AW TEAM / DATA
Privacy Policy
This page explains what data the AW TEAM website receives, why it is needed, and how to request its deletion.
Effective September 20, 2026
Who processes the data
The AW TEAM team operates this website. This policy applies to avt-team.ru, the user profile, project request form, and built-in assistant.
Use the contacts at the end of this page to ask about processing or deletion of your data.
Data we receive
The data depends on the website features you choose to use.
- Google or Yandex sign-in: your provider account identifier, name, verified email address, and profile image URL.
- Project requests: your name, reply contact, task description, and assistant conversation when you choose to attach it.
- User profile: requests, project stages, order status, update history, and loyalty program data.
- Technical data: secure cookies used for sign-in and OAuth completion. Form drafts are temporarily stored in your browser sessionStorage.
How we use data
We use data only to provide the features selected by the user.
- creating an account and signing in;
- saving a request and showing project progress;
- contacting you about a request and notifying the AW TEAM team;
- maintaining order status and loyalty benefits;
- protecting the website, sessions, and OAuth redirects from abuse.
Google and Yandex OAuth
When you select a sign-in provider, your browser is redirected to Google or Yandex. You enter your password on the provider’s page; AW TEAM never receives it.
The website requests only the minimum identity data: name, email, and profile image. The OAuth access token is used once to retrieve the profile and is not stored in the AW TEAM database.
Service providers
Some features require processing by the following providers:
- Google or Yandex when you select the corresponding sign-in method;
- OpenRouter when you message the assistant or use the request text improvement feature;
- our email provider and Telegram to deliver a request and an internal notification;
- our hosting provider to run the website and securely store operational data.
Retention and security
A user session lasts up to 30 days and the temporary OAuth cookie up to 10 minutes. A form draft remains only for the current browser session. Account and request data is retained while needed to serve the project, meet obligations, or comply with applicable requirements.
We use HTTPS, signed HttpOnly cookies, restricted administrative access, and minimal OAuth scopes. No method of transmission or storage can provide absolute security.
Sharing and sale of data
We do not sell personal data or use Google or Yandex account data for advertising profiles. Access is limited to AW TEAM and providers required for the functions listed above.
We may also disclose data where required by applicable law or necessary to protect users, the service, and legal rights.
Your choices and deletion
You may request access, correction, restriction, or deletion of your account data. Include the email address used to sign in so we can locate the account and verify the request.
Revoking access in Google or Yandex settings prevents future sign-in through that provider, but does not automatically delete existing project requests. Contact AW TEAM separately for complete deletion.
Policy changes
We may update this policy when website features, providers, or applicable requirements change. The current version and its effective date will always be available at this URL.
PRIVACY CONTACT