Skip to content
Legal

Privacy policy.

How Synq collects, uses, and protects identity data. The plain-language summary lives below; the full legal text is available on request from hello@aerosol.so.

The plain-language summary

What we collect

Identity data the businesses building on Synq need to sign in their users — email, profile metadata returned by social providers, wallet addresses linked by the user, sign-in timestamps, and the IP address of each sign-in for security and audit purposes. We do not collect contact lists, message history, or activity outside the sign-in surface.

How we use it

Solely to operate the identity platform on behalf of the businesses building on Synq — provide sign-in, manage sessions, ship webhooks, log audit events, send transactional emails. We do not sell data, do not run advertising, and do not share user data with any third party other than what the user explicitly chose to sign in with.

Where it lives

Encrypted at rest in our infrastructure in the United States. Customer-supplied secrets (client_secret, BYO OAuth credentials, webhook secrets) are encrypted with AES-256-GCM in brand-scoped storage. We are working toward regional residency options as we approach paid deployments.

Your rights as an end-user

You can view every connection and grant on your Synq profile, revoke an App at any time, unlink a connection, and request deletion of your account. Deletion is staged through a grace window before being made permanent.

Contact

Email hello@aerosol.so for privacy questions, data export, or deletion requests. Security disclosures go to security@aerosol.so.

This is the plain-language summary as of 2026. The legal version of the policy is available on request and is the binding text.

Questions?.

hello@aerosol.so — we’ll get back to you the same business day.