Privacy Policy
Progent Team Portal
Introduction
This Privacy Policy describes how Progent Team Portal (“we,”
“us,” or “our”) collects, uses, and protects your personal
information when you use our application and related services. By accessing or using
Progent Team Portal, you agree to the collection and use of information in accordance
with this policy.
Information We Collect
We collect the following categories of personal information:
- Account Information: Username, email address, display name, and
password (stored in hashed form) when you create an account.
- Phone Number: Mobile phone number, if you enable SMS-based
two-factor authentication (2FA). Your phone number is collected solely for the
purpose of delivering security-related SMS messages.
- Authentication Data: Login timestamps, IP addresses, and
two-factor authentication status for security and audit purposes.
- Usage Data: Application access logs, session information, and
feature usage patterns to maintain system security and improve services.
How We Use Your Information
Your personal information is used exclusively for the following purposes:
- Authentication & Security: To verify your identity during
login, deliver two-factor authentication codes (via email or SMS), and protect
your account from unauthorized access.
- Account Management: To create and maintain your user account,
process password resets, and manage your application preferences.
- SMS Messaging: If you opt in to SMS-based two-factor
authentication, we use your phone number to send security verification codes and
account security alerts. See our
SMS Terms & Conditions
for complete details about our SMS messaging program.
- System Administration: To monitor system health, troubleshoot
issues, and ensure the continued operation of the application.
Mobile Information & SMS Privacy
No mobile information will be shared with third parties or affiliates for
marketing or promotional purposes.
Your phone number and any data collected in connection with our SMS messaging program
are used exclusively for delivering security-related text messages (two-factor
authentication codes, password reset codes, and account security alerts). We do not
sell, rent, lease, or otherwise share your mobile phone number with any third party
for marketing, advertising, or promotional purposes.
All categories exclude text messaging originator opt-in data and consent; this
information will not be shared with any third parties. Your opt-in consent, phone
number, and messaging data are stored securely within our application infrastructure
and are accessible only to authorized system administrators for the sole purpose of
delivering the services you have requested.
Data Storage & Security
We implement appropriate technical and organizational security measures to protect
your personal information against unauthorized access, alteration, disclosure, or
destruction. These measures include:
- Passwords are stored using industry-standard one-way hashing algorithms.
- All data transmission is encrypted using TLS/HTTPS.
- Access to personal data is restricted to authorized administrators on a
need-to-know basis.
- Authentication audit logs track all access attempts for security monitoring.
- Brute force protection mechanisms limit repeated failed login attempts.
Data Sharing & Third Parties
We do not sell, trade, or rent your personal information to third parties. We may
share limited information only in the following circumstances:
- Service Providers: We use third-party service providers (such as
Twilio for SMS delivery and SMTP providers for email) solely to deliver
authentication messages. These providers receive only the minimum information
necessary to perform the service (e.g., your phone number to send an SMS code)
and are contractually prohibited from using your data for any other purpose.
- Legal Requirements: We may disclose your information if required
to do so by law or in response to a valid legal request from a government
authority.
Data Retention
We retain your personal information for as long as your account is active or as
needed to provide you with our services. Authentication logs and audit trails are
retained in accordance with our security policies. You may request deletion of your
account data by contacting your system administrator.
Your Rights
Depending on your jurisdiction, you may have the following rights:
- Access to the personal data we hold about you.
- Correction of inaccurate or incomplete personal data.
- Deletion of your personal data (subject to legal retention requirements).
- Opt out of SMS messaging at any time by replying STOP to any
message or by updating your account settings.
Children’s Privacy
Progent Team Portal is not intended for use by individuals under the age of 18. We do
not knowingly collect personal information from children. If we become aware that
we have collected personal information from a child, we will take steps to delete
that information.
Changes to This Policy
We may update this Privacy Policy from time to time. Any changes will be reflected
on this page with an updated effective date. Your continued use of Progent Team Portal
after any changes constitutes your acceptance of the revised policy.
Contact Us
If you have any questions or concerns about this Privacy Policy or our data
practices, please contact us:
Effective date: March 2026 — This policy may be updated periodically.
http://localhost/auth/privacy