Last updated: 2026-09-25
This Privacy Policy governs the manner in which “The One” by Camp Connection (“the App”) collects, uses, maintains, and discloses information collected from users (each, a “User”) of the App. This Privacy Policy applies to the App and all products and services offered by Camp Connection.
Collection of Personal Information
The App operates on an invite-only basis, and Users may not access the App anonymously. A User’s information is not captured unless it is freely and expressly given by the User. Access to the App is granted only upon receiving a link from a User already within the App. Personal identification information is collected from Users when they register on the App, place an order, fill out a form, or engage in other activities or services available on the App. Users may be asked for, as appropriate, name, email address, mailing address, phone number, and other personal information.
Protection of Information
We adopt appropriate data collection, storage, and processing practices and security measures to protect against unauthorized access, alteration, disclosure, or destruction of Users’ personal information, username, password, transaction information, and data stored on the App.
Google User Data — What We Access
A Squad Member may choose to connect their own Google account to The One App so that the App can send email on their behalf. We request a single Gmail permission, https://www.googleapis.com/auth/gmail.send, which permits sending only. We do not request, and cannot obtain, permission to read, list, search, modify, label, or delete any message in your mailbox, and we do not access your inbox, drafts, contacts, calendar, files, or any other Google service. We also receive your name, email address, and profile picture from your Google account so the App can show you which account is connected. Connecting a Google account is entirely optional, and it is not used to sign in to The One App — sign-in uses your own The One App credentials.
Google User Data — How We Use It
This permission is used for one purpose: to send messages that you or your Retreat Center have configured The One App to send from your address, such as an automated booking follow-up or a reminder to a guest. Messages sent this way appear in your own Gmail Sent folder, and replies come back to you directly. We do not use Gmail access to market our own products, for advertising, for credit or lending decisions, for building user profiles, or for any purpose other than providing the features described here.
Google User Data — What We Share
We do not sell, rent, or trade Google user data, and we do not transfer it to data brokers, advertisers, or any third party for their own purposes. It is processed by our own systems and by the infrastructure providers that host The One App on our behalf (Amazon Web Services), under contract and solely to operate the service.
Google User Data — How We Protect It
The credential that allows us to send on your behalf (an OAuth refresh token) is encrypted with a dedicated, customer-managed key in AWS Key Management Service before it is stored. The decrypted value exists only in memory for the moment a message is sent; it is never written to our logs and is never returned to a web browser. Access is limited to the systems that require it.
Google User Data — Retention and Deletion
We keep the encrypted credential only for as long as your account remains connected. You may disconnect at any time from My Profile within The One App, which immediately erases the stored credential from our systems, and you may also revoke access at any time from your Google Account security settings. Messages already sent remain recorded in The One App as part of your Retreat Center's own business records, in the same way a sent letter remains on file; those records contain the message that was sent and do not provide any continuing access to your mailbox.
Google User Data — Limited Use
The One App's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We do not use Google user data to develop, improve, or train generalized artificial intelligence or machine learning models, and we do not transfer Google user data to any third-party service that would do so.
Facial Recognition Software
The App may utilize facial recognition software for certain functionalities. By using the App, Users consent to the collection and processing of their facial data for such purposes.
Sharing Personal Information
We do not sell, trade, or rent Users’ personal identification information to others. We may share generic aggregated demographic information not linked to any personal identification information regarding visitors and users with our business partners, trusted affiliates, and advertisers for the purposes outlined above.
SMS / Text Messaging
The One App (Camp Connection Inc) sends transactional text messages — one-time account-invitation links — to individuals whose mobile number is provided to their Retreat Center employer during onboarding. By providing a mobile number, you consent to receive these messages.
• Message frequency: transactional and one-time — one message per invitation, plus one if an invitation is manually resent. We send no marketing or recurring messages.
• Message and data rates may apply.
• Opt-out: reply STOP to any message to stop receiving messages.
• Help: reply HELP for assistance, or email support@theoneapp.camp.
• We do not share or sell mobile opt-in information or consent to any third party or affiliate for marketing or promotional purposes. Mobile information is used solely to deliver the messages described above.
Website Visitors — What We Collect
Everything above is about the App. This part is about our public website, theoneapp.camp, which anyone can read without logging in.
When you arrive we give your browser a random visitor number and keep it in your browser’s own local storage. It is a random string of letters and numbers with no name attached, we set no cookie for it, and it stays on your device until you clear your browsing data. Beside it we record:
- The pages you open, their titles, and the site you arrived from.
- Which sections you actually stopped and read. A section counts once it has been on your screen for a second and a half.
- The links and buttons you click, kept as the words written on them and where they lead.
- The moment you start typing in the tour form, so we know a form was begun even when it was never sent. We do not record what you type unless you send it.
- Any campaign tags on the web address you arrived on — the utm_source, utm_medium, utm_campaign, utm_content and utm_term parameters — and the code we put on links in our own emails, which tells us that a message we sent is what brought you here.
- Your IP address, and the browser and device you are using. Every web server receives these as part of the request.
All of it goes to our own systems. It is not a third-party analytics product, none of it is sold, and there is no advertising network inside it. If one of our own email links brought you here, we do connect that visit to your contact record in our sales system — that is the only place a visit is tied to a name. And if you fill in the tour form, what you typed — your name, your Retreat Center’s website, your email address, your phone number, what you are running on today and your message — is kept as a sales inquiry. The scheduling calendar you see afterward is provided by HubSpot, the system we use to keep track of conversations.
