Skip to main content
浙大温哥华校友资源网络ZJU Vancouver Resource Network
简体中文中Log in

Privacy & community boundaries

Know how your information is used

This is an invitation-only pilot. This page explains what members can see, which services process data, and how you control your profile.

Last updated: August 2026

What members can see

Only signed-in members with a completed profile can browse People, Offers, and Asks. Signed-out visitors cannot search or view community content through the platform.

Member profiles, community relationships, professional background, and resource content are visible to other members. Contact details do not appear directly on resource cards.

  • Contact details are shown in a contact panel only after a member selects Contact.
  • Each contact method can be visible to members or hidden. At least one visible method is needed for a connection to happen.
  • The MVP does not store in-app chat because members connect through their preferred external channel.

Sign-in and email

Accounts are managed by hosted Supabase Auth. In the current hosted pilot, email confirmation is temporarily disabled so invited members can go directly to profile setup; the invitation link remains the registration gate. Before a broader launch, we will configure an organization-owned SMTP provider and turn email confirmation and password-reset emails back on. Passwords are handled by the authentication service in an irreversible form; the platform never reads plaintext passwords.

If Google sign-in is enabled, Google and Supabase process the information needed for authentication under their own privacy policies.

AI processing and caching

To provide category suggestions, bilingual display, and potential matches, Offer / Ask content, details, and categories may be sent to the configured OpenAI service for processing.

Names, contact details, credentials, and profile fields not needed for resource discovery are not included in those requests. Translation results are stored in the database and reused to avoid repeated processing and cost.

  • AI output is assistance, not an endorsement or a guarantee of legal, financial, medical, or other professional advice.
  • If an AI provider is unavailable, the platform keeps the source text and continues basic browsing.
  • Usage records keep only necessary model, latency, and token statistics; resource text is not written to usage logs.

Connection events and administrators

When a member opens the Contact panel or copies a contact detail, the platform stores a minimal Connection Event (actor, target member, source resource, event type, and timestamp) for security review and connection measurement. Conversations on external channels are not recorded.

Administrators handle low-frequency exceptions: suspending access, promoting or demoting administrators, removing inappropriate resources, and permanently deleting member data. These actions are permission-checked and retain the audit information needed for safety.

Member responsibilities and deletion

Share only information you are comfortable showing to community members, and keep Offers, Asks, and contact details accurate, lawful, and respectful of other people's privacy. Do not use member data for harassment, bulk outreach, or unsolicited commercial marketing.

You can edit or delete your profile, contact methods, and resources. During the pilot, contact an administrator to delete the whole account; an administrator can permanently remove the account and associated data. Suspension and permanent deletion are different actions.

Pilot limitations

This is an early controlled release. It does not provide in-app messaging, complex identity verification, or professional-service guarantees. Use care before sharing sensitive information and report inappropriate content or security issues through the community's agreed channel.

Need a correction or deletion?

Contact the current community administrator. We will verify the requesting account before processing a correction, suspension, or deletion.