Legal
Privacy Policy
This Privacy Policy explains how NestPoint (“NestPoint,” “we,” “us,” “our”) handles information across our website at nestpoint.org and our membership-management software (together, the “Service”). NestPoint provides the Service to organizations — senior centers, community centers, faith communities, member-led nonprofits, and parks-and-recreation departments (each, a “Customer”).
Our two roles
We handle information in two different capacities, and it matters which one applies to you:
- As a controller. For our own website visitors and for the staff accounts that administer a workspace, we decide how information is used. This policy governs that data.
- As a processor.The member and operational records a Customer enters — their members' profiles, attendance, payments, and related activity — belong to and are controlled by that Customer. We process this data on the Customer's behalf, under our agreement with them. If you are a member of an organization that uses NestPoint, see Members and individuals below.
Information we collect
- Account and workspace information. When staff create or use a workspace, we collect details such as name, email address, organization name, role, and login credentials (passwords are stored only as a one-way hash — we never see them).
- Member and operational data (processed for Customers). Customers use NestPoint to manage member profiles (names, contact details, dates of birth, addresses, photos, emergency contacts, and household relationships), attendance, program and event registrations, communications, and reports. Depending on the modules a Customer uses, this can include sensitive categories — for example dietary restrictions and allergens (meals), mobility needs and restricted medical notes (transportation), and optional demographic fields used for funder reporting (such as race, ethnicity, language, or veteran status). Customers decide what to collect; we store and process it on their behalf.
- Payment information. Subscription payments — and, where a Customer enables it, member payments — are processed by Stripe. Stripe handles card details directly; we do not store full payment card numbers.
- Usage and technical data. Like most web services, we log basic technical information needed to operate and secure the Service, such as IP address, browser type, and request logs. Our audit log also records who changed a record, when, and from what IP address, for security and compliance.
How we use information
We use the information we collect to:
- Provide, maintain, secure, and improve the Service;
- Authenticate users and keep workspaces isolated;
- Process subscription and member payments;
- Send account, transactional, and support communications;
- Detect, investigate, and prevent abuse or security incidents; and
- Comply with our legal obligations.
We do not sell your personal information, we do not share it for cross-context behavioral advertising, and we do not use Customer member data to train advertising or unrelated products.
How we share information
We rely on a small, vetted set of sub-processors to run the Service. Each receives only the information it needs for its function:
- Stripe — payment processing for subscriptions and member payments.
- Postmark — delivery of account, transactional, and Customer-sent email.
- Cloudflare R2 — encrypted storage of uploaded files, such as member photos.
- Render — cloud hosting and database infrastructure that runs the Service.
- Sentry — error and performance monitoring, used only when enabled and configured not to receive personal data.
We may also disclose information when required to comply with law or valid legal process, to enforce our agreements, to protect the rights and safety of people or the Service, or in connection with a merger, acquisition, or sale of assets — in which case we will give Customers notice.
Cookies
NestPoint uses only strictly necessary, first-party cookies. We do not use advertising, analytics, or third-party tracking cookies, and we do not track you across other websites. The cookies we set are:
- sessionid — keeps you signed in to your workspace (about 12 hours).
- csrftoken — protects requests against cross-site request forgery.
Both are marked Secure in production. Because we rely only on essential cookies, no cookie-consent banner is required to use the Service.
Security and data isolation
Each organization runs in its own isolated, workspace-scoped environment — one Customer cannot see another's data. Traffic is encrypted in transit with HTTPS/TLS, and data is encrypted at rest at the infrastructure level. Passwords are stored using industry-standard one-way hashing. We enforce HTTP Strict Transport Security and standard security headers, back up data daily, and write every change to a record to an append-only audit log. You can read more on our Trust & security page.
Data retention
We keep workspace data for as long as the workspace is active and as needed to provide the Service. Some specifics:
- Audit-log entries are retained for up to seven years by default (configurable per workspace) to support compliance, funder, and public-records obligations.
- Deleted records are first soft-deleted and recoverable for a limited period, then permanently removed.
- After an account closes, you can request a full export. We delete workspace data within 90 days of closure, except where we are required to keep it longer (for example, billing and tax records) or where it persists briefly in routine backups that cycle out within about 30 days.
Your choices and rights
Your data is yours. You can export everything to CSV at any time, and if you close your account we will provide a complete export of your workspace. Depending on your U.S. state of residence, you may also have rights to access, correct, delete, or obtain a portable copy of your personal information, and to appeal a decision about a request. We honor these rights regardless of where you live, and we will not discriminate against you for exercising them. To make a request, email support@nestpoint.org.
Members and individuals
If you are a member of an organization that uses NestPoint — rather than one of its staff — that organization, not NestPoint, controls your information and decides what to collect. Please direct requests to access, correct, or delete your data to the organization directly. If they ask us for help fulfilling your request, we will support them.
Children's and minors' data
NestPoint is business software used by an organization's staff. It is not directed to children, and children do not create their own NestPoint accounts. Organizations may store records about minors — for example, youth programs or family memberships. When they do, the organization is responsible for providing any required notice and obtaining any required parental consent, and we process that information on the organization's behalf. We do not knowingly let a child under 13 create an account directly with us; if you believe that has happened, contact support@nestpoint.org.
Where your data is processed
NestPoint is built for organizations and members in the United States, and we store and process data in the United States.
Changes to this policy
We may update this policy from time to time. When we do, we will revise the effective date above and, where appropriate, notify Customers.
Contact us
Questions about this policy? Email us at support@nestpoint.org.