Privacy Policy for Stack Rank Tool
Last Updated: January 30, 2025
Introduction
Stack Rank Tool ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our web application hosted on Google Cloud Platform and Firebase.
Information We Collect
Personal Information
We collect the following personal information through Google OAuth authentication:
- Google Account Information: Your Google account ID, email address, name, and profile picture
- Authentication Data: OAuth tokens and session information necessary for secure access
Campaign Data
When you create or participate in stack ranking campaigns, we collect:
- Campaign Information: Campaign names, item lists, participant email addresses, and campaign codes
- Ranking Data: Your individual rankings and preferences for campaign items
- Usage Data: Timestamps of campaign creation, participation, and submission
Technical Information
We automatically collect certain technical information:
- Log Data: Server logs, error reports, and performance metrics
- Device Information: Browser type, operating system, and IP address
- Usage Analytics: How you interact with our application
How We Use Your Information
We use the collected information for the following purposes:
Core Functionality
- Authentication: To verify your identity and provide secure access to the application
- Campaign Management: To create, manage, and display stack ranking campaigns
- Ranking Processing: To process and store your ranking submissions
- Results Display: To show campaign results and analytics to authorized users
Service Improvement
- Application Performance: To monitor and improve application performance
- Feature Development: To understand usage patterns and develop new features
- Error Resolution: To identify and fix technical issues
Communication
- Service Updates: To notify you about important changes to the service
- Support: To respond to your inquiries and provide customer support
Information Sharing and Disclosure
Limited Sharing
We do not sell, trade, or rent your personal information to third parties. We may share your information only in the following circumstances:
- With Your Consent: When you explicitly authorize us to share your information
- Campaign Participants: Your email address may be visible to campaign creators when you participate in their campaigns
- Legal Requirements: When required by law, court order, or legal process
- Service Providers: With trusted third-party service providers who assist in operating our application (e.g., Google Cloud Platform, Firebase)
Data Export
Campaign administrators can export anonymized campaign results that include:
- Aggregated ranking statistics
- Anonymized participant data (without email addresses)
- Campaign metadata
Data Storage and Security
Storage Location
Your data is stored securely on Google Cloud Platform and Firebase using:
- Firebase Firestore: For campaign and ranking data (Data is encrypted at rest)
- Google App Engine / Cloud Functions: For application hosting
- Google OAuth: For authentication services
Security Measures
We implement appropriate security measures to protect your information:
- Encryption: Data is encrypted in transit and at rest
- Access Controls: Strict access controls and authentication requirements
- Regular Updates: Security patches and updates are applied regularly
- Monitoring: Continuous monitoring for security threats and vulnerabilities
Data Retention
- Active Campaigns: Data is retained while campaigns are active
- Inactive Campaigns: Campaign creators can delete campaigns and associated data at any time
- Account Data: Google account information is retained for the duration of your account
- Logs: Server logs are retained for up to 90 days for security and debugging purposes
Your Rights and Choices
Access and Control
You have the following rights regarding your personal information:
- Access: Request access to your personal information
- Correction: Request correction of inaccurate information
- Deletion: Request deletion of your personal information
- Portability: Request a copy of your data in a portable format
Account Management
- Logout: You can log out at any time to end your session
- Campaign Deletion: Campaign creators can delete their campaigns and associated data
- Participation Withdrawal: You can choose not to participate in campaigns
Google Account Controls
Since we use Google OAuth, you can manage your data through your Google Account settings:
- Review and revoke app permissions
- Manage your Google account privacy settings
- Delete your Google account (which will affect access to our service)
Cookies and Tracking
Session Management
We use session cookies to:
- Maintain your login status
- Remember your preferences
- Provide a seamless user experience
Analytics
We may use analytics tools to understand how our application is used, but we do not track you across other websites or services.
Third-Party Services
Google Services
Our application integrates with several Google services:
- Google OAuth: For user authentication
- Firebase: For database and hosting services
- Google Cloud Platform: For infrastructure support
These services have their own privacy policies, and we encourage you to review them.
International Data Transfers
Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers in accordance with applicable data protection laws.
Children's Privacy
Our service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by:
- Posting the new Privacy Policy on this page
- Updating the "Last Updated" date
- Sending you an email notification for material changes
Contact Information
If you have any questions about this Privacy Policy or our data practices, please contact us at:
- Email: [Your contact email]
- Address: [Your business address]
Compliance
This Privacy Policy is designed to comply with:
- Google Cloud Platform Terms of Service
- Google API Services User Data Policy
- General Data Protection Regulation (GDPR)
- California Consumer Privacy Act (CCPA)
- Other applicable privacy laws
Data Processing Legal Basis
We process your personal information based on:
- Consent: When you choose to use our service and participate in campaigns
- Legitimate Interest: To provide and improve our service
- Contract Performance: To fulfill our obligations under our terms of service
This Privacy Policy is effective as of the date listed above and will remain in effect except with respect to any changes in its provisions in the future, which will be in effect immediately after being posted on this page.