Privacy Policy
Last updated: 16 September 2026
ILIAS Sync is a private utility used by its developer to synchronize selected University of Mannheim ILIAS course materials with a private GitHub repository and Google Drive.
Google Drive access
ILIAS Sync uses the Google Drive API with the scope
https://www.googleapis.com/auth/drive.file.
This limited scope allows the application to work with files and folders that it creates or that the user explicitly makes available to the application.
The application uses Google Drive access only to create, upload, update, organize, locate, and verify files that belong to the ILIAS Sync workflow. File identifiers, file metadata, application properties, and content hashes may be processed to determine whether a file has already been synchronized or needs to be updated.
Data used by the application
Depending on the synchronization operation, ILIAS Sync may process:
- Google OAuth authorization credentials required to access the user's Google Drive;
- Google Drive file and folder identifiers and metadata;
- application-specific metadata used to associate Drive files with ILIAS files;
- course files that are uploaded to Google Drive as part of the synchronization.
How data is used
Google user data is used only to provide and maintain the synchronization functionality requested by the user. It is not used for advertising, profiling, or unrelated analytics.
Sharing and sale of data
Google user data is not sold. It is not shared with unrelated third parties. Data is processed only as necessary to operate the synchronization workflow and through the technical platforms required to provide it, including Google Drive and the infrastructure on which the synchronization runs.
Storage and security
OAuth secrets and refresh tokens are stored as protected configuration secrets and are not committed to the application's source code repository. The application requests only the Google Drive permission required for its file synchronization purpose.
Retention and deletion
Files created by ILIAS Sync remain in the user's Google Drive until they are deleted by the user or by the application as part of a future synchronization feature. Local synchronization metadata may be retained to identify files and avoid unnecessary duplicate uploads.
Revoking access
The user can revoke ILIAS Sync's Google account access at any time from the security settings of their Google Account. After access is revoked, the application can no longer access Google Drive unless the user authorizes it again.
Google API Services User Data Policy
ILIAS Sync's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.
Contact
Questions about this privacy policy can be directed to the developer using the developer contact information shown on the Google OAuth consent screen for ILIAS Sync.