Google Business Profile Reviews
Manage and respond to customer reviews from Ignite CRM
Ignite Web Design operates Ignite CRM, a multi-tenant agency CRM that helps our clients manage payments, contracts, client relationships, and marketing operations from a single dashboard. The Google Business Profile Review Integration is a dedicated module within that existing CRM infrastructure. It does not operate as a standalone application.
This page explains how the Google reviews feature works, what data we access on your behalf, and how we protect it.
Overview
The Google Business Profile Review Integration allows authorized users of Ignite CRM to:
- Authenticate their Google account via Google OAuth 2.0
- Connect one or more Google Business Profile locations they manage
- Retrieve and display customer reviews associated with those locations
- Compose and publish replies to customer reviews directly from the CRM dashboard
This feature exists solely to help businesses manage legitimate customer engagement on Google Business Profile. We do not use Google user data for advertising, resale, lead generation unrelated to review management, or training of external artificial intelligence models.
How the Integration Works
Access the Module Inside Ignite CRM
A logged-in CRM tenant user navigates to the Reviews or Google Business Profile section within their existing Ignite CRM dashboard. This module is part of the same authenticated CRM session used for contracts, payments, and other CRM features.
[CRM Dashboard] → [Reviews Module] → [Connect Google Business Profile]
Google OAuth Authentication
When a user chooses to connect Google Business Profile, they are redirected to Google's official OAuth consent screen. The user signs in with their Google account and grants Ignite CRM permission to access only the scopes required for review management.
Authentication method: Google OAuth 2.0 (authorization code flow)
We never request or store: Google account passwords, plain-text credentials, or unencrypted access tokens
Upon successful authorization, Google returns an authorization code. Our backend exchanges this code for access and refresh tokens. Refresh tokens are stored using industry-standard encryption at rest.
Location Selection & Business Information Retrieval
After authentication, the integration uses Google's Business Profile APIs to identify locations the authenticated user is permitted to manage and retrieve location metadata necessary to associate reviews with the correct business listing.
The user selects which location(s) to link to their CRM tenant account.
Review Data Retrieval
Once connected, Ignite CRM periodically synchronizes review data from Google Business Profile, including:
- Review text and star rating
- Reviewer display name (as provided by Google)
- Review date and unique review identifier
- Existing owner/manager reply (if any)
- Reply status and timestamps
Review data is displayed inside the CRM dashboard so agency staff and their clients can monitor customer feedback alongside other CRM workflows.
Composing and Publishing Review Replies
Authorized CRM users may draft a reply to a customer review within the dashboard. When the user submits a reply:
- The reply text is transmitted from Ignite CRM to Google via the appropriate Google Business Profile API endpoint
- Google publishes the reply to the corresponding review on Google Business Profile
- The CRM updates its local record to reflect the published reply and synchronization status
All replies are initiated by a human user acting on behalf of the business. Ignite CRM does not auto-generate fake reviews, bulk-post spam replies, or manipulate review content.
Ongoing Synchronization & Disconnection
- Review data is refreshed on a scheduled sync interval and on manual refresh
- Users may disconnect their Google account at any time from CRM settings
- Upon disconnection, we revoke stored OAuth tokens and cease API calls for that connection
Integration Architecture & CRM Context
| Attribute | Detail |
|---|---|
| Product name | Ignite CRM |
| Operator | Ignite Web Design |
| Deployment model | Multi-tenant SaaS CRM |
| Module type | Integrated feature within existing CRM infrastructure |
| Primary use case | Read and respond to Google Business Profile customer reviews |
| User type | Business owners, agency staff, and authorized CRM administrators |
| Authentication | Google OAuth 2.0 + existing CRM user authentication |
This integration is not a public consumer app, data broker, review marketplace, or advertising network. It is an operational tool for businesses and agencies already using Ignite CRM for client management.
Google APIs & Technical Disclosure
Ignite CRM accesses Google user data exclusively through official Google APIs under a Google Cloud API project owned and operated by Ignite Web Design.
APIs Utilized
| API | Purpose |
|---|---|
| My Business Business Information API | Retrieve and manage business location information associated with connected Google Business Profile listings |
| Google My Business API (Business Profile APIs) | List, read, and reply to customer reviews for connected locations |
OAuth Scopes Requested
Our application requests only the minimum scopes required to perform review management:
| Scope | Purpose |
|---|---|
| https://www.googleapis.com/auth/business.manage | Manage Google Business Profile information and engage with customer reviews on behalf of the authenticated user |
| https://googleapis.com | Base Google APIs scope as required for authorized access to Google API services via https://googleapis.com endpoints |
API Endpoints
All requests are made to official Google API endpoints under:
https://googleapis.comhttps://mybusinessbusinessinformation.googleapis.comhttps://mybusiness.googleapis.com(or successor Business Profile API hostnames as documented by Google)
We do not proxy Google user data through unauthorized third-party services.
Data Handling Summary
| Data Type | Stored? | Purpose |
|---|---|---|
| OAuth refresh tokens | Yes (encrypted) | Maintain authorized API access between sessions |
| OAuth access tokens | Transient only | Short-lived API request authorization |
| Cached review content | Yes | Display reviews in CRM dashboard; reduce redundant API calls |
| Review metadata (rating, date, IDs) | Yes | Associate reviews with CRM tenants and locations |
| Google account passwords | Never | Authentication is handled entirely by Google OAuth |
| Plain-text tokens or unhashed secrets | Never | All credentials are encrypted or ephemeral |
For full details, see our Privacy Policy — Section 11: Google API Services & Business Profile Data.
Compliance Commitments
Ignite Web Design commits that Ignite CRM's use of information received from Google APIs will:
- Comply with the Google API Services User Data Policy, including the Limited Use requirements
- Comply with applicable Google Business Profile policies
- Use Google user data only to provide and improve the review management functionality described on this page
- Not sell, rent, or transfer Google user data to third-party ad networks, data brokers, or external AI model providers
- Not use Google user data for serving advertisements or building advertising profiles
User Controls
CRM users can:
- Connect or disconnect their Google account at any time
- Select which Business Profile locations to link
- Request deletion of stored Google-related data by contacting Ignite Web Design
- Revoke access independently via Google Account Permissions
Contact & Policy Links
Related policies:
Questions About This Integration?
We're happy to answer any questions about Ignite CRM and our Google reviews integration.
Contact Us