Mentor.

Privacy policy

Last updated 19 September 2026

Who we are

Mentor (https://mentoring.abstractly.dev) is a 1-2-1 engineering mentorship platform operated by Abstractly ("we", "us"). It gives a mentor and their clients one shared place for coaching sessions, curriculum, homework, feedback, and progress tracking. Abstractly is the data controller for the personal data described here. Contact for anything in this policy: jake.brown@abstractly.dev.

The data we collect

Account details. Your first and last name and your email address. Passwords are stored only as salted hashes; we cannot read them. Accounts exist by invitation, so we hold your name and email from the moment a mentor or administrator invites you. A mentor may also keep a record-only client (a name with no sign-in and no email) to track coaching that happens off the platform.

Coaching records. The content the product exists to hold: scheduled and completed sessions; session write-ups including feedback, strengths, areas for improvement, advice, and per-skill scores; curriculum topics, concept checklists, and notes; homework briefs, the client's submissions, and the mentor's reviews; and session allowance records. A mentor's private session notes are shown only to the mentor, never to the client.

Operational records. An audit log of security-relevant events (sign-ins, invitations, administrative changes) with the account and time involved, and a record of the transactional emails the platform sends.

Technical data. Standard server logs (IP address, request path, time) kept briefly by our hosting provider for security and debugging. We run no analytics or advertising trackers.

Cookies

Mentor sets only the cookies required to keep you signed in (session authentication). There are no advertising, analytics, or cross-site tracking cookies, and no third-party cookies at all.

Google user data

Connecting Google Calendar is optional for both mentors and clients. If you choose to connect it, Mentor requests the Google Calendar events scope (https://www.googleapis.com/auth/calendar.events) together with your basic profile email, and uses that access for exactly one purpose: keeping the coaching sessions scheduled on Mentor mirrored into your own calendar.

Mentor's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

You can disconnect Google Calendar at any time from Settings inside Mentor, which deletes the stored tokens, or revoke Mentor's access from your Google account's permissions page. Disconnecting does not delete your coaching records; it only severs the calendar link.

How we use data

We use the data above solely to run the service:

We do not sell personal data, share it with third parties for their own purposes, profile you, or serve advertising.

Who processes it for us

Each processes data only on our instructions. Where data leaves the UK or EU (our hosting is in the United States), it is protected by the providers' standard contractual safeguards. All traffic is encrypted in transit with TLS.

Retention and deletion

We keep your data while your account or coaching engagement is active. When a mentor removes a client, or you ask us to delete your account, we delete the personal data we hold about you, keeping only what a legal obligation or security need (such as audit log entries) requires, and no longer than necessary. Disabling a client's sign-in keeps the coaching record intact; deletion removes it. To request deletion, email jake.brown@abstractly.dev.

Your rights

You can ask for a copy of the personal data we hold about you, ask us to correct it, ask us to delete it, or object to how it is handled. Write to jake.brown@abstractly.dev and we will respond within one month. If you are in the UK or EU, you also have the right to lodge a complaint with your data protection authority.

Children

Mentor is a professional coaching tool and is not directed at children under 16. We do not knowingly collect data from them.

Changes

If this policy changes materially we will update it here and change the date at the top. Continued use of the service after a change means the updated policy applies.