Hub is software an organisation runs on its own infrastructure, called its workspace. The Hub apps for iPhone, iPad and Mac (bundle ID dev.alma.hub) and the Hub web app connect to that workspace. This policy explains what data Hub handles, where it is kept, and who is responsible for it.

Who is responsible

  • Your organisation runs its workspace and decides how it is used. It controls the data in it: your account and your content. Questions about that data, or requests to delete your account, go to your organisation's administrator.
  • ALMA (Albuquerque de Matos, Lda) publishes Hub and its apps. ALMA is responsible for the limited data that reaches ALMA's own services, listed under "Data that reaches ALMA".

Summary

  • No advertising, no tracking across apps or websites, no sale of personal data.
  • Your workspace data is stored in your organisation's own deployment, not by ALMA.
  • ALMA receives error reports to fix problems (kept for 90 days) and, for most workspaces, passes notifications on to Apple.

Data in your organisation's workspace

  • Account: name, email address, role and permissions, and language. Your password is stored only as a secure hash.
  • Content: the files, meetings and meeting history (who joined and when), time entries, mail campaigns and other content you create or upload in the workspace's apps.
  • Sign-in and security: for each signed-in device, the IP address, which device and browser or app it is, an approximate location derived from the IP address (city and country), how you signed in and when it was last active. You can see these, and sign any device out, in Settings → Sign-in & security. A session ends when you sign out or after 7 days without use.
  • Passkeys: if you create one, the workspace stores its public key, an identifier, which password manager holds it, and when it was created and last used. The private key never leaves your device or password manager.
  • Notifications: if you allow them, the device's notification token, the device name and model, and the system and app versions.
  • Preferences: theme, language, and notification and meeting settings.

Data that reaches ALMA

  • Error reports: when something fails, the app sends ALMA a report with the error and where it happened, the page address with sensitive parts removed, your user ID and email address, the app version, the workspace's address and licence, and device details (browser or app version, screen size, language and connection type). ALMA uses them only to find and fix problems, on the basis of its legitimate interest in keeping Hub working and secure. Reports are deleted after 90 days.
  • Notification relay: for workspaces that do not send notifications to Apple themselves, ALMA's service passes each notification (its title and text, the device's notification token and the workspace) on to Apple's Push Notification service. It is not stored.
  • Licence checks: each workspace confirms its licence with ALMA. This contains no personal data about you.

Data on your device and in iCloud

  • The app remembers which workspaces and accounts you use on the device (the workspace address, your name and email) so it can open them and offer them at sign-in, together with your preferences.
  • If you use iCloud, the app keeps the list of workspaces you signed in to (the workspace's address and name, your name and email; never passwords or tokens) in your iCloud key-value storage, so your other devices can offer them. Apple stores it in your iCloud account; ALMA cannot access it. Removing an account from the app removes it from that list.
  • Passkeys are saved by your password manager (for example iCloud Keychain), not by Hub.

Permissions

The app asks before using any of these, and you can change them at any time in your device's settings:

  • Camera and microphone: for meetings, only when you join one or turn them on.
  • Photos and files: only the items you choose to upload.
  • Notifications: optional.
  • Face ID or Touch ID: used by the system to confirm a passkey. Hub never receives biometric data.
  • Screen recording (Mac): only while you share your screen in a meeting.

Service providers

  • Cloudflare hosts each workspace in the organisation's own Cloudflare account, and hosts ALMA's services. Meeting audio and video travel through Cloudflare's real-time service; Hub does not record meetings.
  • Apple delivers notifications and provides iCloud and passkeys.
  • Features your organisation turns on may use other providers it chooses, for example Google (Gmail) to send mail campaigns.

Your rights

Under the GDPR you may ask to access, correct or delete your data, to restrict or object to its use, or to receive a copy. For data in your workspace, ask your organisation's administrator; deleting your account also removes its sessions and passkeys. For data held by ALMA, such as error reports, write to [email protected]. You may also complain to a data protection authority; in Portugal, the CNPD.

Children

Hub is a workplace tool and is not directed at children under 13.

Changes

We may update this policy to reflect product or legal changes. The "Last updated" date at the top of this page changes when we do.

Contact

Albuquerque de Matos, LDA
Lisbon, Portugal
Privacy: [email protected]
Support: [email protected]