What permissions does UNITIX Soft CRM request?
Only calendar.events.owned, calendar.freebusy, and userinfo.email. It does not request Gmail, Drive, Contacts, People, or full Calendar access.
Can visitors see my event details?
No. Booking availability uses busy ranges and exposes only whether a slot is available. Conflict responses do not expose another event's title, description, participants, exact conflicting time, or Google metadata.
What is stored?
The connected email, calendar identifier, granted scopes, encrypted OAuth tokens, expiry, CRM-linked Google event identifiers and links, Meet links, and safe synchronization state.
Why does the card say Reconnect required?
The stored grant does not include the current minimum scopes, commonly because it was created before the permission update. Existing access may continue temporarily, but reconnecting is required to grant and record the new scope set.
Can another CRM user see my Google credentials?
No. OAuth credentials remain encrypted and server-only. An authorized scheduler can explicitly choose you as the owner of a CRM meeting, after which UNITIX uses your connection only for that owned event; the scheduler cannot read your tokens, unrelated calendar events, or private provider metadata.
What happens on Disconnect?
Disconnecting Google Calendar revokes Google access and removes the locally stored OAuth tokens and scopes. Existing CRM records and Google Calendar events are not automatically deleted.
For help, email support@unitixsoft.pro without sending credentials or tokens.