To keep spam out of our forms, we use Cloudflare Turnstile, which quietly checks in the background that a real person is sending the form. Cloudflare’s Turnstile Privacy Addendum applies to that check.
Advertising and Measurement
We advertise The One App to the people who run Retreat Centers, and we are adding the ordinary tools that let us see whether an ad did any good. Here is each one, and what it does.
- The Meta Pixel. A small piece of Meta’s code on our pages. It tells Meta — Facebook and Instagram — when a visit, a started tour form or a booked tour happened here, and it lets Meta show our ads to that browser later.
- The Meta Conversions API. The same events, sent to Meta from our own server instead of from your browser, because a booking can be confirmed after the page has closed. Where we have one, it carries a hashed — one-way encrypted — version of an email address or phone number, so Meta can match the event to the right ad.
- The Google Ads tag, with enhanced conversions for leads. It tells Google when a visit that began with a Google ad turned into a tour request. “Enhanced conversions for leads” means the email address you typed is hashed in your browser before it is sent, so Google can match the tour request to the ad click without receiving the address itself.
- Microsoft Advertising UET and the LinkedIn Insight Tag. We may add one or both. They do for Microsoft and LinkedIn what the tags above do for Meta and Google: count the visits an ad produced, and let us show ads to people who have been here.
These tags set their own cookies and read their own identifiers, under the rules of the company that provides them, and what that company then does with the information is governed by its privacy policy rather than ours. None of them loads if your browser sends a Global Privacy Control signal — see Your Privacy Choices below.
Advertising Audiences Built From Our Contact List
We keep a business contact list: the Retreat Centers we talk to, and the people at them. We may take an email address or a phone number from that list, turn it into a hash — a one-way encrypted string that cannot be turned back into the original — and give that string to Meta and to Google.
They use it for two things. To build an audience, so our ads reach the people on the list instead of everyone. And to exclude people, so that someone who is already a client, or already has a tour on the calendar, or has asked us to stop, does not get shown an ad written for a stranger.
We are saying this plainly because it is your information: we share business contact data, in that hashed form, with those two companies for advertising. We are not paid for it, we do not send them the rest of what we know about you, and we never upload the personal information of a Retreat Center’s Guests, Guardians or Squad Members to any advertising platform. The list is business contacts only.
Retargeting, in Plain Words
If you read this website and then see our ad on Facebook a few days later, that is not a coincidence. It is retargeting: the tag on our pages told Meta that a browser was here, and we paid to put our ad in front of that browser again. Google, Microsoft and LinkedIn work the same way. We do not learn your name from it — we learn that someone who visited is worth one more ad — and you can switch it off, either at the platform or for every website at once, with the controls in the next section.
Your Privacy Choices
You have several, and every one of them works.
- Global Privacy Control. If your browser, or an extension in it, sends the Global Privacy Control signal, we load no advertising or measurement tag at all. There is nothing to click and nothing to tell us. globalprivacycontrol.org explains how to turn it on. Our own visit counting does continue, because it is first-party, shared with nobody, and how we keep the site working.
- Your browser. Blocking or clearing cookies and site data stops the advertising tags from recognizing your browser. It also erases the visitor number described above, and your next visit starts a fresh one.
- The platforms’ own settings. Meta: accountscenter.facebook.com/ad_preferences. Google: myadcenter.google.com. Microsoft: account.microsoft.com/privacy/ad-settings. LinkedIn: linkedin.com/mypreferences/d/categories/advertising-data. For many advertising companies at once, the Network Advertising Initiative keeps a page of opt-out tools at thenai.org/how-to-opt-out.
- Ask us. Email support@theoneapp.camp and say you want out of our advertising audiences. We remove your contact from the lists we have uploaded, add you to the exclusion list so you are not put back, and write to tell you it is done. You do not need an account, and you do not have to explain why.
Do Not Sell or Share My Personal Information
We do not sell personal information. We never have, and there is no arrangement under which anybody pays us for it.
Retargeting is a different matter, and we would rather be straight about it. When we let Meta or Google recognize a visitor so that our ad can find them somewhere else, several state laws treat that as “sharing” personal information for cross-context behavioral advertising, whether or not money changes hands. If you do not want it, any one of these is enough to stop it: turn on Global Privacy Control, which we honor automatically; turn off ad personalization at the platforms; or email support@theoneapp.camp and ask us to take you out. The links are in Your Privacy Choices, just above.
How Long We Keep Website Data
Website visit records — the pages, sections, clicks and campaign tags described above — are kept for up to 24 months, then deleted. A tour request is a business record, and we keep it while we are in conversation with your Retreat Center and for as long as our own records require, the same as any other inquiry. A hashed contact list uploaded to an advertising platform is replaced each time we refresh it, and is deleted when we remove the audience or when you ask us to take you out of it. What each platform keeps on its own side, and for how long, is set by its policy rather than ours.
Which Sites This Policy Covers
This policy covers The One App and our website at theoneapp.camp. Camp Connection also runs campconnection.net, a free directory that helps groups find Retreat Centers. It has its own privacy policy, at campconnection.net/privacy, and none of the advertising described here runs on it.
Acceptance of Terms
By using this App, Users signify their acceptance of this policy. If Users do not agree to this policy, please do not use the App. Continued use of the App following the posting of changes to this policy will be deemed as acceptance of those changes.
Disclaimer of Liability
By using the App, Users acknowledge and agree that Camp Connection accepts no liability for any loss, damage, or harm arising from the use of the App or the collection, storage, processing, or disclosure of personal information as outlined in this Privacy Policy. Users assume full responsibility for their use of the App and any consequences thereof.
