Privacy policy
mcp.rwv.dev is a single-operator service. The operator's own AI assistants can query Google Search Console, Google Analytics, Google AdSense, Bing Webmaster Tools and Afdian. Clients with Afdian write permission can also send private messages and change automatic replies.
What it stores
- OAuth refresh tokens for the operator's Google and Bing accounts, encrypted at rest, used only to request read-only access tokens.
- The Afdian creator ID and API token, configured as Worker secrets for signing Open API requests.
- Short-lived access tokens in a cache, and OAuth client registrations and grants for the MCP clients the operator approves.
- Operational logs without token values or personal data.
What it does not do
- It does not serve other users; only allow-listed GitHub accounts can sign in.
- It does not write to any Google or Microsoft service; every requested scope is read-only.
- Afdian write operations require the separate
afdian.open-api:writepermission. Requested message and reply content is sent to Afdian; query results can include customer and delivery information and are returned to the authorized client without being stored by this Worker. - It does not sell, share or retain data beyond what the connected MCP clients request during a session.
Google and Bing connections can be revoked at /connect or in their account settings. Afdian access can be removed by deleting its Worker secrets or revoking its API token with Afdian. MCP client grants can be revoked through this server's OAuth revocation endpoint.
Contact: the operator's GitHub profile linked from rwv.dev.