Application name: Seasons Alzheimer’s Care Reporting
Seasons Alzheimer’s Care Reporting is the internal reporting integration used by Seasons Alzheimer’s
Care & Assisted Living, San Antonio, Texas. This page describes what it is and what it does. It is
not a service for the public — families do not sign in to anything, and nothing here is required
in order to contact us or arrange a visit.
What this application does
Seasons’ administrators use a reporting tool built into this website. It signs in to Google
services that belong to Seasons and reads aggregate reporting information, so that the team can
see how the website is performing without exporting spreadsheets by hand. It is operated only by
authorised Seasons staff, behind an administrator sign-in.
Permissions requested, and why each one is necessary
- Google Analytics, read-only —
https://www.googleapis.com/auth/analytics.readonly.
This permission is required because every Analytics report in the application is produced by the Google
Analytics Data API. There is no other source for the property’s traffic, acquisition, engagement,
content, device, geography and event results. The application cannot edit the Analytics property, its
data streams, tracking configuration, event definitions, audiences or users, and it requests no
Analytics editing or management permission. - Google Search Console, read-only —
https://www.googleapis.com/auth/webmasters.readonly.
Aggregate search performance for this website: clicks, impressions, click-through rate and average
position. It does not change any Search Console property or setting. - Google Business Profile —
https://www.googleapis.com/auth/business.manage,
authorised separately. Limited to Seasons’ own business account and its own locations, so we can show
our own location details and genuine reviews. It does not manage other businesses, change ownership,
publish posts, run advertising, or reply to reviews automatically.
The reporting features the Analytics permission provides
Inside the protected administration area, Seasons Care → Google Analytics provides these
reports for the authorised Google Analytics 4 property, each retrieved live from the Analytics Data API:
- Overview — active users, total users, new users, sessions, engaged sessions,
engagement rate, events, key events, average engagement time and views. - Traffic acquisition — sessions, users and engagement by Analytics channel group.
- Source / medium — the specific referrer and medium behind each session.
- Landing pages — the first page of each session, with sessions, users and engagement.
- Content performance — every page by views, users, events and engagement time.
- Devices — the desktop, mobile and tablet split.
- Geography — aggregate country, region and city. This is never presented as an
individual visitor’s location. - Events — event names and counts as configured in the Analytics property. The
application reads event results; it cannot create or edit event definitions. - Date controls — last 7, 28, 30 and 90 days, current month, previous month, or a
custom range, each with an optional comparison against the preceding period. - Export and reporting — CSV export of the filtered results, a print-friendly view,
and inclusion of aggregate figures in the authorised weekly and monthly website-performance reports.
What it does not do
It requests no other Google data. It has no access to Gmail, Google Drive, contacts, calendars or
Google Ads, and no access to any Google account belonging to a website visitor. It never posts, sends or
publishes anything on your behalf. It stores no user-level identifiers, no individual event records and
no personal data about website visitors obtained from Google.
How this data is protected
- All communication with Google’s APIs uses HTTPS/TLS, and the administration screens and the
authorisation callback are served over HTTPS. - The stored Google authorisation credentials are encrypted at rest using AES-256-GCM. The encryption
key is derived from a secret held in a protected server configuration file outside the database. - Credentials are never displayed on any screen, never written into reports, exports or logs, and never
placed in a web address. - Every reporting screen requires an authenticated administrator; each action is capability-checked and
protected by a one-time security token. - Only read-only permissions are requested, and only the aggregate dimensions and metrics needed for the
reports listed above are retrieved.
Controls available at any time
- Disconnect reporting from this website, which deletes the stored credentials held here.
This is a local action and does not by itself withdraw the permission recorded in the Google Account. - Delete imported Google reporting data and delete cached Google API data,
each with an explicit confirmation. - Withdraw access at Google independently, at
Google Account → Third-party apps & services.
Your data
How this information is stored, how long it is kept, how it is protected and how access can be
withdrawn at any time are all set out in full in our
Privacy Policy, which also contains our Limited Use affirmation for
Google API Services. Our Terms of Use apply to this website.
Contact
Questions about this integration: getinfo@seasonsalzcare.com
or (210) 584-4238 — Seasons Alzheimer’s Care & Assisted Living, San Antonio, Texas.