Lens Desktop Privacy Policy — Google Cloud and Google Kubernetes Engine Integration
Last updated: September 10, 2026
1. Who we are and what this policy covers
Lens Desktop ("Lens") is developed and provided by Mirantis Inc., 900 E Hamilton Avenue, Suite 650, Campbell, CA 95008, USA ("Mirantis", "we", "us"). Mirantis is the data controller for the personal data described in this policy.
This policy explains how Lens handles data obtained from Google when you connect Lens Desktop to your Google Cloud account. It supplements the Mirantis Privacy Notice, available at https://legal.mirantis.com/#privacy-notice, which applies to all Mirantis products and services, including Lens, and describes our general practices regarding personal data, the legal bases on which we process it, international data transfers, data retention, your rights and how to exercise them, and how to contact us. Where this policy and the Mirantis Privacy Notice differ in relation to Google user data, this policy prevails.
This policy does not cover signing in to your Lens ID with a Google account or Google Workspace single sign-on. That sign-in process is a separate feature and is described in the Mirantis Privacy Notice.
2. What the Google Cloud integration does
Lens Desktop allows you to connect to your own Google Cloud account so that Lens can discover Google Cloud projects and Google Kubernetes Engine (GKE) clusters you have access to and help you connect to the clusters you select. This feature is optional and is activated only when you choose to connect Google Cloud from within Lens Desktop.
When you connect Google Cloud, Lens uses Google's OAuth authorization process. You will be shown the specific permissions Lens requests and may decline them. Lens requests only the permissions needed to provide this feature.
3. Information Lens accesses from Google
Depending on the permissions you grant, Lens may access the following information from your Google account and Google Cloud environment:
- Your Google account email address and account identifier, used to identify the connected account in Lens;
- Google Cloud project names, identifiers and related project metadata;
- GKE cluster names, locations, endpoints, status and configuration details needed to list clusters and establish a connection to them;
- OAuth access and refresh tokens issued by Google that allow Lens to call Google APIs on your behalf.
4. How Lens uses this information
Lens uses this information solely to provide and maintain the Google Cloud integration features you choose to use in Lens Desktop, namely displaying your Google Cloud projects and GKE clusters and connecting you to the clusters you select. Lens does not use this information for any other purpose.
Lens does not sell Google user data, does not use it for advertising or marketing, does not use it to determine creditworthiness or for lending purposes, and does not use it to develop, improve or train generalised artificial intelligence or machine learning models.
We process this information because it is necessary to provide the feature you have requested (performance of our contract with you or, where you use Lens on behalf of an organisation, our legitimate interest in providing the service to that organisation). Further detail on legal bases is set out in the Mirantis Privacy Notice.
5. Storage, security and retention
OAuth tokens and cluster configuration obtained through this integration are stored on your device and are protected using the operating system's secure credential storage where available. Lens uses these tokens only to call Google APIs on your behalf. Mirantis does not transmit your Google OAuth tokens to Mirantis servers.
Tokens are retained until you disconnect Google Cloud from Lens Desktop, revoke access through your Google Account, or uninstall Lens. Cluster connection information you have saved in Lens remains on your device until you remove it.
6. Sharing
Lens does not share Google user data with third parties except: (a) with Google itself in order to operate the integration; (b) with a third-party AI service only where you explicitly invoke an AI-assisted feature in Lens and choose to include selected Google Cloud context in that request; (c) with service providers acting on Mirantis' behalf under contractual confidentiality obligations; or (d) where required by law.
Any such sharing is subject to the Limited Use requirements described in section 8.
7. Your choices and how to revoke access
You may disconnect Google Cloud from Lens Desktop at any time through the Lens settings. Disconnecting deletes the stored OAuth tokens from your device. You may also revoke Lens' access at any time from your Google Account permissions page at https://myaccount.google.com/permissions.
You also have rights in relation to your personal data, which may include the right to access, correct, delete or restrict its processing and to object to processing. These rights, and how to exercise them, are described in the Mirantis Privacy Notice at https://legal.mirantis.com/#privacy-notice.
8. Compliance with Google's API Services User Data Policy
Lens' use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy (https://developers.google.com/terms/api-services-user-data-policy), including the Limited Use requirements.
9. Changes to this policy
We may update this policy from time to time. We will post the updated version on this page with a revised "last updated" date and, where the change is material, notify you through Lens Desktop or as otherwise described in the Mirantis Privacy Notice.
10. Contact
Questions about this policy or about how Lens handles Google user data may be directed to Mirantis using the contact details in the Mirantis Privacy Notice at https://legal.mirantis.com/#privacy-notice, or by email to dataprivacy@mirantis.com.