Privacy Policy - Authentication Service

Last updated: June 17, 2025

This Privacy Policy describes how Applied-Ai Inc. ("we," "us," or "our") collects, uses, and protects information through our authentication service at https://auth.appliedlms.com ("Authentication Service"). This service handles user authentication for Applied LMS.

1. Scope

This policy applies only to our Authentication Service. For information about:

2. Information We Collect

2.1. Authentication Data

2.2. OAuth Token Data

2.3. Security Metadata

2.4. Google Account Data (When using Google Sign-In)

3. How We Use Your Information

3.1. Authentication Services

3.2. Security & Fraud Prevention

3.3. Service Operations

4. Data Storage and Security

4.1. Technical Safeguards

4.2. Data Location

4.3. Access Controls

5. Data Sharing

We do NOT:

We ONLY share data with:

6. Data Retention

Data Type Retention Period Purpose
Active tokensDuration of sessionAuthentication
Refresh tokens30 daysSession continuity
Authentication logs90 daysSecurity monitoring
Account dataUntil deletion requestedService provision

Expired tokens are purged. Account data is deleted within 30 days of request.

7. Your Rights

To exercise rights, contact: privacy@applied-ai.ca

8. OAuth Scopes Justification

We do not request access to your Google Drive, Gmail, etc.

9. Cookies

No tracking or marketing cookies used.

10. Children's Privacy

Not for children under 16. No data collected knowingly from minors.

11. International Users

By using the service, you consent to processing in Canada under Canadian laws.

12. Changes to This Policy

Updates will be posted with new date. Material changes notified via email.

13. Contact Information

Applied-Ai Inc.
Privacy Team
Email: privacy@applied-ai.ca
Address: 225 Rue Chabanel O, Montréal, QC, Canada H2N2C9
Security: security@applied-ai.ca

14. Legal Compliance

This service complies with PIPEDA (Canada).

By using our Authentication Service, you agree to this Privacy Policy.