Privacy Policy
What Àwùjọ Ọmọ Yorùbá collects when you use this website, why we hold it, and who else sees it.
Draft — awaiting owner sign-off and legal review. This policy describes what the website actually does today, but it has not been approved by the organisation or reviewed by a lawyer, and is not final. It must not be treated as the published policy until both have happened.
Membership accounts
When you register as a member we store your first and last name, email address, phone number, a one-way encrypted form of your password (never the password itself), and whether you joined through the Homebase (Nigeria) or Diaspora path. Depending on the path you choose we also store your hometown, your state of residence, and — for diaspora members — your city, country of residence, country of origin, optional postal address, and your professional interest or area of contribution.
If you had an account on our previous WordPress website, your username and existing encrypted password were carried over so that you can keep using the same login. The stored password is upgraded to a newer encryption format the first time you sign in; we never see or store your password in readable form.
Contributions and donations
We record each membership contribution and donation: the amount, the currency, the payment method used, the status of the payment, and a reference supplied by the payment provider. For monthly memberships we also record the subscription status and the next billing date. If you donate without an account, we store the name and email address you enter on the donation form so we can send you a receipt.
Payment providers
Payments are handled by three providers, chosen by region and payment method: Paystack for Homebase (Naira) payments, and Stripe or PayPal for Diaspora (US Dollar) payments.
You enter your card or account details on the provider's own secure checkout page. Your full card number and security code never reach our servers, and we never store them. When you refresh your subscription from your dashboard, we ask the provider for a summary of the card you are charged on — the brand, the last four digits and the expiry date — so we can show it to you. We display it and discard it; it is never stored.
We send the provider only what is needed to take the payment: your name, your email address, the amount and currency, a description of what you are paying for, and whether it is a membership or a donation. The provider then notifies us of the result. Each provider handles your data under its own privacy policy.
Email we send you
Transactional email is delivered through Resend, which receives your email address and the contents of the message. We send four kinds of message and no others: a welcome email when your membership is confirmed, a receipt for each contribution or donation, a password-reset link when you ask for one, and a notification to our own team when you use the contact form.
Your newsletter subscription
We also offer an optional email newsletter. You are only added to it if you ask to be, by using the subscribe form yourself — it is never bundled with membership or donating, and joining or giving never subscribes you. Ticking nothing is a complete answer.
When you subscribe we send you one email asking you to confirm. We do not send you anything else unless you click the link in it, and if you never click it we delete the address. That step exists so that nobody can sign you up using your address without your knowledge.
We keep your email address, the date you subscribed, and the wording you agreed to, for as long as you stay subscribed. Every newsletter carries a one-click unsubscribe link that works without signing in, and we act on it immediately. Your address is used for the newsletter and nothing else — we do not sell it, and we do not share it with anyone other than the service that delivers the mail for us.
Unsubscribing does not affect your membership, and cancelling your membership does not on its own unsubscribe you. The two are deliberately separate so that neither can surprise you.
The contact form
Messages sent through our contact form are stored in our database with your first name, last name, email address, and the message itself, and are emailed to our team so we can reply. The form includes a hidden field used to detect automated spam.
To stop automated abuse, this form — along with the password-reset and newsletter-signup forms, and no other page — uses Cloudflare Turnstile, a check that confirms you are a person. Your IP address and browser details are sent to Cloudflare for that check. We chose it over Google reCAPTCHA specifically because it does not profile you for advertising and does not follow you across other websites, and we load it only on these three forms rather than on every page.
Analytics
We use Google Analytics to count visits, and only if you have agreed to it. We ask you once, with a clear yes and a clear no. Until you choose yes, it does not run.
What “it does not run” means here. Before you agree, your browser is not sent the Google Analytics code at all — it is not loaded and switched off, it is absent. No request is made to Google, no cookie is set, and Google receives nothing about you. That decision is made on our server when the page is built, not by a script running in your browser afterwards.
If you do agree, then from that point:
- Google sets two cookies, _ga and one beginning _ga_, which last two years from your most recent visit. They let Google recognise your browser so that your return visit is not counted as a different person. Both are named on our cookies page.
- Google receives your IP address, details about your browser and device, and which pages you viewed and when. Google is a company based in the United States, so this information leaves the country you are in.
- We use it to see how many people visit and which pages are read. We do not use it for advertising, we have not connected it to Google Ads or any advertising product, and we do not use it to build a profile of you.
- None of it is linked to your membership record. Analytics does not run at all on the signed-in areas of this site — not your dashboard, and not the administration pages — so the pages you visit while signed in are not sent to Google whatever you have chosen.
You can change your mind at any time, and it is one button on our cookies page. Withdrawing is as easy as agreeing was: the counting stops, and the two Google cookies are deleted from that browser immediately. Saying no, or changing your answer to no, has no other effect on anything — nothing on this site is withheld from you for refusing.
We are relying on your consent for this, and on nothing else. We are not claiming a legitimate interest in tracking you.
Cookies and browser storage
Signing in sets one cookie, which holds a signed session token identifying your account and whether you are an administrator. It exists so that you stay signed in as you move between pages. It is essential to the website working and cannot be switched off. Related cookies keep your sign-in secure and return you to the right page afterwards.
We set no advertising cookies and we do not profile you across other websites. We do set analytics cookies, but only for people who have agreed to the counting described above — they are named and explained on our cookies page, along with every other cookie this website sets and how long each one lasts. We also store a small record of your yes-or-no answer, so that we do not ask you again on every page; that record is listed there too.
The two typefaces are served from our own domain rather than from a third party, so no request for a font reaches anyone else.
Password-reset links are single-use and expire one hour after they are requested. We store only an encrypted fingerprint of the link, never the link itself.
Who can see your information
Our administrators can see member records, contribution history, and contact-form messages in order to run the organisation. Beyond that, your information reaches only the following service providers, each acting on our behalf:
- the payment provider handling your payment — Paystack, Stripe, or PayPal, as described above;
- Resend, for delivering the transactional emails described above;
- DigitalOcean, which hosts this website and its database for us;
- Cloudflare, which receives your IP address and browser details when you use one of the three forms described above, so it can check you are not an automated program;
Google belongs on that list too, but only for people who have agreed to the analytics described above. If you have not agreed, or you said no, Google receives nothing from this website about you.
We do not sell your information, and we do not share it for advertising or with data brokers.
How long we keep it
Account details, profile details, and contribution history are kept for as long as your account exists. If your account is deleted, your profile and your subscription records are deleted with it; the underlying payment records are retained for our financial records, but are no longer linked to your account. Contact-form messages are kept until we remove them.
Your choices
You can view and manage your membership from your dashboard, and cancel a monthly contribution at any time.
You can also ask us for a copy of what we hold about you, ask us to correct it, ask us to delete your account, or object to what we are doing with it.
To do any of those, email privacy@awujo.org. That address reaches a person, and it is the right one to use for anything about your own data — including a complaint about how we have handled it. You can also use our contact form if you prefer, but the email address does not depend on the form working.
If you are in the United Kingdom, the European Union, or Nigeria, you may also have the right to complain to your national data protection authority.
Changes to this policy
If what we collect or who we share it with changes, we will update this page. It is currently a draft awaiting legal review.
Last updated 17 August 2026.
