Privacy Policy
Last updated: 2026-07-21
Greenlight Approvals (“the App”) is a monday.com marketplace application provided by Alba Ledesma Prieto, trading as Ledesdev (“we”, “us”). This policy explains what data the App processes, why, and your rights. Contact: dev@ledesdev.com.
What we process
When you install and use the App, we process:
- monday identifiers — your monday account ID and user ID, and the board and item IDs the App is used on. These come from the signed session token monday issues to the App and, where you connect the App, from monday’s OAuth flow.
- Approval data you create — approval requests, the approvers you assign (users or teams), decisions (approved/rejected), optional comments, and an audit trail of these events.
- A monday API access token — issued to your account through OAuth, used server-side to verify team membership and register the board notifications the App relies on. It is stored encrypted at rest and used only to call the monday API on your account’s behalf.
- Subscription status — whether your account has an active trial or paid plan, read from monday. Billing is handled entirely by monday; we never receive or store payment details.
We do not collect passwords, and we do not use the data for advertising or sell it.
Why we process it (legal bases)
We process this data to provide the approval features you request (performance of a contract), and to keep the service secure and working (legitimate interests). We rely on monday’s own permission model for who may access what inside your account.
Where it is stored
- Application data is stored in a PostgreSQL database (Neon, US region).
- The App’s server runs on monday code (monday’s hosting, on Google Cloud).
- Data is encrypted in transit (HTTPS/TLS). Access is restricted to the App’s service.
Sub-processors
- monday.com — the platform the App runs within.
- Neon — managed PostgreSQL database.
- Google Cloud Platform — via monday code hosting.
Retention and deletion
- While the App is installed, approval records are kept as an immutable audit trail so a decided approval cannot be silently altered.
- When you uninstall the App, we delete all of your account’s data — the stored access token, notification subscriptions, and every approval request, decision, and audit record belonging to your account — automatically and within the period required by the monday marketplace.
- If you need data erased while the App is still installed (e.g. a data-subject request), email dev@ledesdev.com and we will delete it.
International transfers
Data is stored in the United States. Where data originates in the EU/EEA, transfers rely on appropriate safeguards (e.g. Standard Contractual Clauses via our sub-processors).
Your rights (GDPR/EEA)
You may request access, correction, deletion, portability, or restriction of your data, and object to processing. Exercise any of these by emailing dev@ledesdev.com; we respond within 30 days.
Children
The App is a business tool and is not directed to children under 16.
Changes
We may update this policy; material changes will be reflected by the “Last updated” date.
Contact
Alba Ledesma Prieto, trading as Ledesdev — dev@ledesdev.com