Privacy Notice
Draft for alpha · Revision 5 · September 11, 2026.
1. What this notice covers
This notice describes how the current Work Hub app handles information. Hosts, Zoom, and external registration services also handle information under their own privacy notices.
The Work Hub is independent. Its relationship to The Work of Byron Katie is explained in About & Independence.
2. Information we use
- Accounts: The sign-in service verifies your identity using the method you choose. The Hub stores your account identifier, verified email or phone, and chosen profile information to provide access and account updates. Your sign-in contact is not part of your public profile. The Hub stores encrypted connection tokens and an opaque sign-in cookie, not your password.
- Profiles and listings: your display name, biography, language, optional location and images, and event descriptions, schedules, prices, participation rules, and registration or meeting links, to publish and manage your offerings.
- Bookings and saved sessions: account and event identifiers, reservation times, and saved-event choices, to manage places and your personal session list. The Hub does not track bookings made on external sites. Connected Zoom meetings use the separate live-status information described below.
- Connected Zoom meetings: authorized host and account identifiers, meeting identifiers, encrypted connection credentials, meeting start/end events, and join/leave times and hashed participant connection identifiers, to create meetings and show live status and connection counts. Names, emails, and full event payloads are not stored for counting. Counts include the host and separate devices and may be delayed.
- Updates and administration: booking and session-change notices, delivery status, invitations, policy acceptance versions and times, and moderation actions, to run the alpha and communicate with members.
- Certification applications: the issuer, year, certificate file, written application, and review decisions and explanations, to assess existing certification.
- Reports and requests: your account identifier, the relevant session where supplied, your message, and request status, to handle concerns and privacy requests.
- Service and security information: hosting and sign-in providers may process IP addresses, browser/device information, access times, and security logs to deliver and protect the service.
3. Who can see your information
Public information: approved listing summaries and host directory entries can show display names, profile photos, certification checkmarks, languages, broad locations, covers, prices, and availability. Images on approved public profiles or listings are publicly accessible. Other people may copy public information.
Member information: full session descriptions, host biographies, participation rules, and external registration links are available to signed-in members. Meeting links are available to the host and to booked participants when the host opens admission. Sign-in cannot prevent someone from copying information they can access.
Private records: saved sessions and individual reservations are not publicly listed. Hosts can see booking counts; the Hub does not currently show participant names or account email addresses to hosts. Pending profile and session submissions, their images, and review decisions are accessible to the submitting member and administrators. Unsubmitted uploads remain accessible only to their uploader. The previous approved version stays visible while an edit is reviewed.
Applications and reports: applicants can access their own evidence and application records. Authorized reviewers can view certification applications and community reports across the review queue. Only the operator can access privacy and account-deletion requests, member contact details, invitations, and administration records. Private certificate files and written applications are not shown in the directory. Reviewers may be appointed community facilitators.
During Zoom sessions, the host and other attendees may see your Zoom display name, camera, shared screen, chat, and anything else you choose to share, depending on the meeting settings.
4. Service providers and other recipients
The app uses OpenAI's Sites service with Cloudflare hosting and storage. Existing owner access uses ChatGPT sign-in. Email, phone, and Google sign-in use Supabase Auth; Google and the selected email or SMS provider handle the chosen verification method. Transactional emails sent through Resend include the recipient address and the account or session update. These providers process information needed to authenticate, deliver, store, and secure the service.
Zoom receives information when you use its meetings or authorize the Hub to create meetings. Disconnecting removes the Hub's stored Zoom credentials and live counters; existing meetings and information independently held by Zoom are not deleted. External registration and payment providers receive information you supply on their sites. The Hub does not collect payment details or process those transactions.
Authorized platform personnel and reviewers have access for the purposes described above. Information may also be disclosed when legally required or justified to address a security incident or protect rights, with disclosure limited to what is appropriate.
5. Session content and uploads
The Hub does not collect meeting audio, video, transcripts, or inquiry journals as app features. The Community Guidelines require everyone's advance agreement for recording, screenshots, transcription, or AI note-taking. Review the host's disclosed arrangements before joining; the Hub cannot prevent misuse of another participant's device.
Images and certificates are stored in their original form. Remove unrelated personal information and sensitive embedded details, such as location metadata, before uploading. Do not include another person's sensitive information in public content without permission.
6. Cookies and tracking
The app uses a sign-in cookie for up to seven days and a short-lived cookie for Google sign-in requests. It does not add advertising or optional analytics tools. Hosting and sign-in services may use their own cookies or similar storage for authentication and security.
Agreement to the Terms does not authorize unrelated tracking or marketing.
7. Retention and deletion
Account records, content review history, and attached uploads remain stored until removed through account deletion or operator handling. Releasing a reservation or removing a saved session deletes that active record. Operator maintenance removes expired sign-in records, live counters inactive for 24 hours, and unattached uploads older than 24 hours; files used by a certification application or content review are excluded from unattached-file cleanup.
Using the account-deletion action removes your Hub profile, hosted listings, reservations, saved sessions, application evidence, content submissions and their review history, uploads, contact records, stored connection credentials, and account updates. Hosted sessions are cancelled. A written deletion request instead goes to the operator for review. Deletion does not close your separate sign-in provider or Zoom accounts. Provider backups, reports written by other people, and independent copies may require separate handling. Removing information from the Hub does not remove copies held independently by a host, participant, or external provider. Any response should explain information retained and the reason for retention.
8. Your choices and requests
Through Account, you can edit your profile, download account records, delete your Hub account, or submit a privacy request. Written requests are reviewed by the operator, with responses in Updates. The operator must transfer administrator responsibility before closing their own account.
Depending on applicable law, you may have rights to access, correct, delete, restrict, object to, or receive a portable copy of information, withdraw consent, or complain to a regulator. Appropriate identity verification may be needed.
9. Security and changes
The app restricts access to private files and review tools, encrypts stored connection credentials, and verifies Zoom event signatures. No online service can guarantee absolute security.
Material changes will be communicated as appropriate before new uses begin.