How Lumis uses Google data

Last updated: October 8, 2026

Lumis, by Luminous Metrics, is a marketing analytics app. You connect your Google Ads, Google Analytics 4 and Google Search Console accounts to see your marketing performance in one dashboard, get reports and AI recommendations, and make or approve Google Ads changes from Lumis. This page lists every Google permission Lumis requests, what Lumis uses it for, and what Lumis never does with it. It adds detail to our Privacy Policy.

1. The Google permissions Lumis requests

Google shows these permissions on its consent screen when you connect. Google Ads has no read-only permission, so it is the only one that can change anything. Analytics and Search Console are read-only.

Google permissions requested by Lumis
PermissionWhat Google showsAccessWhy Lumis needs it
Google sign-inopenidAssociate you with your personal info on GoogleIdentityLets Google confirm which Google account is connecting, so Lumis links the connection to the right Lumis user.
Email addresshttps://www.googleapis.com/auth/userinfo.emailSee your primary Google Account email addressIdentityLumis reads your Google account email address to confirm you connected the account you meant to connect.
Basic profilehttps://www.googleapis.com/auth/userinfo.profileSee your personal info, including any personal info you've made publicly availableIdentityGoogle sends your name and profile picture with sign-in. Lumis uses them only to show who is signed in.
Google Adshttps://www.googleapis.com/auth/adwordsSee, edit, create, and delete your Google Ads accounts and dataRead and changeGoogle offers no read-only permission for Google Ads: this one scope covers both reading and changing. Lumis reads campaign performance for your reports. It changes your account when you make a change yourself in Campaign Manager or Campaign Builder, or when you approve a change an AI agent proposed.
Google Analyticshttps://www.googleapis.com/auth/analytics.readonlySee and download your Google Analytics dataRead-onlyLumis reads your GA4 reports so you can see website traffic and conversions next to your ad spend.
Search Consolehttps://www.googleapis.com/auth/webmasters.readonlyView Search Console data for your verified sitesRead-onlyLumis reads your Search Console performance so you can see how people find your site in Google Search.

2. Where each permission is used

Google sign-in (identity)

  • Connect Google (channel settings, onboarding, Add a data source)
  • Sign in with Google on the Lumis login and sign-up pages

Never: Lumis never uses it to access any other Google service or to sign you in to anything outside Lumis.

Email address (identity)

  • Onboarding: checks that the Google account you connect is the one you use for Lumis
  • Sign in with Google: your Lumis account email

Never: This permission does not give Lumis access to your Gmail. Lumis never sells or shares your email address and never adds it to marketing lists.

Basic profile (identity)

  • Sign in with Google: your name and profile picture fill in your Lumis profile
  • Connect Google: identifies the Google account being connected

Never: Lumis never reads your contacts, calendar, files or any other personal data, and never shares your profile.

Google Ads (read and change)

  • Google Ads reports: Overview, Keywords, Search Terms, Quality Score, Impression Share, Budget Pacing and Day of Week
  • Dashboard, reports and AI insights that use your campaign performance
  • Campaign Manager (Google Ads > Campaigns tab): pause or enable a campaign, change its daily budget, add or remove negative keywords
  • Campaign Builder (Google Ads > Campaign Builder tab): creates the campaign you reviewed, paused, when you click Apply to Google Ads
  • Actions: an AI agent proposes a change (pause a campaign, ad group or keyword, change a daily budget or bid, add a negative keyword). When you approve it, Lumis applies it, reads it back to check it and logs it
  • Change History: shows every change made through Lumis, and Undo reverses one when you click it

Never: Nothing changes in your Google Ads account until you approve it or click to make the change yourself: there are no automatic budget changes, and AI agents never switch a paused campaign, ad group or keyword back on. Lumis never deletes campaigns and never touches billing or account access.

Google Analytics (read-only)

  • Analytics (GA4) pages: sessions, users, traffic sources, engagement and conversions
  • Dashboard, attribution and cross-platform views
  • Reports and AI insights that use your website traffic
  • Connect Google: the list of GA4 properties you can choose from

Never: Read-only: Lumis cannot change your Analytics properties, settings or data.

