Legal

Privacy policy

How Capnis SSO processes identity and session data when you sign in to Capnis websites. This is a placeholder for legal review.

Last updated: July 22, 2026

Data controller

Capnis operates capnis.one as the single sign-on hub for Capnis websites. For privacy inquiries contact support@capnis.com.

Information we collect

  • Account data: name, email, phone, business and billing details provided during registration.
  • Authentication data: password hashes, optional 2FA secrets, passkey credentials, and session identifiers.
  • OAuth data: tokens, consent grants per Capnis website, connected application metadata, and audit logs of sign-in events.
  • Technical data: IP address and user agent stored in audit and security logs.

How we use data

We process data to authenticate users across Capnis websites, issue OAuth tokens, sync roles to connected properties, provision records to linked Capnis systems when enabled, and maintain security of the SSO service.

Cookies & sessions

capnis.one uses session cookies required for sign-in and CSRF protection. We do not use third-party advertising cookies on the authorization server.

Sharing

Profile and role data may be transmitted to Capnis websites you authorize and to configured integration endpoints under Capnis APIs. Each connected Capnis website is responsible for its own privacy practices.

Retention & rights

Contact us to request access, correction, or deletion of your account subject to legal and contractual obligations. Audit logs may be retained for security purposes.