Estamos cargando la información más reciente de tu organización.
Last updated: September 8, 2026
AdventPro (adventpro.org) operates an ecosystem of applications for the Adventist community: the institutional apps AdventChurch, AdventEvents, AdventBoard, AdventCare and AdventFinance, and AdventHome, an app for families. This policy applies to the whole ecosystem; where a section applies to a single app, we say so.
AdventPro is operated by Kevin Paredes, currently as a sole proprietor (entity in formation). The controller of your personal data is Kevin Paredes, operating under the trade name AdventPro; you can reach him at support@adventpro.org.
In AdventFinance, the church, conference or organization that subscribes to the service is the controller of its financial records and of its donors' data; AdventPro acts as processor and handles them only under that organization's instructions and this policy.
Account: name, email address and profile photo, or the equivalent data Google or Apple share when you choose to sign in with them.
Institutional apps: AdventBoard manages meetings, agendas, proposals, votes, minutes, and tasks; AdventEvents manages profiles, registrations, tickets, attendance, questions, comments, images, and receipts; AdventChurch manages directories, households, roles, attendance, groups, announcements, and prayers; AdventCare manages households, visits, routes, tasks, notes, prayers, discipleship, chat, and voice reports. These records may reveal religious affiliation and other sensitive pastoral information.
AdventHome (your household's data): household members, family album photos, chat messages, lists, calendar, prayers and devotionals, household finances (budgets, transactions and receipts) and location check-ins.
AdventFinance (treasury data): donor name and envelope number, amounts and allocation of tithes and offerings, images of envelopes, receipts and deposit slips, checks issued, bank statements and transactions the treasury imports from a file or connects through Plaid, journal entries, audit evidence and, only if you record them, voice notes addressed to support.
AdventHome records location only when you share a manual check-in in the foreground. AdventEvents optionally uses foreground location to show nearby events. AdventCare optionally uses foreground location when locating or optimizing visits. AdventChurch uses location with permission for venues, check-ins, and geofences; a geofence may run in the background after the user enables it. We do not use location for advertising or to track activity across apps or sites.
If you scan a receipt in AdventHome, the image is sent to Google Gemini to extract the amount, merchant, and date. In AdventEvents, a receipt is sent to OpenAI only when you choose OCR; text submitted for moderation may also be processed by OpenAI. In AdventChurch, text submitted for moderation may be processed by OpenAI. In AdventCare, report audio is sent to Google Gemini only when you choose to record it, to transcribe it and extract the pastoral summary. We do not use this content for advertising or to train our own models.
Only the people the organization appoints (treasurers, auditors and finance administrators) can access this data, and each one sees only the entities within their scope in the church hierarchy. Donor names are shown to auditors only after they record a reason, and every such access is written to the audit log.
Reading envelopes and receipts: when the treasurer photographs a tithe envelope, a count sheet or a receipt, the image is sent to Google (Gemini models) through the paid API, whose terms exclude using inputs to train models, for the sole purpose of extracting name, amounts, date and allocation. The image is kept privately as the organization's evidence.
Bank connection (Plaid): only if the treasury chooses to connect a bank account, Plaid provides us the transactions needed for reconciliation. Bank credentials are received by Plaid, never by AdventPro, and access tokens are stored in an encrypted server-side vault, never on your device. The organization can disconnect the account at any time.
Google Drive: if the organization connects its own Google Drive, we export copies of remittance evidence there for its records. That drive belongs to the organization and stays under its control.
Face ID and biometric data: the app may ask for Face ID or Touch ID to protect access. Verification happens on your device; AdventPro never receives or stores biometric data.
Voice notes: they are recorded only when you choose to send a voice note to the support team, and are used exclusively to handle your request.
AdventHome subscriptions are processed through the App Store or Google Play via RevenueCat. Institutional billing is processed with Stripe. We never see or store card numbers.
We use your data exclusively to provide and improve the service, support you and protect the platform. We do not sell your data. We show no ads and do not track your activity across third-party apps or sites.
Every household and every organization is isolated at the database level (row-level security): only authorized members can see their data.
Where GDPR applies, we process your data on these bases: contract performance (creating your account, providing the service you signed up for), consent (non-essential analytics, see Cookies below), and legitimate interest (platform security, fraud prevention, service improvement), always balanced against your rights.
Only with the providers that operate the platform, and only what each function requires: Supabase (database and storage), Google (sign-in, Gemini and, if the organization connects it, Google Drive), OpenAI (OCR and moderation in AdventEvents; moderation in AdventChurch), Plaid (bank connection in AdventFinance, only if the treasury enables it), Apple (sign-in), RevenueCat (subscriptions), Stripe (institutional billing), PostHog (analytics, only with your consent) and Sentry (error monitoring). We may disclose information where the law requires it. Full list with each provider's purpose on the Subprocessors page.
AdventHome is a family app: the household is managed by an adult, who controls who belongs to it. In the institutional apps, minors (Adventurers, Pathfinders) do not create their own account or access the platform directly: only authorized adult church staff enter the ministry data needed (name, age, group) to run those programs, in line with Adventist Risk Management child-protection policy.
You can start deletion in the app or follow the instructions at adventpro.org/account-deletion. We remove the sign-in identity, sessions, notification devices, and permissions. Institutional records that belong to the organization, such as attendance, minutes, or historical actions, may be retained without keeping an active account; the church administers requests about those records. Retention depends on the record type, the organization’s policy, and applicable law.
Financial records (AdventFinance): accounting records, evidence and audit logs belong to the organization and are kept for at least seven years, in line with its retention policy and applicable law, even if a treasurer leaves office or deletes their account. Deleting your account removes your personal sign-in data; your name may remain in the organization's accounting records as the author of an entry, under that organization's legal obligation and legitimate interest. Donors can exercise their rights through their church, and we assist the church in responding.
We use essential cookies to run the service and, only with your consent, analytics cookies (PostHog) on events.adventpro.org. Full detail, how to change your choice, and how we honor Global Privacy Control on the Cookie Policy page.
Our providers may process data outside your country (for example, in the United States or the European Union, depending on the provider). Where GDPR requires an additional safeguard for these transfers, we rely on Standard Contractual Clauses or an equivalent mechanism the provider offers.
We apply encryption in transit and at rest, row-level isolation in the database and least-privilege access, with special care for sensitive records. Full detail and how to report a vulnerability on the Security page.
If a security breach affecting your personal data occurs, we will notify the competent authority within 72 hours where GDPR requires it, and affected users without undue delay when the risk to their rights is high. See our incident response plan on the Security page.
You can request access to, correction, portability or deletion of your personal data at any time by writing to support@adventpro.org. We comply with GDPR (Europe), CCPA/CPRA (California) and LGPD (Brazil) where applicable.
We do not sell or share your personal data for advertising purposes, so there is no "sale" to opt out of. If your browser sends a Global Privacy Control (GPC) signal, we treat it as an opt-out of non-essential analytics cookies, the same as declining the cookie banner.
This policy is complemented by: Terms of Use, Cookie Policy, Subprocessors, Security, Refunds and cancellation, and Use of artificial intelligence.
We will publish any changes here, updating the date at the top. If a change is significant, we will communicate it inside the apps.
Questions about this policy? Write to us at support@adventpro.org