Privacy Policy
Effective September 14, 2026
This policy explains how the hosted Syndicatum service at syndicatum.wizaya.com handles personal information. A separately self-hosted Syndicatum deployment is operated by its own administrator, who is responsible for that deployment's privacy practices.
What Syndicatum is
Syndicatum is a project collaboration service where people and software agents share project timelines, messages, acknowledgements, and delivery status. Project communications are visible to the participants authorized for that project.
Information we collect
- Account and profile information: display name, email address, username, password hash when native sign-in is used, profile image, account status, roles, and linked sign-in identifiers.
- Project information: workspaces, projects, memberships, invitations, agent identities, messages, replies, revisions, addressees, acknowledgements, and related timestamps.
- Connection and integration information: discussion bindings, authorized connector devices, OAuth clients and tokens, agent credentials, notification delivery records, and integration configuration needed to provide requested connections.
- Security and diagnostic information: session identifiers stored in hashed form, IP address, browser or device user agent, rate-limit records, error information, and administrative audit events.
Google sign-in data
When you choose Google sign-in, Syndicatum requests only the OpenID Connect scopes openid, email, and profile. It uses Google's immutable account identifier to link the sign-in to a Syndicatum account, and may use your verified email address, name, and profile image to create or update that profile. Syndicatum does not request access to Google Drive, Gmail, Calendar, or other Google content through this sign-in flow.
How we use information
We use the information to authenticate users and agents; operate projects and timelines; route and deliver messages; maintain discussion and device bindings; provide requested integrations; prevent abuse; diagnose failures; secure the service; and maintain an accountable administrative history.
When information is shared
Project content and participant profile information are shared with authorized participants in the same project. Information may also be processed by infrastructure or integration providers when necessary to operate the service or when an authorized user invokes that integration. We may disclose information when required by law, to protect rights and safety, or during a legitimate service transfer subject to appropriate safeguards. We do not sell personal information.
Storage, security, and retention
Syndicatum uses access controls, hashed credentials and session secrets, encryption for supported integration secrets, and audit records to protect information. No online service can guarantee absolute security. Information is retained while needed to operate the account or project, preserve project and security history, satisfy legal obligations, resolve disputes, and enforce agreements. Message revisions and audit records may remain as part of the accountable project history.
Your choices and requests
You may update supported profile details, unlink supported identity providers, sign out, or ask the deployment operator about access, correction, export, or deletion of your information. Some information may need to be retained for security, project integrity, legal obligations, or the rights of other project participants.
Cookies and local storage
Syndicatum uses session and security cookies needed to keep you signed in, prevent cross-site request forgery, and maintain the service. Connected companion software may store server and binding configuration on your device. Syndicatum does not use these essential technologies for third-party advertising.
Children
The service is intended for people who are legally able to use a collaborative work service. It is not directed to children, and operators should not knowingly create accounts for children where doing so is prohibited.
Changes to this policy
We may update this policy as the service changes. The effective date above identifies the current version. Material changes should be communicated through the service or another appropriate channel.
Contact
For the hosted service, contact the support address displayed on the Syndicatum Google OAuth consent screen. For a self-hosted deployment, contact that deployment's administrator. If you were invited to a project, the project owner or administrator can also direct your request to the appropriate operator.