Privacy Statement

Privacy and Personal Data Protection

Privacy Statement

Social Sciences Journal (SSJ)  |  e-ISSN 3047-7646

Social Sciences Journal (SSJ), published by Universitas Dehasen Bengkulu, respects the privacy of authors, reviewers, editors, readers, and other users of the journal's Open Journal Systems (OJS) website. Personal data are collected and used only for legitimate scholarly-publishing, editorial, administrative, security, integrity, legal, and communication purposes described in this statement.

Names, email addresses, affiliations, identifiers, and other information entered on this journal site will not be sold, rented, or disclosed for unrelated commercial marketing. Data may be shared only when necessary to operate the journal, publish and disseminate scholarly content, protect research integrity, comply with law, or fulfil another purpose described below.

Public scholarly record versus confidential editorial records Author names, affiliations, ORCID identifiers, correspondence details selected for publication, article metadata, citations, licences, funding statements, competing-interest declarations, and DOI records may become publicly available as part of the scholarly record. Reviewer identities, confidential reviewer reports, internal editorial discussions, unpublished manuscript files, passwords, and security information are not published unless disclosure is authorized, required by law, or necessary under an established research-integrity procedure.
Purpose Limited Data are used for journal submission, peer review, publication, preservation, indexing, communication, security, and research-integrity purposes.
Confidential Review Reviewer identity and confidential editorial records are restricted to authorized persons and are not made public through the article record.
No Sale of Data The journal does not sell or rent personal information and does not use editorial data for unrelated third-party advertising.

1. Scope and Responsibility

This statement applies to personal data processed through the SSJ website, OJS submission and review workflow, email correspondence, editorial records, publication metadata, journal administration, and related official services. Universitas Dehasen Bengkulu, acting through the authorized journal and publishing units, is responsible for determining the principal purposes of this processing.

This statement does not automatically govern independent websites, indexing platforms, researcher identifiers, payment providers, repositories, or external services linked from the journal website. Those services may process information under their own privacy notices.

2. Personal Data We May Collect

Data Category Examples
Account and identity data Name, username, password credential, email address, telephone number where provided, preferred language, salutation, country, and user roles.
Professional profile data Institutional affiliation, department, postal address, biography, research interests, ORCID iD, academic identifiers, website, and reviewer expertise.
Submission and publication data Manuscript files, author order, title, abstract, keywords, references, contributor roles, funding, acknowledgements, competing interests, ethics statements, datasets, supplementary files, and article licences.
Peer-review and editorial data Reviewer invitations, acceptance or decline records, reports, ratings, recommendations, editorial decisions, revisions, internal discussions, conflict-of-interest disclosures, and production records.
Communication data Emails, OJS discussions, enquiries, complaints, appeals, consent records, author queries, and other correspondence with the journal.
Technical and security data IP address, browser and device information, date and time of access, authentication events, session and cookie identifiers, server logs, and records used to detect misuse or protect the system.
Administrative and payment data Invoice name, institution, tax or billing information where required, payment reference, amount, service selection, and proof of payment. The journal does not request online-banking passwords, card PINs, or unrelated financial credentials.

3. Purposes of Processing

Personal data may be processed to:

  • register and manage user accounts and journal roles;
  • receive submissions and administer editorial screening, peer review, revision, copyediting, production, and publication;
  • communicate decisions, deadlines, policy information, publication notices, and service messages;
  • verify authorship, contributor roles, affiliations, reviewer expertise, ethical approval, competing interests, and research-integrity information;
  • register DOIs, disseminate article metadata, support citation and discovery, and preserve the scholarly record;
  • screen for similarity, duplicate publication, manipulated content, compromised peer review, or other integrity concerns;
  • process invoices, payment confirmations, waivers, refunds, and required financial records where applicable;
  • respond to questions, complaints, appeals, corrections, retractions, privacy requests, and legal enquiries;
  • maintain website operation, security, backups, audit trails, fraud prevention, and service quality; and
  • comply with legal, regulatory, accreditation, contractual, and institutional obligations.

