Draft updated July 30, 2026
1. Information collection
Metric ID processes narrowly scoped data when a user explicitly consents to an address-verification request.
- Account information: email address and authentication records required to identify and secure the account.
- Verification details: the requested address, purpose, organization, selected duration, and consent status.
- Location events: device coordinates and geofence events during an active, consented verification window.
- Security telemetry: request metadata used to prevent abuse and protect authentication flows.
Mobile requests may accept events without coordinates when location is temporarily unavailable. Metric ID does not begin tracking because a universal link was opened.
2. Use of information
Address verification
Location events are used to evaluate the specific address request the user accepted and to produce a verification status for the requesting organization.
Fraud prevention and security
Authentication, rate-limit, and device event data may be processed to protect users, organizations, and the integrity of the Service.
Service communication
Metric ID uses email addresses to deliver invitations, sign-in links, account notices, and responses to support requests.
3. Data retention
Metric ID follows a principle of data minimization. Tracking credentials expire at the end of the accepted verification window, and raw bearer or tracking tokens are not persisted.
15 min
Portal magic links
Single-use and short-lived.
30 days
User bearer tokens
Unless revoked sooner.
1–4 days
Tracking windows
Selected per request.
Final retention schedules for verification records, operational logs, contact submissions, and statutory records must be documented after legal and compliance review.
4. User rights
Depending on applicable law, users may have rights to access, correct, delete, restrict, or obtain a copy of their personal information. Users can reject a pending verification, and an accepted verification cannot silently be extended beyond the organization-selected duration.
Requests may be subject to identity verification and lawful record-retention obligations.
5. Contact information
For privacy questions or data-rights requests, contact our privacy team. Do not include passwords, bearer tokens, API keys, or other secrets.
Submit a privacy request