Privacy Policy
A plain-language explanation of what the platform records, why it is needed, and how students stay in control.
Last updated: July 27, 2026
1. What YouthBridge is
YouthBridge helps high-school students discover opportunities, form purpose-bound teams, build projects, record submissions, and create a portable Talent Passport. This notice covers the YouthBridge website and platform.
YouthBridge does not sell student contact lists or unrestricted access to student profiles. Organizations pay for programs, sponsored challenges, reporting, and student-approved access to selected work evidence.
2. Data we collect
Depending on the features you use, we process:
- account data such as name, email, and authentication records;
- eligibility and matching data such as birth year, country, city, school, graduation year, timezone, languages, skills, and interests;
- team data such as applications, roles, availability, milestones, team-room messages, and safety reports;
- work evidence such as project descriptions, links, uploaded artifacts, submission receipts, outcomes, and peer verifications;
- consent and visibility choices, including Passport visibility, institution discovery, school reporting, and time-limited Scout access;
- product events such as onboarding completion, opportunity tracking, team formation, artifact creation, and submissions. These events measure the activation-to-submission funnel and are not public engagement scores;
- basic technical and security information needed to operate and protect the service.
YouthBridge stores birth year instead of a full date of birth and does not need a home address for the core product.
3. How we use data
- operate accounts, teams, messaging, storage, and submissions;
- check eligibility, deadlines, and teammate compatibility;
- build a Passport from verifiable work rather than popularity;
- provide safety, moderation, support, and fraud prevention;
- send service messages and deadline notifications you request;
- improve completion, matching quality, and program outcomes using aggregated or de-identified analysis;
- meet legal obligations and enforce platform rules.
4. Visibility and institution access
Student profiles start private. Team members can see the information needed to collaborate after joining the same team. Public Passport and institution discovery are separate controls and start off.
A verified organization must make a purpose-specific Scout request. Students choose whether to approve it, which evidence is included, and how long access lasts. Contact details are not released simply because an organization pays YouthBridge.
5. Service providers and international processing
YouthBridge uses service providers to run the product, including Supabase for authentication, database, storage, and Realtime, Resend for guardian-consent transactional email, and a hosting provider for the web application. Monitoring, analytics, or support providers may be added as the pilot grows.
Because YouthBridge connects students internationally, data may be processed outside your country. We limit providers and access to what is needed to operate the service.
6. Students, age, and guardian requirements
YouthBridge is designed for secondary-school students. Accounts whose recorded birth year indicates that the student is under 18 require a verified parent or legal-guardian consent before team membership, team messaging, artifacts, peer verification, or submissions unlock. Profiles remain private while consent is pending.
The guardian receives a purpose-specific verification request covering collaboration, messaging, submissions, and private Passport evidence. Guardian approval does not enable public visibility or institution discovery; those remain separate controls. Consent is recorded with its policy version, verification time, scope, and expiry. YouthBridge stores birth year rather than a full birth date for the pilot.
7. Retention, deletion, and security
The pilot applies declared limits: product analytics for 18 months, team messages for 24 months, unverified guardian requests for 90 days, and resolved safety records for 36 months before anonymization review. Project artifacts and verified submission evidence remain while the account or relevant team record is active because they form the requested proof-of-work record.
Students can request account deletion from Passport. Requests enter a 30-day recovery window and are then processed by the retention job. Legal, fraud-prevention, or active safeguarding obligations may require a narrowly scoped hold; any such hold is reviewed rather than used for general product analytics.
YouthBridge uses private-by-default profiles, row-level database security, team-scoped messaging, private artifact storage, and restricted institution access. No internet service can promise absolute security; report a suspected issue promptly.
8. Your choices and rights
You can:
- review and correct your profile;
- change Passport and institution-discovery visibility;
- decline or expire institution access requests;
- request a copy of your work evidence;
- request account deletion;
- contact YouthBridge about access, correction, or a complaint.
Rights vary by location. Contact hello@youthbridge.net so the team can verify the request and respond.
9. Changes and contact
Material changes will be posted here with a new revision date and, when appropriate, communicated in the product before they take effect.
Privacy, safety, or data requests: hello@youthbridge.net. For reporting guidance, visit the YouthBridge Safety Center.