4. Grounds for Processing

Depending on the activity and applicable law, processing may be based on consent, a request to provide editorial or publishing services, performance of journal functions, compliance with a legal obligation, protection of legitimate scholarly-publishing and research-integrity interests, or another lawful basis.

Where consent is the basis, it may be withdrawn for future processing. Withdrawal does not invalidate processing already lawfully undertaken and may not require deletion of data that must be retained for the scholarly record, legal compliance, dispute resolution, or research integrity.

5. Confidentiality in Peer Review and Editorial Work

SSJ applies a double-anonymous peer-review process. Author identities are concealed from reviewers where practicable, and reviewer identities are concealed from authors. Editors and authorized staff may access identity information when required to administer the process, manage conflicts, investigate misconduct, or fulfil legal obligations.

  • Reviewers may access only the manuscript and information reasonably required for review.
  • Manuscripts and review records must not be uploaded to public generative-AI systems or unapproved third-party services.
  • Confidential reviewer comments are shared only with authorized editors unless disclosure is required under an established procedure.
  • Editorial records are not used to disadvantage a person for submitting a complaint, appeal, or good-faith integrity concern.

6. Sharing and Disclosure

The journal limits disclosure to what is reasonably necessary for a stated purpose. Recipients may include:

Recipient Purpose and Limitation
Editors, reviewers, and authorized staff Editorial screening, peer review, decision-making, production, publication, policy administration, and research-integrity work under confidentiality obligations.
Publisher and institutional units Governance, technical support, finance, legal review, audit, accreditation, complaints, and institutional accountability.
Technology and service providers OJS hosting, server operation, email delivery, backup, security, similarity screening, production, payment administration, and other contracted services limited to their authorized function.
DOI, indexing, and preservation services Registration and dissemination of article metadata through services such as Crossref, indexing databases, libraries, repositories, search engines, and digital-preservation networks.
Institutions and competent authorities Investigation of credible research-integrity concerns, protection of rights or safety, compliance with law, or response to a valid official request.

Service providers should receive only the information necessary for their function and are expected to apply appropriate confidentiality, security, and data-protection safeguards.

7. Published Information and Scholarly Metadata

Publication requires certain information to remain openly available as part of the scholarly record. This may include author names, affiliations, ORCID iDs, correspondence details selected for publication, contributor roles, article title, abstract, keywords, references, funding, acknowledgements, conflict-of-interest statements, ethics declarations, licence, citation data, DOI, correction notices, expressions of concern, and retraction notices.

Requests to change published names, affiliations, or metadata will be assessed under the journal's correction policy, privacy and safety considerations, indexing requirements, and the need to preserve an accurate scholarly record.

8. International Data Transfers

Scholarly publishing is international. Article metadata and limited personal data may be processed or made available outside Indonesia through DOI agencies, indexing services, repositories, preservation networks, hosting providers, email services, and international reviewers or editors. The journal will apply reasonable safeguards and limit transfers to data necessary for the relevant publishing purpose, subject to applicable law.

9. Data Retention

Published RecordPublished articles, metadata, licences, corrections, retractions, and related preservation records may be retained indefinitely to maintain the integrity and availability of the scholarly record.
Editorial RecordsSubmission, review, decision, correspondence, integrity, appeal, and complaint records are retained for as long as reasonably necessary for journal administration, accountability, dispute resolution, research integrity, and legal obligations.
Accounts and Technical LogsAccount information and technical records are retained while needed to provide access, secure the platform, document consent, prevent abuse, and satisfy operational or legal requirements.
Secure DeletionWhen data are no longer required and no preservation, integrity, contractual, or legal need applies, the journal will take reasonable steps to delete, anonymize, or securely dispose of them. Backup copies may remain until routine backup cycles are completed.

10. Cookies, Logs, and Website Analytics

OJS may use session cookies and similar technologies necessary for login, security, language preferences, navigation, and workflow operation. Server logs may record IP address, browser information, access time, requested pages, and security events. Essential cookies are required for core website functions.

