Data Security Framework

Privacy Policy

Effective Date: October 2026. How we protect your ecosystem.

Legal Language Notice

To prevent translation discrepancies, the English version of this document is the sole legally binding agreement. This translation is provided for convenience only.

1. Government ID & KYC Vaulting

Jubido mandates Government-Issued ID Verification for all users attempting to Host Public Events or purchase tickets to Public Events.

  • AI Processing: Your ID is transmitted securely to Google's Gemini 2.5 Flash infrastructure for instantaneous optical character extraction (Name, DOB, and Expiration Date). The resulting metadata is pinned to your internal database row.
  • Cold Storage: The raw image file is immediately uploaded into an isolated, Private-Tier Supabase Storage Bucket (`kyc-documents`). It is strictly inaccessible from the public web and disconnected from edge caching.
  • Expiration Handling: Upon document expiration, the global state engine automatically invalidates your "Verified" privileges and forces a re-upload of a current, legally valid ID.

2. Location Metadata & Check-Ins

To populate the global Public Event Feed efficiently, Jubido uses edge-level IP bridging (Vercel Geolocation headers) to pinpoint your approximate municipality (e.g., San Francisco, CA) dynamically. Jubido may also request explicit access to your device's geographical coordinates to facilitate "Survival Check-ins" and real-world plotting. This explicit mapping is siloed within your Friend Circle (`friendships/status: accepted`) and is never syndicated to third-party ad networks or public indexing services.

3. Payment Routing & QR Vaulting

Jubido does not process credit card transactions natively to bypass strict 30% App Store monopolistic taxation. Instead, we securely vault peer-to-peer payment vectors (Venmo Usernames, PayPal Links, and Zelle QR Codes). Uploaded QR codes are actively screened via Gemini AI to guarantee algorithmic matching and prevent sophisticated phishing swaps.

4. Automated Abusive Content Moderation

To ensure platform safety, Jubido utilizes background Regex and AI-driven scanners to actively monitor Event Titles, Descriptions, and Group Chat payloads in real-time. Any content detected matching our dangerous keyword heuristics (e.g., self-harm, harassment) is instantly intercepted before broadcasting and permanently logged within our isolated `high_risk_reports` database mapping your User ID and IP for formal review or potential de-platforming.

Furthermore, Jubido empowers the community via an Anonymous Reporting API. If an event or localized chat accumulates 3 unique penalty flags from the user-base, the system automatically intervenes—hiding the event globally and disbanding the involved chat room to preserve community trust.