Privacy & Data

Privacy Policy

How Temple of the Jedi collects, uses, protects, and manages personal information.

Effective Date: September 2, 2026
Updated Date: September 4, 2026

1. Scope & Accountability

This Privacy Policy applies to TempleoftheJedi.org ("Temple", "we", "our", or "us"), including the website, installable progressive web application, member platform, educational tools, archives, messaging, calling, notifications, and related services.

The Temple is responsible for personal information under its control. Questions, access requests, correction requests, privacy complaints, or other privacy concerns may be sent to support@templeofthejedi.org.

2. Consent & Your Choices

By registering for and using the Temple, you acknowledge the data practices described in this Privacy Policy. Personal information is collected, used, stored, and processed only for identified purposes connected with operating, securing, administering, and providing Temple services.

Optional device permissions, including notifications, location, microphone, and camera access, are requested through your browser or device before the related feature can be used. You may revoke optional permissions through Site, browser, application, or device settings where available.

Where information or a permission is optional, you may choose not to provide it, although the related feature may then be unavailable. Consent may also be withdrawn by disabling optional features or deleting your account, subject to legal, security, administrative, backup, dispute-resolution, and record-retention requirements.

3. Information We Collect

The Temple may collect the following categories of information:

4. Why We Use Information

Personal information is used where reasonably necessary to provide and administer the Temple. Purposes include authentication, account and security management, educational records, mentorship and progression, member communications, messaging and calling, notifications, application preferences, moderation, abuse prevention, technical support, archives, service reliability, and compliance with legal obligations.

The Temple does not sell personal information and does not use private Messages or audio/video communications for advertising or behavioural profiling.

5. Cookies, Sessions & Browser Storage

The Site and App Version use cookies and similar browser-storage technologies, including local storage and session storage, for essential and user-requested functionality.

These technologies may maintain authenticated sessions and security functions; remember themes, preferences, notifications, and selected devices; support offline and installable-app functionality; maintain push-notification subscriptions; remember temporary application state; and restore the Messages interface or conversation previously being viewed.

Session information may be removed when a browser or application session ends. Persistent browser storage may remain until removed by the Temple, logout processes, browser or device controls, application-data clearing, or the user. The Temple does not use these technologies for third-party advertising or cross-site behavioural tracking.

6. Messages & Private Communications

Temple Messages stores message content and related metadata as necessary to deliver, synchronize, display, and restore conversations across sessions and devices.

New Temple Message content and conversation events are protected at rest using AES-256-GCM authenticated encryption. Legacy encrypted records created before this change (September 9th, 2026) may continue to use an earlier authenticated-encryption format for backward compatibility. The Temple maintains the server-side encryption keys required to operate and recover the messaging service, so Temple Messages are not end-to-end encrypted.

The Temple does not currently provide an administrative interface, monitoring tool, or routine procedure that allows Temple personnel, including the developer, to browse or read private Direct Message content. Private Direct Messages are intended to be accessible only to their participants through normal Temple account and conversation controls.

If access to encrypted Direct Message content were required in connection with a lawful investigation or a valid legal request from competent authorities, a specialized technical process would need to be created or used to decrypt the relevant content. Any such access would be limited to the specific legal purpose and would not be used for routine monitoring, moderation, or general administrative review.

Images and other media attachments sent through Temple Messages are stored in private, access-controlled storage. Access to those files is restricted through authenticated Temple account and conversation controls. The Temple does not provide a routine administrative interface for browsing private attachments outside normal conversation access. Attachment storage uses security protections different from those used for the encrypted message event store, and direct server-level access may technically be capable of accessing those files.

Users should not assume that a private message is anonymous or incapable of being copied by another participant and remain responsible for information they voluntarily disclose to other members.

7. Audio & Video Calling

Temple Messages may provide real-time audio and video calling using browser-based technologies such as WebRTC. Microphone and camera access occurs only after browser or device permission is granted.

Audio and video media is encrypted in transit using the secure-media protections provided by WebRTC. Where technically possible, media is transmitted directly between call participants. Where a TURN or similar relay is required, encrypted media may pass through relay infrastructure. Signaling, STUN, TURN, relay, hosting, or similar infrastructure may process IP addresses and technical connection metadata as necessary to establish or maintain a call.

Call signaling and connection metadata may pass through Temple infrastructure to establish and manage the connection. This technical information is separate from the audio or video content of the call.

The Temple does not record or store the audio or video content of ordinary calls. If Temple-provided call recording is introduced in the future, separate notice and appropriate consent will be required before recording occurs. Participants may possess device-level recording or screen-capture capabilities outside the Temple's control; recording or distributing a private Temple call without the knowledge and consent required by Temple policy is prohibited.

8. Sharing & Third-Party Services

The Temple does not sell personal information. Information may be disclosed where reasonably necessary to service providers and Internet infrastructure used to operate the Site, or where required for security, legal compliance, abuse investigation, or protection of users and the Site. Access to or disclosure of private Direct Message content is subject to the more specific restrictions described in Section 6.

The Site is hosted using GoDaddy hosting services. Encrypted backups may be stored using secure cloud providers. Internet infrastructure providers may also be used for email delivery, push notifications, WebRTC signaling, STUN/TURN or relay services, and other technical functions. Such providers may process the technical information necessary to perform those functions.

