Camelot

Privacy Policy

Camelot — piattaforma di voto e assemblee · e-voting and assembly platform

Questa pagina contiene l'informativa sulla privacy di Camelot, incluso il trattamento dei dati del componente aggiuntivo per Google Meet. Il documento completo è consultabile qui sotto e può essere scaricato in PDF.

This page contains the Camelot privacy policy, covering the Google Meet add-on as well. The full document can be read below or downloaded as a PDF.

Il tuo browser non può mostrare il PDF incorporato. Apri la Privacy Policy (PDF).

Scarica / apri il documento in PDF — Download the PDF

In sintesi, per il componente aggiuntivo Meet · In short, for the Meet add-on

Dati Google a cui l'app accede. (1) Con l'accesso tramite Google: nome, indirizzo email e immagine del profilo dell'utente che si identifica (ambiti openid, email, profile). (2) Tramite la Google Meet REST API, e solo per chi presiede l'assemblea: l'elenco dei partecipanti della riunione in corso — nome visualizzato e orari di ingresso/uscita (ambito meetings.space.readonly). Nessun altro dato Google viene letto: né registrazioni, né trascrizioni, né calendario, né contatti.

Google user data accessed by the app. (1) Through Google sign-in: the name, email address and profile picture of the user who signs in (openid, email and profile scopes). (2) Through the Google Meet REST API, and only for the assembly chair: the participant list of the current meeting — display names and join/leave times (meetings.space.readonly scope). No other Google data is read: no recordings, transcripts, calendar or contacts.

Uso. Il pannello mostra l'elenco dei partecipanti in tempo reale solo a chi presiede, per il registro presenze; l'elenco non viene conservato. Le presenze registrate nascono dall'identificazione volontaria di ciascun partecipante con il proprio account Google. Nessun dato è ceduto a terzi, usato per pubblicità o per addestrare modelli.

Use. The side panel shows the participant list in real time to the chair only, to keep the attendance record; the list is not stored. Recorded attendance comes from each participant's own Google sign-in. No data is shared with third parties, used for advertising, or used to train models.

Protezione. I dati trattati da Camelot (presenze e voti registrati, nome ed email di chi si identifica) viaggiano cifrati (TLS) e risiedono cifrati sull'infrastruttura AWS in regione UE, con accesso limitato al personale autorizzato. I token OAuth di Google vengono verificati e usati al momento e non sono mai conservati in modo persistente; l'elenco dei partecipanti Meet è letto tramite un token di breve durata e non lascia mai il browser di chi presiede se non per essere mostrato. Conservazione e cancellazione. L'elenco dei partecipanti Meet non viene mai conservato; presenze e voti restano nel verbale dell'assemblea per conto dell'organizzazione che la gestisce e vengono cancellati su richiesta dell'organizzazione o dell'interessato scrivendo a info@camelot.vote.

Protection. The data Camelot processes (recorded attendance and votes, and the name and email of users who sign in) is encrypted in transit (TLS) and at rest on AWS infrastructure in the EU region, with access limited to authorized personnel. Google OAuth tokens are verified and used on the spot and are never stored persistently; the Meet participant list is read with a short-lived token and never leaves the chair's browser except to be displayed. Retention and deletion. The Meet participant list is never stored; attendance and votes remain in the assembly minutes on behalf of the organization running the assembly and are deleted upon request by the organization or the data subject at info@camelot.vote.

The use of raw or derived user data received from Workspace APIs will adhere to the Google User Data Policy, including the Limited Use requirements.