1. Overview & Purpose
CISA Campus Work Tracker is an internal, access-gated organization application developed to facilitate campus ministry coordination, student onboarding, pastoral care, prayer tracking, gathering attendance, and collaborative workflows. Access is restricted to authorized team members and registered community participants.
2. Information We Collect
We collect only the information necessary to fulfill our campus fellowship and ministry coordination operations:
A. Account & Authentication Data
- Credentials: Corporate email address, authentication tokens, and password credentials (managed via Firebase Authentication).
- Federated Sign-In: Name, verified email address, and profile photo URL when signing in through Google Sign-In.
- User Preferences: Theme settings, custom view modes, and notification preferences.
B. Contact & Community Directory Information
- Member & Student Profiles: Full name, email address, phone number, university major, expected graduation year, campus location, gender, pronouns, Instagram handle, spiritual background, journey stage, assigned stewards, and pastoral tags.
- Welcome / Intake Submissions: Contact details, interests, and prayer requests submitted voluntarily by new students and visitors on the welcome signup form.
C. Pastoral Care & Activity Logs
- Interactions & Timelines: Records of pastoral conversations, fellowship check-ins, dates, duration, notes, and staff attendees.
- Pastoral Visits: Home and campus visit records including dates, attendees, visit objectives, follow-up tasks, and optional visit photos uploaded directly to secure cloud storage.
- Prayer Records: Prayer burdens, personal prayer lists, answered prayer testimonies, and optional answered prayer celebration photos.
D. Gatherings, Tasks & Collaboration
- Gatherings & Attendance: Campus event schedules, recurrence rules, check-in status (present, absent, late), and RSVP confirmations.
- Tasks & Follow-Ups: Action items, priorities, due dates, subtasks, and creator/assignee metadata.
- Team Messaging: Direct, group, and announcement channel messages, reactions, message pins, and record attachments.
- Coordination Notes: Collaborative planning documents and meeting notes.
E. Diagnostics, Feedback & Device Information
- User Feedback: Bug reports, feature ideas, and feedback messages submitted intentionally through the in-app feedback tool.
- Diagnostic Metadata: Browser user-agent strings, viewport dimensions, system error logs, and user-initiated screenshot diagnostics.
- Push Tokens: Device push tokens (via Expo Push / Web Push) for delivering reminders, task assignments, and chat alerts.
3. How We Use Collected Data
Data collected within the application is processed solely for:
- Authenticating users and enforcing role-based permissions.
- Managing student outreach, pastoral care, and fellowship activities.
- Coordinating gathering attendance, event reminders, and follow-up tasks.
- Delivering real-time team messaging and push notifications.
- Triaging reported technical issues and maintaining system stability.
- Performing server-side intelligent text parsing (e.g. Smart Import parsing of notes and summaries via Google Gemini API). Note: Text is processed strictly in real-time via API calls and is not used to train public machine learning models.
We do not sell, rent, monetize, or share your personal data with third-party advertisers or data brokers.
4. Role-Based Access Control & Data Sharing
Access to data within the organization workspace is strictly segregated according to four role tiers:
- Full-timer (Admin): Full administrative workspace access, pastoral visit logs with photo attachments, coordination note archives, user approval management, and season settings.
- Trainee (Manager): Personalized focus queue, contact journey tracking, attendance, and team messaging.
- Student (Operator): Member directory, assigned tasks, coordination notes, and messaging.
- Community (Viewer): Gathering schedules and RSVPs, outreach logging, and shared prayer lists.
5. Third-Party Service Providers
We rely on trusted enterprise service providers to operate our infrastructure:
- Google Cloud Platform & Firebase: Encrypted database storage (Cloud Firestore), file storage (Firebase Storage), user authentication (Firebase Auth), and real-time state sync.
- Google Gemini API: Server-side AI text processing for internal note and transcript parsing.
- Expo / Apple APNs / Google FCM: Secure push notification dispatch.
- GitHub Pages: Public hosting for documentation, support, and privacy policies.
6. Data Security & Retention
All data transmitted between the client application and cloud services is encrypted using Transport Layer Security (TLS/HTTPS). Database and storage access is enforced via strict server-side security rules.
Data is retained as long as necessary to support active campus ministry operations or until an authorized account deletion request is made.
7. Account Provisioning, Deletion & Your Rights
Accounts are provisioned and approved by enterprise administrators. You have the right to request access, correction, export, or deletion of your personal data at any time.
To request account deletion or removal of your contact records, please email our administration team at yilongwang05@gmail.com. Requests are fulfilled within 30 days.
8. Contact & Privacy Inquiries
For privacy inquiries, data requests, or support regarding this application, please contact:
Email: yilongwang05@gmail.com
App: CISA Campus Work Tracker