The Temple maintains an optional Discord community. Use of Discord is subject to Discord's own terms and privacy practices.

Any analytics service actually used by the Temple will be limited to legitimate administration, security, performance, or usage measurement and disclosed as appropriate. Analytics information is not sold by the Temple for advertising purposes.

9. Retention

Personal information is retained only as long as reasonably necessary for the purposes for which it was collected, subject to educational, administrative, security, backup, dispute-resolution, and legal requirements.

Information may be retained longer where reasonably necessary to investigate abuse, protect users or the Site, resolve disputes, preserve records relevant to administrative decisions, or comply with applicable law.

10. Access, Correction & Deletion

You may access and correct available personal account information through Temple account controls. You may also contact support@templeofthejedi.org to request access to personal information held about you, request correction of inaccurate information, make a privacy complaint, or ask about available deletion options. Identity verification may be required before a request is processed.

Journal entries, student records, messages, archive contributions, and other records may be edited, corrected, deleted, anonymized, or retained according to the controls, educational requirements, collaborative-record requirements, and retention rules applicable to that information.

Full account deletion removes or anonymizes associated personal information in accordance with the Temple's account-deletion process, subject to records belonging to other participants, legal requirements, security and administrative records, contribution rights described in the Terms of Use, and temporary backup retention.

11. Security

The Temple uses HTTPS/TLS to protect information in transit. Access is restricted through authentication and role-based controls based on rank, educational responsibilities, elected roles, mentorship relationships, and community governance requirements. Administrative access is limited to authorized individuals.

New Temple Message content and conversation events are protected with AES-256-GCM authenticated encryption while stored by the messaging system. Legacy encrypted records may remain in an earlier authenticated-encryption format for backward compatibility. Private Message media is kept in access-controlled storage. The Temple maintains the server-side keys required to operate the messaging service, and the current Temple Messages system is not end-to-end encrypted. There is no current administrative interface or routine monitoring process for reading private Direct Messages; any exceptional decryption is governed by Section 6.

Passwords are stored using secure password hashing. Sensitive device permissions remain controlled by the user's browser or operating system. No Internet-based service can guarantee absolute security, and users are responsible for protecting their account credentials and devices.

12. Archive Visibility & Public Sharing

Archive materials and certain shared records may be visible only to logged-in members with the appropriate rank or authorization. Restricted archive content is not intended for public access or search-engine indexing.

Information a user deliberately publishes or marks for sharing, including profile information, public records, shared journal material, or optional Jedi Map information, may be visible according to the controls and permissions attached to that feature.

13. Communications, Email & Notifications

The Temple may use the email address associated with your account to provide communications reasonably necessary to operate and administer Temple services. These may include email verification, account access and recovery, security notices, administrative notices, support responses, changes affecting your account or Temple services, and other service-related communications.

The Temple may also send occasional non-essential communications about Temple news, community information, training opportunities, new features, significant platform updates, events, or other information relevant to Temple membership. Non-essential email communications will be kept separate, where appropriate, from communications necessary to operate, secure, or administer your account.

Where an unsubscribe or communication-preference option is provided, you may use it to stop receiving non-essential email communications. The Temple may still send account, security, legal, administrative, or other service-related communications where reasonably necessary while your account remains active.

The Temple may also provide optional browser, device, or application notifications relating to account activity, assignments, journal activity, Direct Messages, mentions, calls, community activity, or administrative events. System-level notifications require browser or device permission and may be disabled through Site, browser, or device settings. The Temple does not use email or system notifications for unsolicited third-party advertising.

14. Youth Privacy & Protection

The Temple does not knowingly permit registration by individuals under 13.

Mentorship and communications involving youth must follow the Temple's youth-protection requirements. Private Direct Messages may not be used for private one-on-one youth mentoring. Audio or video calling must not be used to bypass these safeguards. Additional moderation, transparency, parental/guardian, or administrative safeguards may apply where required.

15. Data Breaches

If a breach involving personal information occurs, the Temple will investigate, take reasonable steps to contain and mitigate the incident, preserve required records, and notify affected individuals and applicable authorities where required by law.

16. Installable Application

TempleoftheJedi.org may be installed as a web-based application through supported browsers, devices, or distribution methods. Installation is optional and user-initiated. The App Version may use browser/device storage and permissions as described in this Policy.

Notifications, location, microphone, camera, and media-device access remain controlled through browser or operating-system settings. Removing the App Version may not automatically remove browser-stored Site data, which may require separate removal through browser or device settings.

17. Changes to this Policy

This Privacy Policy may be updated as Temple features, privacy practices, service providers, or applicable legal requirements change. The current version will remain available on this page. Where a change materially affects how personal information is collected, used, or disclosed, additional notice or consent will be provided where appropriate.

18. Canadian Privacy Law & Contact

The Temple handles personal information in accordance with applicable Canadian privacy law. Questions, access or correction requests, complaints, and other privacy inquiries may be directed to:

Privacy Contact — Temple of the Jedi
Email: support@templeofthejedi.org
Prince Edward Island, Canada

For the contractual rules governing use of the Temple, please read and agree to the terms of use upon login.