Privacy Policy for SheetConnect for Salesforce
Effective date: September 10, 2026
SheetConnect for Salesforce is a Chrome extension that adds a side panel to a Google Sheets spreadsheet the user has open. From that panel the user can import Salesforce object, list view, query and report data into a chosen worksheet, send user-confirmed record changes from a worksheet back to Salesforce, and convert values in a worksheet using Salesforce lookups. It works only with the Salesforce organization the user is already signed in to and the spreadsheet the user has open.
Data SheetConnect for Salesforce handles
The extension may handle the following data only to provide its user-facing import and update features:
- Authentication information: the Salesforce
sidsession cookie for organizations where the user is already signed in, read locally to authenticate requests to those same organizations; and a Google OAuth access token obtained through Chrome when the user selectsConnect Google. - Salesforce account and identity data: the selected Salesforce host, organization ID, user ID, and the username and display name returned by Salesforce APIs.
- Salesforce website and API content: object and field metadata, list view definitions and queries, report metadata and results, query results, record IDs and field values, and the results of user-confirmed record changes. This content may include personal data if the user's Salesforce organization stores such data and the user chooses to retrieve or update it.
- Google account and spreadsheet data: the spreadsheet ID and title, worksheet titles and IDs, and the
capabilities.canEditflag for the open spreadsheet; and the cell values of the worksheet the user selects, read as the input table for update and conversion tools or replaced by an import. - User-provided content: SOQL query text, the selected object, list view or report, data and header ranges, and header-to-field mappings.
- Local preferences and job records: the selected Salesforce organization, per-organization and per-worksheet source mappings, and Bulk API job records.
The extension does not collect browsing history, advertising identifiers, analytics, telemetry, mouse movement, scrolling behavior, or keystroke logs. It contains no ads.
How data is used
Data is used only to run what the user asks for: listing the Salesforce organizations the user is signed in to, listing objects, list views, reports and fields, running the selected query or report, writing the results into the selected worksheet, reading the selected worksheet to validate and submit record changes, and looking up Salesforce records to convert values. Salesforce writes and worksheet replacements require the user to confirm a summary naming the organization, object, worksheet and record count first.
Data sharing and transfers
Requests go only to the Salesforce organization the user selected and to the Google Sheets and Google Drive APIs for the spreadsheet the user has open. The developer operates no server and receives no user data. Salesforce data is transferred to the user's own Google spreadsheet, and worksheet data is transferred to the user's own Salesforce organization, in both cases only as the user directs. Data is not sold, and is not used for advertising or for training generalized models.
Storage and retention
- The Google access token stays in Chrome's own token cache. It is never written to extension storage and never passed to the side panel.
- The Salesforce
sidcookie stays managed by Salesforce and Chrome. It is never copied into extension storage and never returned to the side panel. When a user hides an unusable session, the extension records a SHA-256 fingerprint of thatsidso it can stay hidden, keeping at most 50 fingerprints. Hiding a session does not delete the Salesforce cookie or sign the browser out. - Source mappings — the selected object, list view, report, query text and grouping preference for a worksheet — are stored per organization and worksheet in Chrome extension storage on the user's device, keeping the 80 most recently updated.
- Bulk API job records hold the Salesforce job ID, object, operation, state, record counts, and, when a status column was requested, the target column and source row numbers plus a SHA-256 hash of the source rows used to detect edits. They contain no record field values, and the 20 most recent are kept.
- Salesforce result rows, worksheet cell values and generated CSV uploads are not persisted in extension storage; they are held only for the duration of the operation.
- All of the above is removed when the user clears Chrome extension storage or uninstalls the extension.
User controls
Users choose the Salesforce organization, the spreadsheet, the worksheet, the source or operation, and the rows and columns involved. Google access is requested only when the user selects Connect Google, and can be revoked at any time from the user's Google Account permissions page. Importing replaces a worksheet and updating Salesforce records both require an explicit confirmation naming the destination. Writing a status column back into the sheet is off by default. Users can remove local data by clearing Chrome extension storage or uninstalling the extension.
Security
The extension uses HTTPS for all network requests and packages its executable JavaScript, HTML and CSS with the extension. It does not execute remotely hosted code. Credentials are confined to the extension's background service worker; the side panel receives results only.
Limited Use disclosure
SheetConnect for Salesforce's use of information received from Google APIs adheres to the Chrome Web Store User Data Policy and the Google API Services User Data Policy, including the Limited Use requirements. Data is used only to provide the disclosed user-facing import, update and conversion features, is not used for advertising, is not sold, is not used to train generalized AI models, and is not made available for human reading except with the user's affirmative agreement for support, when necessary for security, to comply with applicable law, or after aggregation and anonymization for internal operations. The extension performs no developer-operated analytics or telemetry.
Independent product
SheetConnect for Salesforce is an independent product and is not affiliated with, endorsed by, or sponsored by Salesforce or Google. Salesforce, Google Sheets, Google Drive and Chrome are trademarks of their respective owners.
Contact
For privacy questions, contact the publisher using the verified contact email shown on the Chrome Web Store listing.