Psychmon Privacy Policy
Effective and last updated: September 22, 2026
Application: Psychmon, an online psychology board-exam review and performance-coaching application for Filipino psychology professionals.
Responsible developer: Psychmon Team.
Privacy and deletion contact: admin@aralmon.com.
1. Scope
This policy explains what personal information Psychmon collects, why it is used, where it is stored, when it may be disclosed, how it is protected, how long it is retained, and how users can request deletion. It applies to the Psychmon website and application at psychmon.com, including users who choose Google Sign-In.
2. Information Psychmon collects
- Account and authentication data: a unique Firebase account identifier and email address.
- User-provided profile data: selected exam or board and university, when provided.
- Learning and usage data: quiz answers, scores, exam results, progress, streaks, and performance metrics.
- Subscription and payment-verification data: subscription status, GCash transaction reference number, and information or proof voluntarily submitted for payment verification. Psychmon does not receive bank-account credentials.
- Support and technical data: messages sent to support and limited device, browser, or error information needed to troubleshoot and secure the service.
3. Google Sign-In and Google user data
This section specifically describes Psychmon's handling of information received through Google Sign-In.
3.1 Google user data accessed
When a user selects “Continue with Google,” Google and Firebase Authentication provide Psychmon with a unique account identifier and the user's primary Google Account email address. Google may also make basic profile information, such as a display name and profile photo, available to Firebase Authentication. Psychmon does not copy the Google display name or profile photo into its Firestore user profile for Google Sign-In.
Psychmon does not request or access Gmail messages, Google Drive files, Google Calendar events, Google Contacts, YouTube data, Google Workspace content, or the user's Google password.
3.2 How Google user data is used
Psychmon uses the account identifier and email address only to authenticate the user, create or link the correct Psychmon account, maintain a signed-in session, secure account access, provide support, and associate the user's exam selection, university, subscription status, quiz results, and learning progress with that account.
3.3 Storage and protection
Google Firebase Authentication processes the authentication identity and session. Psychmon stores the Firebase account identifier and email address in a Firebase/Firestore account record with the user's Psychmon learning profile. Data is transmitted using HTTPS encryption. Access is restricted using Firebase security rules and administrative access controls, and is limited to authorized personnel who need it to operate, secure, or support the service. Psychmon never receives or stores the user's Google password.
3.4 Sharing, transfer, and disclosure
Google user data is processed by Google/Firebase as Psychmon's authentication and cloud-infrastructure service provider. Psychmon does not sell, rent, or disclose Google user data to advertisers, data brokers, information resellers, or third-party marketers. Psychmon may disclose the minimum information necessary only when required by applicable law, court order, or a legitimate security or fraud-prevention need.
Google user data is not used for targeted, personalized, retargeted, or interest-based advertising; determining creditworthiness; lending; or training generalized artificial-intelligence or machine-learning models.
3.5 Retention, deletion, and revocation
The Firebase account identifier and email address are retained while the Psychmon account remains active so Psychmon can authenticate the user and preserve learning progress. A user may request account and data deletion at any time by emailing admin@aralmon.com from the address associated with the account.
After the request is verified, Psychmon will delete or de-identify the Firebase/Firestore account profile and associated learning data, except for limited records that must be retained for legal, fraud-prevention, dispute, or transaction-record obligations. Revoking Psychmon's access through Google Account security stops future Google Sign-In access but does not by itself delete the Psychmon account; the user must contact Psychmon to request deletion.
4. How other information is used
Psychmon uses non-Google information described in Section 2 to provide quizzes and performance coaching, remember progress, administer subscriptions, verify payments, respond to support requests, prevent abuse, maintain security, improve user-facing features using aggregated or de-identified information, and comply with applicable law. Personal data is not sold or rented.
5. Service providers and legal disclosures
Psychmon uses service providers only where needed to operate the application, including Google Firebase for authentication, database, hosting, and related infrastructure, and payment services for transaction verification. Providers process data under their own applicable terms and privacy protections. Psychmon may also disclose the minimum required information to competent authorities when legally required or to investigate fraud or security incidents.
6. Retention schedule
| Data | Typical retention |
|---|---|
| Account identifier and email | While the account is active; deleted or de-identified after a verified deletion request, subject to limited legal exceptions. |
| Learning and performance data | While the account is active; deleted or de-identified with the account. |
| Payment-verification records | Up to one year, or longer only when legally required or needed for an active dispute or fraud investigation. |
| Support communications | Up to two years for support, safety, and record-keeping. |
7. User rights and choices
Subject to applicable Philippine law, including the Data Privacy Act of 2012, users may request access, correction, deletion or blocking, object to processing, withdraw consent where consent is the basis, and lodge a complaint with the National Privacy Commission. Requests may be sent to admin@aralmon.com. Psychmon may ask for reasonable verification before acting on a request to protect the account.
8. Security
Psychmon uses HTTPS encryption in transit, Firebase security rules, authentication controls, restricted administrative access, and reviews of its data-handling practices. No internet service can guarantee absolute security, but Psychmon applies reasonable safeguards appropriate to the information handled.
9. Children's privacy
Psychmon is intended for adults and people preparing for professional licensure examinations. Psychmon does not knowingly collect personal information from children under 18. If such information is discovered, contact Psychmon so it can be deleted.
10. Changes to this policy
Psychmon may update this policy when its practices or legal obligations change. The effective date above will be updated, and material changes will be communicated in the application or by another appropriate method. Psychmon will update this policy before using Google user data in a materially different way.
11. Contact
For privacy questions, rights requests, complaints, or account deletion, email the Psychmon Team at admin@aralmon.com. General support is also available through the Psychmon contact page.