Google Business Profile Reviews

Manage and respond to customer reviews from Ignite CRM

Last updated: September 2026

Ignite Web Design operates Ignite CRM, a multi-tenant agency CRM that helps our clients manage payments, contracts, client relationships, and marketing operations from a single dashboard. The Google Business Profile Review Integration is a dedicated module within that existing CRM infrastructure. It does not operate as a standalone application.

This page explains how the Google reviews feature works, what data we access on your behalf, and how we protect it.

Overview

The Google Business Profile Review Integration allows authorized users of Ignite CRM to:

  1. Authenticate their Google account via Google OAuth 2.0
  2. Connect one or more Google Business Profile locations they manage
  3. Retrieve and display customer reviews associated with those locations
  4. Compose and publish replies to customer reviews directly from the CRM dashboard

This feature exists solely to help businesses manage legitimate customer engagement on Google Business Profile. We do not use Google user data for advertising, resale, lead generation unrelated to review management, or training of external artificial intelligence models.

How the Integration Works

1

Access the Module Inside Ignite CRM

A logged-in CRM tenant user navigates to the Reviews or Google Business Profile section within their existing Ignite CRM dashboard. This module is part of the same authenticated CRM session used for contracts, payments, and other CRM features.

[CRM Dashboard] → [Reviews Module] → [Connect Google Business Profile]

2

Google OAuth Authentication

When a user chooses to connect Google Business Profile, they are redirected to Google's official OAuth consent screen. The user signs in with their Google account and grants Ignite CRM permission to access only the scopes required for review management.

Authentication method: Google OAuth 2.0 (authorization code flow)

We never request or store: Google account passwords, plain-text credentials, or unencrypted access tokens

Upon successful authorization, Google returns an authorization code. Our backend exchanges this code for access and refresh tokens. Refresh tokens are stored using industry-standard encryption at rest.

3

Location Selection & Business Information Retrieval

After authentication, the integration uses Google's Business Profile APIs to identify locations the authenticated user is permitted to manage and retrieve location metadata necessary to associate reviews with the correct business listing.

The user selects which location(s) to link to their CRM tenant account.

4

Review Data Retrieval

Once connected, Ignite CRM periodically synchronizes review data from Google Business Profile, including:

  • Review text and star rating
  • Reviewer display name (as provided by Google)
  • Review date and unique review identifier
  • Existing owner/manager reply (if any)
  • Reply status and timestamps

Review data is displayed inside the CRM dashboard so agency staff and their clients can monitor customer feedback alongside other CRM workflows.

5

Composing and Publishing Review Replies

Authorized CRM users may draft a reply to a customer review within the dashboard. When the user submits a reply:

  1. The reply text is transmitted from Ignite CRM to Google via the appropriate Google Business Profile API endpoint
  2. Google publishes the reply to the corresponding review on Google Business Profile
  3. The CRM updates its local record to reflect the published reply and synchronization status

All replies are initiated by a human user acting on behalf of the business. Ignite CRM does not auto-generate fake reviews, bulk-post spam replies, or manipulate review content.

6

Ongoing Synchronization & Disconnection

  • Review data is refreshed on a scheduled sync interval and on manual refresh
  • Users may disconnect their Google account at any time from CRM settings
  • Upon disconnection, we revoke stored OAuth tokens and cease API calls for that connection

Integration Architecture & CRM Context

AttributeDetail
Product nameIgnite CRM
OperatorIgnite Web Design
Deployment modelMulti-tenant SaaS CRM
Module typeIntegrated feature within existing CRM infrastructure
Primary use caseRead and respond to Google Business Profile customer reviews
User typeBusiness owners, agency staff, and authorized CRM administrators
AuthenticationGoogle OAuth 2.0 + existing CRM user authentication

This integration is not a public consumer app, data broker, review marketplace, or advertising network. It is an operational tool for businesses and agencies already using Ignite CRM for client management.

Google APIs & Technical Disclosure

Ignite CRM accesses Google user data exclusively through official Google APIs under a Google Cloud API project owned and operated by Ignite Web Design.

APIs Utilized

APIPurpose
My Business Business Information APIRetrieve and manage business location information associated with connected Google Business Profile listings
Google My Business API (Business Profile APIs)List, read, and reply to customer reviews for connected locations

OAuth Scopes Requested

Our application requests only the minimum scopes required to perform review management:

ScopePurpose
https://www.googleapis.com/auth/business.manageManage Google Business Profile information and engage with customer reviews on behalf of the authenticated user
https://googleapis.comBase Google APIs scope as required for authorized access to Google API services via https://googleapis.com endpoints

API Endpoints

All requests are made to official Google API endpoints under:

  • https://googleapis.com
  • https://mybusinessbusinessinformation.googleapis.com
  • https://mybusiness.googleapis.com (or successor Business Profile API hostnames as documented by Google)

We do not proxy Google user data through unauthorized third-party services.

Data Handling Summary

Data TypeStored?Purpose
OAuth refresh tokensYes (encrypted)Maintain authorized API access between sessions
OAuth access tokensTransient onlyShort-lived API request authorization
Cached review contentYesDisplay reviews in CRM dashboard; reduce redundant API calls
Review metadata (rating, date, IDs)YesAssociate reviews with CRM tenants and locations
Google account passwordsNeverAuthentication is handled entirely by Google OAuth
Plain-text tokens or unhashed secretsNeverAll credentials are encrypted or ephemeral

For full details, see our Privacy Policy — Section 11: Google API Services & Business Profile Data.

Compliance Commitments

Ignite Web Design commits that Ignite CRM's use of information received from Google APIs will:

  • Comply with the Google API Services User Data Policy, including the Limited Use requirements
  • Comply with applicable Google Business Profile policies
  • Use Google user data only to provide and improve the review management functionality described on this page
  • Not sell, rent, or transfer Google user data to third-party ad networks, data brokers, or external AI model providers
  • Not use Google user data for serving advertisements or building advertising profiles

User Controls

CRM users can:

  • Connect or disconnect their Google account at any time
  • Select which Business Profile locations to link
  • Request deletion of stored Google-related data by contacting Ignite Web Design
  • Revoke access independently via Google Account Permissions

Contact & Policy Links

Ignite Web Design

Email: hello@ignitewebdesign.ca

Website: ignitewebdesign.ca

Related policies:

Questions About This Integration?

We're happy to answer any questions about Ignite CRM and our Google reviews integration.

Contact Us