CharitySync privacy policy
Effective July 25, 2026
Information processed
Depending on organization use and assigned role, CharitySync processes names, email and postal addresses, telephone numbers, account identifiers, household and membership relationships, attendance, events, training, communications metadata, donations, budgets, bank-account labels, expenses, and diagnostics.
Purpose and access
Information is used to provide organization administration, communication, programs, and financial recordkeeping. Users receive only the organization and page data allowed by their assigned role. CharitySync does not use organization data for advertising or cross-app tracking.
Storage and providers
Firebase provides authentication and cloud data services. A limited SQLCipher-encrypted local database supports queries and temporary offline operation. Device secure storage protects login tokens and local encryption keys. When outbound messaging is enabled, required delivery data is provided to the configured notification provider.
Retention and deletion
Administrators set retention appropriate to their organization and applicable obligations. Synchronization change history is normally retained for 30 days and notification receipts for 14 days. Financial or audit records may be retained when required. Signed-in users can export personal data and request deletion in the app. The login is disabled when an authenticated deletion request is accepted; deletable personal data is then removed after retention review.
Your choices
You may request access, export, correction, or deletion through the app or the public request page. Public requests require identity verification before data is disclosed or deleted.