IAC Treasury Privacy Policy
Effective Date: January 31, 2025
This privacy policy describes how IAC Treasury ("we", "our", or "the app") collects, uses, and protects your personal information.
Information We Collect
Personal Information
- Email address: Used for account creation and authentication
- Name: Associated with your user profile
Financial Information
- Offering amounts: Cash, coin, and check totals
- Check details: Donor names, amounts, and memo information
- Photos: Images of envelopes and checks
Usage Information
- Audit logs: Records of who accessed or modified data
- Session metadata: Timestamps and user IDs for offerings created
How We Use Your Information
- Authenticate and manage user accounts
- Process and record church offering information
- Maintain financial records and audit trails
- Enforce role-based access controls
- Comply with church accounting and reporting requirements
Data Storage and Security
All data is stored using Google Firebase Cloud Platform with the following security measures:
- Encryption in transit: All data transmitted using HTTPS/TLS
- Encryption at rest: Firebase Firestore encrypts all stored data
- Access controls: Role-based permissions enforced by Firebase Security Rules
- Authentication: Firebase Authentication with email/password and optional SMS MFA
- Data location: United States (Firebase us-east1 region)
Who Can Access Your Data
- Ushers: Can view only their own offering sessions
- Treasurers: Can view all offering records and audit logs
- Administrators: Can manage users, roles, and access all data
- You: Can view data according to your assigned role
Third-Party Services
We use the following third-party services that may collect data:
- Google Firebase: Authentication, database, and cloud storage (Privacy Policy)
- Google Cloud Platform: Infrastructure and hosting (Privacy Notice)
Data Retention
- User accounts: Retained until deletion is requested
- Offering records: Retained for 7 years per nonprofit accounting requirements
- Audit logs: Retained for 7 years for compliance purposes
Your Rights
You have the right to:
- Access your personal data stored in the app
- Request correction of inaccurate data
- Request deletion of your account and personal data
- Withdraw consent for data processing (may limit app functionality)
To exercise these rights, contact us at treasury@incarnationcanton.com or visit our data deletion page.
Children's Privacy
IAC Treasury is intended for use by church staff aged 18 and older. We do not knowingly collect information from children under 13.
Changes to This Policy
We may update this privacy policy from time to time. We will notify you of any changes by updating the "Effective Date" at the top of this policy.