Privacy Policy
Last Updated: December 2024
1. Introduction
Many Hands Task Tracker ("Many Hands," "we," "us," or "our") is committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our volunteer coordination and task management web application (the "Service"). Please read this policy carefully to understand our practices regarding your personal data.
2. Information We Collect
We collect several types of information to provide and improve our Service:
Account Information
- Email address (required for account creation)
- Display name (optional, can be set in account settings)
- Authentication data when you sign in via Google or Apple (name, email, profile identifier)
Usage Information
- Tasks you create, including titles, descriptions, and action items
- Volunteer sign-up information for your tasks
- Device information (browser type, operating system)
- Log data (IP address, access times, pages viewed)
Volunteer Information
When volunteers sign up for tasks, they provide their name, email address, and optionally a phone number. This information is collected to facilitate volunteer coordination and is visible to the task creator.
3. How We Use Your Information
We use the information we collect for the following purposes:
- To provide, operate, and maintain the Service
- To create and manage your user account
- To enable task creation and volunteer coordination features
- To send you service-related notifications and updates
- To respond to your inquiries and provide customer support
- To improve and optimize the Service through analytics and usage patterns
4. Legal Basis for Processing (GDPR)
If you are located in the European Economic Area (EEA), we process your personal data based on the following legal grounds:
- Contract Performance: Processing necessary to provide the Service you requested
- Legitimate Interests: Processing for our legitimate business interests, such as improving the Service
- Consent: Where you have given explicit consent for specific processing activities
- Legal Obligations: Processing necessary to comply with applicable laws
5. Information Sharing and Disclosure
We do not sell, rent, or trade your personal information. We may share your information only in the following circumstances:
- With volunteers who sign up for your tasks (task details and your contact preferences)
- With service providers who assist us in operating the Service (hosting, analytics)
- When required by law, court order, or governmental authority
- To protect our rights, privacy, safety, or property, or that of our users
6. Third-Party Services
We use the following third-party services to operate our platform:
- Supabase: For database hosting, authentication, and backend services (Privacy Policy: supabase.com/privacy)
- Vercel: For application hosting and deployment (Privacy Policy: vercel.com/legal/privacy-policy)
- Google/Apple: For optional social authentication (subject to their respective privacy policies)
7. Cookies and Tracking Technologies
We use cookies and similar technologies to enhance your experience:
Types of Cookies We Use
- Essential Cookies: Required for the Service to function, including authentication and session management
- Preference Cookies: Remember your settings such as language preference and theme (light/dark mode)
- Analytics Cookies: Help us understand how users interact with the Service to improve functionality
You can manage cookie preferences through your browser settings. Disabling certain cookies may affect the functionality of the Service.
8. Data Retention
We retain your personal information for as long as necessary to provide the Service and fulfill the purposes described in this policy:
- Account data is retained until you delete your account
- Task and volunteer data is retained until the task is deleted or your account is closed
- Log data is typically retained for 90 days for security and debugging purposes
9. Data Security
We implement appropriate technical and organizational measures to protect your personal information:
- All data is transmitted using SSL/TLS encryption
- Passwords are hashed using industry-standard algorithms
- Access to personal data is restricted to authorized personnel only
- Regular security assessments and updates are performed
10. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws. When we transfer data internationally, we implement appropriate safeguards such as standard contractual clauses to protect your information.
11. Your Rights (GDPR/EEA Users)
If you are located in the EEA, you have the following rights regarding your personal data:
- Right of Access: Request a copy of the personal data we hold about you
- Right to Rectification: Request correction of inaccurate or incomplete data
- Right to Erasure: Request deletion of your personal data ("right to be forgotten")
- Right to Restriction: Request limitation of processing of your data
- Right to Data Portability: Receive your data in a structured, commonly used format
- Right to Object: Object to processing based on legitimate interests
To exercise these rights, please contact us using the information provided below. We will respond to your request within 30 days.
12. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act:
- Right to Know: Request information about the categories and specific pieces of personal information we have collected
- Right to Delete: Request deletion of your personal information
- Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights
13. Children's Privacy
The Service is not intended for children under the age of 16. We do not knowingly collect personal information from children under 16. If we become aware that we have collected personal data from a child under 16 without parental consent, we will take steps to delete that information promptly.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last Updated" date. We encourage you to review this Privacy Policy periodically for any changes. Your continued use of the Service after changes are posted constitutes your acceptance of the updated policy.
15. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Email: hello@manyhands.app
We will respond to all legitimate requests within a reasonable timeframe.