SkyCanvas Studio Identity Privacy Policy
Last updated: July 25, 2026
Data Protection
Your personal data is encrypted in transit and at rest using industry-standard protocols.
No Data Selling
We never sell, monetize, or share your profile data with third-party advertisers.
OAuth Compliance
Strict adherence to Google, Meta, GitHub, and LinkedIn developer API privacy guidelines.
1. Introduction & Service Scope
This Privacy Policy explains how SkyCanvas Studio Identity, the account and single sign-on service operated by SkyCanvas Studio("we", "us", or "our"), collects, uses, stores, and protects personal data when you use the service and its connected applications.
By signing in to SkyCanvas Studio Identity via email, magic link, or a third-party OAuth provider such as Google, GitHub, Meta, or LinkedIn, you acknowledge the data practices described in this policy.
2. Information We Collect
We only collect data that is strictly necessary for providing secure authentication and access management services:
A. Profile & Account Information
- Full Name & Email Address: Used as primary account identifiers and for authentication notifications.
- Profile Picture URL: Provided by your chosen OAuth provider to display your avatar.
- OAuth Provider Identifiers: Unique identifiers assigned by Google, GitHub, Meta, or LinkedIn to pair your provider login with your SkyCanvas Studio Identity account.
- OAuth Profile Payload: The basic profile response returned under the approved identity scopes is stored for account synchronization, support, and security auditing.
B. Technical & System Logs
- IP Address & User-Agent: Logged for security auditing, anomaly detection, rate-limiting, and preventing unauthorized access.
- Session Tokens & Cookies: Encrypted secure session tokens required to maintain active logins across authorized client applications.
SkyCanvas Studio Identity's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
- We request only the basic Google scopes
openid,email, andprofile. These provide your Google account identifier, name, email address, profile picture. - We use Google user data only to create or match an account, verify identity, keep profile details synchronized, and sign users in to connected applications.
- We do not request access to Gmail, Google Drive, Google Calendar, contacts, or other Google content.
- Google user data is never transferred to advertising networks or used for advertising, commercial profiling, or marketing purposes.
- Google user data is never used for training machine learning or AI models.
3. How We Use Your Information
Your data is processed strictly for the following operational purposes:
- To authenticate your identity across applications connected to SkyCanvas Studio Identity.
- To enforce enterprise access control, role-based permissions (RBAC), and session security.
- To send critical authentication emails (e.g., email verification codes, password resets, magic sign-in links).
- To audit security logs and detect fraudulent or unauthorized login attempts.
4. Data Retention & Security
We implement robust administrative, physical, and technical security controls to safeguard your personal data:
- Encryption: Data transmitted between your browser, SkyCanvas Studio Identity, and connected applications is protected using HTTPS/TLS. Passwords are cryptographically hashed.
- Session Expiration: Active authentication tokens automatically expire after inactivity and can be revoked immediately via your account settings.
- Retention Period: Personal information is retained only as long as your account remains active. Upon account deletion, all personal profile records are permanently purged from our database.
5. Your Rights & Data Deletion
You have full control over your personal data under applicable data privacy regulations (including GDPR and CCPA):
- Access & Export: You can view or request a copy of the profile data stored in your SkyCanvas Studio Identity account.
- Revoking OAuth Access: You can revoke SkyCanvas Studio Identity's access at any time through your Google, GitHub, Meta, or LinkedIn account settings.
- Account & Data Deletion: You can permanently delete your SkyCanvas Studio Identity account and associated data by following the instructions on our Data Deletion Instructions page or by contacting us.
6. Third-Party OAuth Providers
SkyCanvas Studio Identity supports authentication through external identity providers. Each provider operates under its own privacy policy:
- Google: Google Privacy Policy
- GitHub: GitHub Privacy Statement
- Meta / Facebook: Meta Privacy Policy
- LinkedIn: LinkedIn Privacy Policy
7. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, contact:
SkyCanvas Studio Identity Support
Email: khalidk8774@gmail.com