Security

How we look after member information.

Last updated August 2026

Schools, parents, and community partners ask how we handle data before they get involved. This page answers that in plain language. It describes our practices, not a formal certification.

We collect less on purpose

The smallest safe amount of data is the easiest to protect. We ask for what we need to run a membership and a meetup, and nothing more. The Growth Cycle quiz runs in your browser and does not require an email address.

Where information lives

Member accounts, meetup RSVPs, and community posts live in established third-party platforms we use to operate GradPlanHQ: Glue Up for the member community app and directory, a calendar and RSVP app, an email provider, a video meeting platform, and website hosting. We rely on those providers' own security programs and keep our use of them current.

Payments

Payments are processed by a third-party payment provider. GradPlanHQ never sees or stores your full card number.

Access inside GradPlanHQ

Only people who need member information to run the program have access to it. Accounts are individual, not shared, and access is removed when someone stops working with us.

Your part

Use a strong, unique password, turn on two-step verification where the platform offers it, and don't share your login. Tell us right away if you think your account was accessed by someone else.

Report a security concern

If you find a vulnerability or something that looks wrong, report it through the Contact Us page with the words "security report" in the message. Please give us a reasonable chance to fix it before sharing it publicly. We will acknowledge your report and let you know what we do about it.

If something happens

If member information is exposed, we will investigate, close the gap, and notify the people affected along with anyone the law requires us to notify.