Privacy Policy
Last updated: [DATE]
Who we are
Disciplo (“Disciplo”, “we”) provides church management software. Our contact address is [YOUR REGISTERED ADDRESS] and you can reach us at [YOUR SUPPORT EMAIL].
Controller and processor
Each church that uses Disciplo decides what information it records about its own people and why. In data-protection terms that church is the controller of that information, and Disciplo is a processor acting on its instructions. If you are a member of a congregation and want to see, correct or delete your information, please contact your church directly — they control it, and they have tools inside Disciplo to action your request.
What we store
On behalf of a church, Disciplo stores the information that church enters: names and contact details, household relationships, attendance records, group and ministry membership, giving records, pastoral notes and care records, messages sent and received, and any files the church uploads. For the church’s own staff accounts we also store an email address and authentication details.
Why we store it
Solely to provide the service to the church: to let its staff record and find information, communicate with their congregation, and produce their own reports. We do not sell personal information, and we do not use a church’s congregational data to train models or for advertising.
Sub-processors
We use these providers to deliver the service: Supabase (database and file storage), [YOUR HOSTING PROVIDER] (application hosting), Resend (email delivery), Telnyx and/or Twilio (text and WhatsApp delivery), Stripe (payments and donations), and Anthropic (optional AI drafting, only where a church has enabled it). [CONFIRM THIS LIST MATCHES WHAT YOU ACTUALLY USE, AND ADD THEIR LOCATIONS.]
Where data is held
[STATE THE REGION(S) YOUR SUPABASE PROJECT AND HOSTING ARE IN, AND DESCRIBE ANY TRANSFERS OUT OF THE UK/EU AND THE SAFEGUARDS USED.]
How long we keep it
We keep a church’s information for as long as their account is active. When an account closes we delete it after [RETENTION PERIOD]. Some records — notably donation records — may be kept longer where the church has its own legal obligation to retain them.
Your rights
Depending on where you live you may have rights to access, correct, delete, or export your information, and to object to certain processing. Because your church is the controller, please contact them first. Disciplo provides them with built-in tools to export their data and to permanently anonymise an individual’s record on request.
Security
Access is controlled per church and per role, enforced in the database itself rather than only in the interface. Data is encrypted in transit and at rest. Two-factor authentication is available to every church.
Contact
Questions about this policy: [YOUR SUPPORT EMAIL]. [IF YOU HAVE A DATA PROTECTION OFFICER OR AN EU/UK REPRESENTATIVE, NAME THEM HERE.]