Privacy

Privacy Policy

This policy explains how aca5o collects, uses, and safeguards personal data when you visit our websites, contact us, engage our services, or use Google sign-in.

What we collect

We collect information that you provide directly—such as name, email, company, and project details—and technical data generated through our products (for example usage metrics or device information).

If you sign in with Google, we receive the profile information and tokens necessary to authenticate you (such as your name, email address, and avatar) as permitted by the scopes you approve.

We only gather data that is necessary to deliver the requested service, improve our offerings, or meet legal obligations.

How we use personal data

  • Service delivery. Responding to enquiries, fulfilling contracts, and providing customer support.
  • Improvement. Analysing aggregated usage to enhance product experiences and reliability.
  • Legal. Meeting compliance requirements, preventing fraud, and responding to lawful requests.

Data sharing & retention

  • Processors. We share data only with trusted third parties—such as cloud providers or analytics platforms—that support our operations under strict confidentiality.
  • Retention. We keep personal data only for as long as it is needed for the stated purpose or as required by law, after which we delete or anonymise it.
  • Security. We protect information with encryption, access controls, and monitoring to prevent unauthorised access or disclosure.
Google API Services

Google sign-in data

When you use Google sign-in, we handle the associated OAuth information in line with the Google API Services User Data Policy and its Limited Use requirements.

Limited use commitments

  • Authentication only. Google data is used strictly to verify identity, create accounts, and maintain user sessions.
  • No advertising. We do not sell, share, or use Google data for ads or unrelated purposes.
  • Minimal scopes. We request only the scopes needed for sign-in and ask for consent before requesting anything new.

Storage & security

  • Token protection. Refresh tokens and credentials are stored in encrypted secrets management with access restricted to authorised personnel.
  • No offline access by default. Offline scopes are requested only when a product feature requires them and with explicit consent.
  • Auditing. We periodically review access logs and rotate credentials following security best practices.

User controls

You can revoke aca5o's access from your Google Account settings at any time. When we receive a revocation request, we revoke tokens and remove Google-derived data without undue delay.

Read more about the requirements we follow in the Google API Services User Data Policy.

Your rights & contact

You can request access to, correction of, or deletion of your personal data by contacting hello@aca5o.com. We respond to verified requests within 30 days.

To stop using Google sign-in with aca5o, remove our access in your Google Account settings or email us so we can revoke tokens and remove related Google data.

If we update this policy, we will post the changes here and revise the effective date.

Last updated: August 2024