Privacy Policy
Last updated: August 2026
What we collect
When you sign in as an organizer, we store your name, email address, and Google account identifier solely to authenticate you and manage your access to the platform.
When credentials are issued to event participants, we store the recipient name, optional email, contribution description, and event details needed to generate and verify the credential.
How we use it
Your information is used exclusively to operate the mylaurea platform — authenticating organizers, issuing credentials, and displaying verified credential pages.
Third parties
We use Google Sign-In for organizer authentication. We do not sell or share personal data with any other third parties. The platform is hosted on AWS (Lambda, API Gateway, CloudFront, RDS Postgres).
Data retention
Organizer accounts and issued credentials are retained for as long as the platform is active. You may request deletion of your organizer account by contacting support.
Restricted operational delivery logs may retain keyed pseudonymous correlation handles for intended email recipients for the applicable log-retention period. These logs do not contain the raw email address, subject, or message content. The handles are used only to investigate delivery outcomes.
Workspace requests
When you request a workspace through our signup form, we store the contact details you provide — your name, your email address, and the community or program name — together with the plan and the recognition type you selected, and any optional notes you write.
We use this to review your request, respond to you, and, if we agree to proceed, set up your workspace. We do not sell personal data.
AWS is our infrastructure and email processor, and Google is an organizer-authentication provider. Requests are retained only as long as reasonably necessary for review, onboarding records, security, and our legal obligations.
If your address returns a complaint or a permanent delivery failure, we keep that address on a minimal internal no-send list so we do not email it again. That record is kept even if the request itself is deleted, solely to honor the no-send signal, and it holds no other details about you or your request.
To ask for access to, correction of, or deletion of a workspace request, use our support page.
Contact
For privacy questions, reach out via our support page.