DrPCoA Passport ("we", "our", or "us") operates the Passport unified authentication service. This policy informs you of our practices regarding the collection, use, and disclosure of personal data when you use our service and the choices you have associated with that data.
We collect several types of information to provide and improve our service:
We use collected data for the following purposes:
We implement military-grade security measures to protect your data. All passwords are hashed with bcrypt, sessions are encrypted, and data in transit is protected with TLS 1.3. Our zero-trust architecture ensures that every access request is verified, regardless of source.
We do not sell your personal data. Information is shared only within the DrPCoA ecosystem platforms for authentication purposes, and with service providers who assist in operating our infrastructure, all bound by strict confidentiality agreements.
You have the right to:
We comply with the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA). We process personal data lawfully, fairly, and transparently, only for specified, explicit, and legitimate purposes.
We use essential cookies for authentication session management. These are strictly necessary for the service to function. We do not use tracking or advertising cookies. You can manage cookie preferences through your browser settings.
For any questions about this privacy policy or to exercise your data rights, contact us at privacy@drpcoa.com.