Quick Answer
Gemini Connected Apps can use information or content from another service with permission. Keep Activity is a major access control: when it is off, Connected Apps are unavailable on Gemini web, iOS, and smart watches, while Android retains only a limited set of communication and utility connections.
Turning off or disconnecting an app is not the same as deleting provider data, unlinking a third-party account, deleting Gemini activity, or revoking every downstream token. Review each control separately.
Four Different Controls
| Control | What it changes | What it does not automatically prove |
|---|---|---|
| Keep Activity | Affects availability of most Connected Apps and Gemini activity behavior | That provider-side data or links are deleted |
| Connect/disconnect in Gemini | Enables or disables Gemini’s use of that app | That the provider account is unlinked everywhere |
| Google Account third-party connection | Links or unlinks an external provider account | That Gemini history is deleted |
| Provider settings | Controls provider-side data, retention, actions, and account access | That Google-side activity is deleted |
For sensitive workflows, inspect all four.
Personal vs Work or School Accounts
Google’s general Connected Apps help is written for personal Google Accounts. Work and school accounts use separate guidance and can depend on administrator settings, service enablement, data protections, and organizational policy.
Do not move confidential organizational data into a personal account merely to gain an integration. If an app is missing from a managed account, record the exact app and ask the administrator to review the current Workspace guidance.
Keep Activity Boundary
Google currently documents:
- Keep Activity must be on for Connected Apps on Gemini web, iOS, and smart watches.
- On Android, Utilities, Phone, Messages, and WhatsApp can remain available when it is off.
- Google Search public information can still be used when Keep Activity is off or the user is signed out.
- Public information from Flights, Hotels, Maps, and YouTube has separate Keep Activity conditions.
This is not a universal privacy switch for every Google or third-party service.
Data-Minimization Checklist
Before connecting an app:
- Define the smallest task and data set needed.
- Review the app’s supported and unsupported actions.
- Review the provider’s privacy policy, retention, and account controls.
- Use a dedicated test record instead of live confidential data.
- Avoid unnecessary health, financial, identity, contact, or location details.
- Test read-only access first.
- Confirm who receives the data and where the result is stored.
- Disconnect and unlink unused access after the test.
For meetings, obtain participant authorization before sharing audio, transcripts, or notes. For websites, avoid exposing unpublished client content. For bookings, do not include payment or health details until the provider’s secure flow actually requires them.
Listed Apps vs Custom MCP
Google’s help lists custom apps as a separate Gemini Spark capability. A custom MCP server is operated by a third party and can receive task context. Google warns that it does not control, monitor, or secure a third-party server.
Use the Gemini Spark MCP guide for custom servers. A listed Connected App still needs permission review, but it should not be described as a custom MCP connection unless it was actually added by server URL.
Disconnect, Unlink, and Audit
After a pilot:
- disconnect the app in Gemini;
- unlink the external account if no longer required;
- revoke provider sessions or tokens where applicable;
- review Gemini activity and provider activity separately;
- inspect any created files, comments, bookings, or website changes;
- record the date, account, scope, and reviewer.
If the app performed a write, reversing access does not reverse the write. Delete or correct the external object through the provider.
Frequently Asked Questions
Does turning off Keep Activity disconnect every app?
No. It changes availability for most Gemini Connected Apps, but provider links, provider-side data, Gemini history, and some Android connections require separate review.
Can Gemini use Connected Apps when Keep Activity is off?
On Gemini web, iOS, and smart watches, Google’s help says Connected Apps are unavailable. Android retains a limited exception for Utilities, Phone, Messages, and WhatsApp.
Does disconnecting an app delete its data?
Not necessarily. Disconnecting Gemini access does not automatically delete provider-side records, unlink every account connection, remove Gemini activity, or reverse completed writes.
Are work and school accounts covered by the same privacy rules?
No. Google provides separate Connected Apps guidance for work and school accounts, and administrators can control availability. Follow organizational policy and the managed-account help.
Are custom Gemini Spark MCP apps covered by listed-app permissions?
No. A custom MCP server has its own operator, data handling, actions, and terms. Review it as a separate trust boundary.
Official Sources
- Google Help: use and manage Connected Apps
- Gemini Apps Privacy Hub
- Manage third-party connections to a Google Account
Next Decision
- Check the 2026 Connected Apps rollout guide.
- Apply booking-specific confirmation gates in the local actions guide.
- Generate an account-specific audit with the readiness tool.