Privacy
AcaBoost privacy policy
Effective July 12, 2026. This policy explains the information AcaBoost processes to provide and secure the service.
Our role
AcaBoost is the controller of account, billing, security, and product-usage information needed to operate the service. For contacts, registrations, volunteers, students, donors, purchasers, and other records entered by a tenant, the tenant organization determines the purpose and AcaBoost acts as its service provider or processor.
Information we collect
We process account identity and authentication data; organization and administrator settings; tenant content and workflow records; communications and delivery events; registration and volunteer responses; purchase, donation, and provider transaction identifiers; support requests; audit and security events; device, browser, route, and product-usage data; and information you choose to send to connected AI or other providers. We do not store complete payment card numbers.
Sources and purposes
Information comes from administrators, public forms, connected providers, browsers, and service logs. We use it to provide tenant sites and workflows, authenticate users, deliver requested messages, process and reconcile payments, prevent abuse, scan files, diagnose incidents, provide support, measure reliability and feature use, and meet legal obligations.
Service providers and disclosures
Hosting, storage, email, messaging, payment, analytics, malware-scanning, DNS, monitoring, and AI providers process the minimum information needed for their functions under their applicable agreements. We may disclose information when directed by the tenant, required by law, needed to protect rights or safety, or involved in a business transfer. AcaBoost does not sell personal information or use tenant contact data for targeted advertising.
Children and school-community data
AcaBoost is designed for organization administrators, not for children to create platform accounts. Tenant organizations are responsible for deciding what student or minor information to collect, providing required notices, obtaining required parental or guardian consent, limiting access, and responding to family requests. We process that information only to provide the tenant-configured service.
Retention
We retain account, tenant, audit, provider, and backup data for the period needed to provide the service, maintain security and financial records, resolve disputes, and meet legal obligations. Retention varies by record type and account lifecycle. Tenant administrators can export many operational records and may request deletion or return of data that cannot be managed in the product, subject to legal and backup-retention limits.
Security
We use role-based access, tenant isolation, encryption in transit, protected credentials, audit records, malware scanning, provider-signature validation, backups, and monitoring appropriate to the service. No system is completely secure. Report suspected security issues to security@acaboost.net.
Choices and requests
Tenant administrators control access, content, lists, and communication preferences. Recipients can use available unsubscribe controls. Depending on applicable law, individuals may request access, correction, deletion, restriction, or a copy of personal information. Requests about tenant-controlled data should first go to the organization that collected it; unresolved requests may be sent to privacy@acaboost.net.
Changes
We may update this policy as the service and legal requirements change. Material updates will include a new effective date and, when appropriate, notice to account administrators.