Data Processing
Last updated: 2 September 2026
Data responsibility
The relevant students' union, institution or society remains the controller of its own membership and event data. Sociora provides the coordination platform and processes data only as needed to deliver the service and according to the agreed terms.
Where data is stored
Application data is stored on Cloudflare's global network, with backups encrypted at rest. Logs and audit records are kept for security and dispute resolution and purged according to the retention schedule.
Retention principles
- Account and active society data are retained while the account or society remains active.
- Deleted accounts enter a review period so ownership and records can be transferred safely.
- Pilot applications and quality metrics are retained only for the period needed to evaluate the pilot.
Your rights
Depending on your region and role, you may have the right to access, correct, export or delete personal data. Requests can be made through Society Settings or by contacting Sociora support.
Subprocessors and integrations
We use a small set of subprocessors for hosting, email, analytics and error tracking. Each integration an institution enables is recorded in the Integration Registry with its data direction, conflict policy and source-of-truth status.