Access & privacy
A small amount of data, used with care.
The Workroom verifies Telegram membership so private project resources stay within the community. It does not sell member information or use it for advertising.
What we keep
Your Telegram numeric ID, display name, username when available, role, access status, referral progress, feedback reports, site rating, and security events needed to operate the service. Single-use access codes and session tokens are stored only as secure hashes. When a reward unlocks, the Telegram contact used for fulfillment is encrypted at rest.
Risk signals
To stop alternate-account and referral abuse, the site keeps pseudonymous device and network signals for up to 30 days and uses a secure browser guard cookie. Raw IP addresses are not stored or shown to administrators. A device linked to a suspended or banned account can be suspended automatically; uncertain matches are sent to human review.
Referral event
A referral is attached only after a new member completes their first website verification. Referral status, qualification dates, and administrative decisions are stored to prevent double credit. Members see only shortened names for people attributed through their own link; security signals are never shown.
Protected resources
Protected links are encrypted at rest, assigned to distinct verified members, and removed from new assignments when their configured capacity is reached. An audit event records that a resource was opened, but never stores the secret destination URL.
Your access
Telegram membership events can pause access shortly after you leave the required channel. Protected resources also perform a live membership check before opening. Rejoining restores suspensions caused only by leaving the channel; other administrative suspensions still require review.
