Loading...
Loading...
We collect the minimum needed to run a student club, protect it like it matters — because it does — and never sell it. Here is exactly what that means.
Three promises, kept by design
Account basics: your name, email, and whatever you add to your profile — bio, avatar, skills, and portfolio links. Profiles marked private stay private and never appear on public pages like Leadership.
Membership and participation: applications, attendance, roles, offices, and contributions to events, projects, and competitions.
Content you share: blog drafts and posts, gallery uploads, comments, and feedback — plus the metadata needed to review and attribute them.
Operational traces: audit entries for governance actions (who approved what, and when), ticket registrations, and basic security logs that keep everyone's accounts safe.
To run the club: membership decisions, event organization, tickets at the door, project coordination, and official notices.
To recognize contribution: publishing your work with attribution, certificates, and the public leadership register — only with your opt-in.
To keep people safe: verifying eligibility, enforcing the authorized-activity rule, investigating reports, and protecting Club systems.
We never sell personal data. Anonymized, aggregate statistics (like headcounts) may be shared with sponsors — never individual records.
Members see what you choose to make public: your opt-in profile, published posts, and event participation where relevant.
Officers see what their role needs and nothing more. The Treasurer sees payment records; the Membership Lead sees applications; the Cybersecurity Lead sees security-relevant logs. This is least privilege, and it is enforced by the system — not by promise.
Faculty Coordinators and institutional authorities may receive records where safety, discipline, or institutional compliance requires it.
Our infrastructure provider (Appwrite) stores the data on our behalf. We don't hand personal data to advertisers, data brokers, or unrelated third parties.
Access is role-based and audited. Sensitive actions — grants, approvals, Coffee? No. Grants, approvals, role changes — leave an audit trail.
Credentials and secrets are protected, never shared unnecessarily, and revoked when roles end. Club-controlled accounts belong to the Club, with named owners and handover paths.
No system is perfect. If a breach affects your data, we will tell you what happened, what we did about it, and what you can do — promptly, not eventually.
Active accounts: for as long as you are a member, plus the records the Charter requires us to keep (governance minutes, audit trail, financial records).
After you leave: profile and participation data is removed or anonymized on request, except records we must retain for institutional, legal, or audit reasons — and we will tell you which ones those are.
Published work with attribution stays published unless removal is agreed, since others may have built on it. We handle these case by case, fairly.
See what we hold about you, correct what's wrong, and ask for deletion where the Charter and institutional rules allow it.
Control visibility: keep your profile private, stay off the public leadership page, and opt out of event photography in advance.
Opt out of non-essential communications at any time. Official governance notices (like election announcements) may still reach you while you are a member.
Write to [email protected]. A real officer — not an autoresponder — handles these requests.
We use the minimum needed to keep you signed in and remember preferences like theme. No advertising trackers, no cross-site profiling.
Embedded content (event images, linked videos) may set its own cookies per that provider's policy. Your browser controls remain yours.
Questions about your data? [email protected] · See also our Terms of Service.