Privacy Policy

How IROAP handles user, author, reviewer, manuscript, and publication data.

Information we collect

IROAP collects account information, submission metadata, manuscripts, review records, contact messages, download analytics, and administrative audit logs needed to operate the publication website.

Purpose of processing

Data is used for account management, editorial screening, peer review, publication decisions, repository preparation, citation display, scholarly discoverability, communication, analytics, and security.

Role-based confidentiality

Access to manuscripts and personal data is limited according to role and workflow need. Reviewer identities are handled confidentially within the editorial process unless disclosure is required by policy or law.

Repository and third-party sharing

Accepted publication metadata and approved article files may be shared or exposed through the IROAP repository and services such as Zenodo, OpenAIRE, Google Scholar, and the IROAP publication repository for lawful open-access dissemination. Unaccepted manuscripts are not made public without author authorization or legal obligation.

Retention and author rights

IROAP retains records as needed for publication history, audit, legal compliance, and archive integrity. Authors and users may request correction of inaccurate personal information, subject to publication record and legal preservation requirements.

Security safeguards

The platform uses password hashing, CSRF protection, prepared statements, upload validation, output escaping, role-based access control, and audit logging. No system can promise absolute security, but reasonable technical and organizational safeguards are applied.

Student researchers and co-authored submissions

When the submission involves minors, student theses, institutional datasets, or multiple co-authors, the submitting author must ensure proper authority, adviser approval when required, and lawful permission to share the manuscript and metadata.