Privacy & Security Policy
Last Updated: June 30, 2026
Welcome to Sadaki Smart Acquisition Engine. We are committed to protecting your personal data, ensuring absolute security, and respecting your privacy rights. This policy outlines how we handle, process, and protect your data when you use our platform, including our integration with Google APIs and third-party services.
1. Data We Collect
We only collect the minimum required information necessary to provide our services:
- Consultant Profiles: Name, professional email address, and active settings in your Consultant Portal.
- Methodology & Content: Uploaded business methodologies, diagnostic rules, custom quiz blueprints, and intake forms.
- Lead & Diagnostics Data: Names, emails, and response payloads submitted by leads navigating your consultation intake funnel.
- Google API Integration Data: Under your explicit consent, we temporarily store OAuth credentials and tokens required to orchestrate meetings.
2. Google API Data & OAuth Scopes Disclosure
Our app requests explicit permission for Google Calendar and Google Meet APIs to help automate your advising scheduling. Here is how we comply with Google policies:
Google Limited Use Disclosure:
Sadaki Smart Acquisition Engine's use and transfer to any other app of information received from Google APIs will adhere to Google API Services User Data Policy, including the Limited Use requirements.
- Google Calendar Scope (https://www.googleapis.com/auth/calendar.events): We use this scope only to automatically schedule, view, and update consultation meetings booked by prospective clients.
- Google Meet integration: We automatically construct a unique Google Meet link for every booked consultation event to facilitate frictionless video conferencing.
- Limited Access & Storage: No human administrator can access your raw tokens. They are cryptographically isolated in our secure database.
- Zero Sharing: We do not share, sell, or utilize Google User Data for any marketing, advertising, or profiling purposes whatsoever.
3. Data Security & Encryption
We deploy rigorous enterprise-level security countermeasures to protect your data:
- At Rest: All database records are stored in Firebase Cloud Firestore, secured behind robust database rules. Sensitive variables are encrypted at rest with AES-256 standards.
- In Transit: All web traffic is strictly served over modern HTTPS with strong TLS 1.3 encryption.
- API Access: Third-party integrations are strictly controlled server-side via private API endpoints proxying client tokens safely.
4. Data Retention & Right to Purge (GDPR / CCPA)
You retain absolute sovereignty over your records. In compliance with data privacy regulations:
- Instant Purge: You have the absolute right to have your data permanently deleted. By accessing the settings inside your Consultant Portal, you can click "Purge Profile & Data" to immediately delete your entire footprint—including your profile, leads history, methodologies, and synchronized Google Workspace OAuth links—permanently from our cloud systems.
- Retention Limit: We do not retain data beyond your active subscription or account lifecycle.
5. Contact Information & Support
If you have any questions, security concerns, or requests regarding this Privacy & Security Policy, please contact our lead developer:
Developer Support
Email: Sadaki.DC@gmail.com