Privacy baseline
Privacy Policy
This draft baseline explains the main categories of information Mishava expects to handle for NGO accounts, evidence, reports, sharing, audit trails, and support.
Draft baseline only. This policy needs privacy and attorney review before broad production launch.
Information handled
Mishava may handle account data, NGO profile data, organization membership records, uploaded evidence files, evidence metadata, report data, share recipient information, billing-plan data, support requests, and audit logs.
Uploaded evidence files and draft reports are private by default unless a user with permission creates an explicit scoped sharing action.
How information is used
Information is used to authenticate users, scope organization access, operate evidence and report workflows, maintain auditability, support users, and preserve trust-system integrity.
Mishava does not sell personal priority profiles. NGO billing plans gate feature capacity only and do not change trust outcomes.
Retention and requests
Some records may need to be retained for auditability, security, legal compliance, dispute handling, fraud prevention, or transparency.
Self-serve data export and deletion automation is not implemented yet. Requests should be sent through support for manual review.
AI and subprocessors
Production NGO AI automation is not enabled in the current baseline. Mishava may prepare AI-assisted evidence suggestions, but those suggestions remain private draft assistance and require human review before becoming structured claim drafts.
Raw evidence files are not sent to AI in the current baseline. Future AI provider/subprocessor use, raw-file processing, retention settings, and no-training-on-customer-data posture must be reviewed and disclosed before launch of those workflows.
AI assistance must not create final trust outcomes, scores, rankings, verification labels, credibility labels, methodology outputs, or report trust conclusions by itself.