Privacy Policy
1. Information We Collect
We collect information to provide and improve our Customer Dashboard service. The types of information we collect include:
1.1 Information from OAuth2 Providers
When you authenticate using third-party OAuth2 providers (Google, GitHub, Microsoft), we collect:
- Your email address
- Your name and profile information
- Unique identifier from the OAuth2 provider
- Avatar/profile picture (if available)
1.2 Account Information
Information you provide when using our service:
- OAuth2 client credentials you create
- Dashboard preferences and settings
- Usage patterns and feature interactions
1.3 Technical Information
Information automatically collected when you use our service:
- IP address and device information
- Browser type and version
- Session information and cookies
- Access logs and usage statistics
2. How We Use Your Information
We use the collected information for the following purposes:
- Authenticate and authorize access to your account
- Provide and maintain our Customer Dashboard service
- Process and manage OAuth2 client credentials
- Improve our service functionality and user experience
- Communicate with you about service updates and support
- Ensure security and prevent unauthorized access
- Comply with legal obligations and protect our rights
3. Information Sharing and Disclosure
We do not sell, trade, or otherwise transfer your personal information to third parties, except:
3.1 Service Providers
We may share information with trusted service providers who assist in operating our service, including:
- Hosting and infrastructure providers
- Analytics and monitoring services
- Security and fraud prevention services
3.2 Legal Requirements
We may disclose information when required by law or to:
- Comply with legal processes or court orders
- Enforce our Terms of Service
- Protect our rights, property, or safety
- Investigate fraud or security issues
3.3 OAuth2 Providers
Your authentication information is shared with the respective OAuth2 providers (Google, GitHub, Microsoft) as part of the authentication process. Please review their privacy policies for information about their data practices.
4. Data Security
We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of data in transit and at rest
- Regular security assessments and updates
- Access controls and authentication requirements
- Monitoring and logging of system activities
- Secure development and deployment practices
5. Data Retention
We retain your personal information only as long as necessary to provide our service and fulfill the purposes outlined in this Privacy Policy. Specifically:
- Account information is retained while your account is active
- OAuth2 client credentials are retained until you delete them
- Access logs are retained for security and operational purposes
- Inactive accounts may be deleted after extended periods of inactivity
6. Your Rights and Choices
You have the following rights regarding your personal information:
6.1 Access and Portability
- Request access to your personal information
- Export your data in a machine-readable format
- Review your OAuth2 client credentials and settings
6.2 Correction and Updates
- Update your profile information
- Correct inaccurate personal information
- Modify your dashboard preferences
6.3 Deletion
- Delete your account and associated data
- Remove specific OAuth2 client credentials
- Request deletion of your personal information
7. Cookies and Tracking Technologies
We use cookies and similar technologies to enhance your experience and provide our service. These include:
- Session cookies for authentication and security
- Preference cookies to remember your settings
- Analytics cookies to understand service usage
You can control cookie settings through your browser preferences, but disabling certain cookies may affect service functionality.
8. Third-Party Services
Our service integrates with third-party OAuth2 providers and may contain links to external websites. This Privacy Policy does not cover the practices of these third parties. We encourage you to review their privacy policies:
9. International Data Transfers
Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place to protect your information during such transfers.
10. Children's Privacy
Our service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If we become aware that we have collected such information, we will take steps to delete it promptly.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of any material changes by:
- Posting the updated policy on this page
- Updating the "last updated" date
- Sending email notifications for significant changes
12. Contact Information
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us through the support channels available in your dashboard.