Privacy Policy

How TruHub Solutions collects, uses and protects personal data in TruHub Origin.

Last updated 2 August 2026 · TruHub Solutions

1. What we collect

Account data: name, email address, workspace membership and role.

Registry data: the metadata you submit for an asset — title, category, asset type, declared owner, jurisdiction and description — plus the SHA-256 fingerprint of the file.

Operational data: audit events (registration, issuance, transfer, verification), timestamps and coarse request metadata used to protect the registry.

2. What we do not collect

We do not store the files you register. Hashing happens in your browser and only the resulting fingerprint is transmitted, so the original asset never leaves your device through this platform.

3. How we use it

To operate your workspace, issue and resolve certificates, maintain an immutable audit trail, secure the service, and respond to support requests.

We do not sell personal data and we do not use registry content for advertising.

4. Public information

A certificate's verification page is public by design. It shows the declared title, owner name, jurisdiction, status, fingerprint, certificate serial and audit history. Do not place personal data in fields you do not want published.

5. Retention

Registry records and audit events are retained for the life of the certificate because their evidentiary value depends on permanence. Account data is deleted within 30 days of a verified deletion request, except where retention is legally required.

6. Your rights

Depending on your jurisdiction you may request access, correction, export or deletion of your personal data, and may object to certain processing.

Send requests to truhubsolutions16@gmail.com. We respond within 30 days.

7. Security

Access is authenticated, workspace-scoped and enforced at the database layer with row-level security. Transport is encrypted with TLS. Administrative actions are written to the audit log.