprint 10 product path.
You choose the source
Prismatics starts OAuth only after you explicitly choose to connect Google Ads, Google Analytics 4, or another source that has been approved for the release. After authorisation, you select the eligible account or property Prismatics should map to the client.
Prismatics stores only service-required access
OAuth tokens are encrypted and stored server-side. Prismatics never asks for your advertising-platform password. Credentials are excluded from browser storage, exports, analytics events, support context, and user-facing errors.
Metrics stay source-labelled
Advertising-platform attribution, analytics-observed outcomes, currencies, date coverage, freshness, and missing data remain distinguishable. Prismatics does not add unlike conversion or revenue concepts together merely because multiple sources are connected.
Disconnecting stops future access
When a supported source is disconnected, Prismatics deletes its stored authorisation and future refreshes cannot use that authorisation. Previously imported facts remain under the account-retention policy until account deletion or another approved retention action removes them.
Account deletion
A confirmed account-deletion request stops source access immediately and schedules the Prismatics account and imported data for deletion within 30 calendar days. Minimal credential-free security/audit evidence may remain temporarily under the approved retention policy.