Privacy Policy

Your Data & Privacy

We are committed to protecting your privacy and maintaining transparency about the data we collect and how we use it.

What Information We Collect

CoreApps Identity is designed with privacy in mind. We collect only the essential information needed to provide authentication services:

  • Email Address: Required for account creation and authentication
  • Name: Optional - First and Last name if you choose to provide them
  • Authentication Data: Securely hashed password (if using password-based login) or OAuth provider ID (Google)
  • Session Tokens: Temporary tokens to keep you logged in, automatically deleted after expiration
  • Linked Applications: Record of which apps you've authorized to use your identity

We do NOT collect browsing history, usage analytics, location data, device information, or any other personal information beyond what's listed above.

How We Use Your Data

Your data is used exclusively for:

  • Authenticating you when you sign in
  • Providing single sign-on (SSO) to connected applications
  • Sending essential account-related emails (password resets, security notifications)

We do NOT sell, share, or use your data for marketing, advertising, or analytics purposes.

Your Data Rights

In accordance with privacy regulations (GDPR, CCPA), you have the right to:

  • Access: View all data we have about you
  • Rectify: Update your email, name, or password anytime
  • Delete: Permanently remove all your data (see below)
  • Portability: Request a copy of your data

Delete Your Account

Exercise your right to be forgotten

When you delete your account, we permanently remove:

  • Your email address and name
  • All authentication credentials
  • All session tokens and refresh tokens
  • Links to connected applications

Warning: This action is permanent and cannot be undone. You will lose access to all applications using this identity.

Start Deletion Process

Data Security

We implement industry-standard security measures to protect your data:

  • All passwords are securely hashed using industry-standard algorithms
  • All data transmission is encrypted using HTTPS/TLS
  • OAuth tokens are securely stored and automatically expire
  • Access to systems is strictly controlled and monitored

Questions or Concerns?

If you have any questions about this privacy policy or how we handle your data, please contact us at privacy@coreapps.com

Last updated: March 2026