If optional analytics or non-essential cookies are introduced, the journal should provide appropriate notice and consent controls where required. Users can control cookies through browser settings, but disabling essential cookies may prevent login or other OJS functions.

11. Rights of Data Subjects

Subject to verification, applicable law, and legitimate limitations connected with scholarly publishing, a person may request to:

  • obtain information about whether and how their personal data are processed;
  • access personal data held about them;
  • correct inaccurate or incomplete account and profile information;
  • withdraw consent where processing is based on consent;
  • request deletion, restriction, suspension, or objection where legally applicable;
  • request a copy or transfer of eligible data where applicable; and
  • submit a complaint concerning the handling of personal data.
A request may be limited when necessary to protect another person's rights, reviewer confidentiality, legal privilege, system security, research-integrity investigations, contractual or legal obligations, or the accuracy and permanence of the published scholarly record.

12. Data Security and Breach Response

The journal and publisher apply reasonable administrative, technical, and organizational measures appropriate to the nature of the data and foreseeable risks. Measures may include role-based access, account authentication, software updates, restricted administrative access, backups, secure communication, staff awareness, service-provider controls, and incident documentation.

No internet service can guarantee absolute security. Suspected unauthorized access, loss, alteration, or disclosure should be reported promptly. The publisher will assess the incident, contain and document it, take corrective action, and notify affected persons or competent authorities when required by applicable law.

13. Sensitive Data and Research-Participant Information

Authors must not submit unnecessary personally identifiable, sensitive, financial, health, biometric, genetic, child, criminal-record, or other specially protected data about research participants. Where such information is scientifically necessary, authors must have an appropriate ethical and lawful basis, apply data minimization, obtain consent or authorization where required, anonymize or de-identify data where practicable, and comply with the journal's research-ethics and data-sharing policies.

The journal website is intended for scholarly-publishing participants and is not designed as a general service for children. A parent, guardian, researcher, or institution who believes that children's data have been submitted improperly should contact the journal promptly.

14. Artificial Intelligence and Automated Decisions

The journal may use approved technical tools to support similarity screening, security, metadata processing, or administrative efficiency. Such tools do not replace accountable human editorial judgment. Manuscripts, peer-review reports, or confidential correspondence must not be uploaded to public generative-AI systems by editors or reviewers. SSJ does not make acceptance, rejection, retraction, or misconduct decisions solely through automated processing.

15. Email Communication and Marketing

The journal may send transactional messages required for registration, submission, review, production, publication, policy, security, and account administration. Optional announcements or calls for papers should be sent only when consistent with user preferences and applicable requirements. Email addresses will not be supplied to unrelated third parties for commercial marketing.

16. External Links and Services

The website may link to ORCID, Crossref, indexing databases, repositories, social media, payment services, or other third-party websites. SSJ is not responsible for the independent privacy practices of those services. Users should review the privacy notice of an external service before providing personal information.

17. Policy Updates

This statement may be revised to reflect changes in law, OJS functions, journal workflow, service providers, security practices, or publishing standards. Material changes will be dated and published on the journal website. Where appropriate, registered users may also be notified through OJS or their correspondence email.

18. Privacy Requests and Complaints

A privacy request should identify the requester, explain the data or processing concerned, and provide sufficient information for identity verification and response. Do not send passwords, card PINs, online-banking credentials, or unnecessary sensitive information. Requests and complaints should be submitted through the journal's official contact channel.

Submit a Privacy Request Social Sciences Journal — Universitas Dehasen Bengkulu Journal Contact Page
Reference Frameworks and Transparency Statement This statement is informed by Law of the Republic of Indonesia No. 27 of 2022 on Personal Data Protection; Principles of Transparency and Best Practice in Scholarly Publishing; Scopus Content Policy and Selection; and the privacy and workflow context of Open Journal Systems.
Publication of this page supports transparent and responsible journal governance but does not by itself guarantee national accreditation or inclusion in Scopus. Policy version: August 2026.