Search Console (read-only)

  • Search Console pages: queries, pages, clicks, impressions, click-through rate and position
  • SEO insights and reports
  • Connect Google: the list of sites you can choose from

Never: Read-only: Lumis cannot add or remove sites, submit sitemaps or change any Search Console setting.

3. What Lumis reads

  • Google Ads: the accounts you can access and, for the account you choose, data such as campaigns, ad groups, keywords, search terms, budgets, spend, clicks, impressions, conversions, quality score and impression share.
  • Google Analytics 4: the properties you can access and, for the property you choose, reports such as sessions, users, engagement, traffic sources, pages and conversions.
  • Search Console: the sites you can access and, for the site you choose, search queries, pages, clicks, impressions, click-through rate and average position.
  • Your Google account: your email address, name and profile picture, to identify the account you connected.

4. The one permission that can change things: Google Ads

AI agents only propose changes. Nothing changes in your Google Ads account until you approve it (or click Save/Pause/Enable/Add/Remove in Campaign Manager, or Apply to Google Ads in Campaign Builder).

These are all the changes Lumis can make:

Campaign Manager (Google Ads > Campaigns tab)

  • Pause or enable a campaign
  • Change a campaign's daily budget (type the new amount and click Save)
  • Add or remove a negative keyword on a campaign

Campaign Builder (Google Ads > Campaign Builder tab)

  • Create a new campaign you have reviewed, with its budget, location and language targeting, ad groups, keywords, negative keywords and ads, when you click Apply to Google Ads. Lumis creates the campaign paused, so nothing runs or spends until you enable it.

After each change Lumis shows a confirmation, for example “Saved to Google Ads: Brand Search daily budget QAR 20 → 21”, and you can see the change in your Google Ads account.

Changes proposed by AI agents

Lumis's AI agents can propose a Google Ads change: pause a campaign, ad group or keyword, change a daily budget or bid, or add an exact-match negative keyword. You review each proposal and approve or reject it. Nothing changes until you approve it. Approved changes are applied by Lumis, checked, logged and can be undone. Lumis first checks that the value in Google Ads is still the one you approved against, applies the change, reads it back and records it in Change History, where you can undo it. AI agents never switch anything back on: you enable campaigns yourself.

Lumis never

  • Changes your Google Ads before you approve the change or click to make it yourself (scheduled agent tasks only write proposals)
  • Deletes campaigns, ad groups or ads
  • Changes billing, payment settings or who has access to your Google Ads account

5. Limited Use

Lumis's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

  • We never sell your data or use it to train AI models (Google API Services User Data Policy, Limited Use).
  • We use Google data only to provide the Lumis features described on this page.
  • We never use Google data for advertising.
  • We never use Google data to develop, improve or train generalized AI or machine-learning models. To produce the insights you ask for, relevant data is processed by our AI providers (Anthropic and Google) under terms that do not allow them to train their models on it.
  • We do not allow humans to read your Google data except with your consent, for security purposes, to comply with law, or for our internal operations.
  • Google data is encrypted in transit (TLS) and Google tokens are encrypted at rest (AES-256-GCM).

6. How to disconnect or revoke access

In Lumis

  • Go to Settings > Integrations, open the channel's settings and click Disconnect next to Google Ads, Google Analytics or Search Console. Lumis stops reading that account for the channel.
  • Delete a channel in Settings > Integrations to remove it and its Google connection from Lumis.

In your Google Account

Go to myaccount.google.com/permissions, select Lumis and remove its access. This immediately stops Lumis from reading or changing anything in your Google accounts.

7. Data retention and deletion

We keep your data for as long as your account is active. To delete your Google data or your whole account, email support-team@luminousmetrics.io. We remove stored Google tokens and cached Google API data within 30 days of your request.

8. Contact

Questions about how Lumis uses Google data? Email support-team@luminousmetrics.io. See also our Privacy Policy and Terms & Conditions.