Scope & responsibility
Coincident provides public-source research, scenario analysis, and synthetic-population simulation. This policy describes information handled through coincident.org, the client workspace, and our business communications.
For website inquiries and account administration, Coincident determines how information is used. When we process research material on an organization’s instructions, that organization may be responsible for the underlying purpose and legal basis. Its agreement with us and any applicable data-processing terms govern that work. This policy does not authorize a customer to collect or disclose information it has no right to use.
Information we handle
The information involved depends on how you interact with us.
- Inquiries and correspondence: your name, email address, organization, message, and information you choose to provide in subsequent communications.
- Workspace accounts: email address, account identifier, organization membership, invitations, permissions, and authentication information.
- Client work: organization context, scenario briefs, research questions, geographic scope, submitted material, generated reports, saved outputs, and workflow activity. These materials may include personal information supplied by a customer or contained in research sources.
- Public-source research: relevant public statements, source links, publication details, and material returned by research services. Public availability does not remove an individual’s privacy rights. A synthetic profile is a model, not evidence of what a named person thinks or has done.
- Technical information: network and device information, request timestamps, authentication events, and error or security records processed by our hosting and infrastructure providers. Browser storage also supports sign-in and workspace preferences.
How information is used
We use information to respond to inquiries, establish and administer client access, carry out requested research and simulations, save and deliver results, troubleshoot the service, prevent abuse, and meet applicable legal obligations.
Relevant material may be processed by external research and AI services when a requested workflow uses those services. The approved providers, permitted uses, and handling of customer material should be specified in the customer engagement. A simulation result can contain inaccurate or unsupported inferences and requires review before use.
Business contact information from correspondence, introductions, or public professional sources may also be used to discuss a potential engagement. You can ask us to stop promotional outreach by replying to the message or contacting us.
When information is disclosed
Information is shared where needed to operate the service or carry out your organization’s instructions.
- Infrastructure providers: hosting and delivery, authentication, database and file storage, email, abuse prevention, and workflow execution. The current application integrates Vercel, Supabase, Resend, Cloudflare Turnstile, and a separately deployed Modal research worker. A provider receives information relevant to its role; not every provider receives every category of information.
- Your organization: authorized members and administrators may access shared work and manage membership according to their permissions. An organizational workspace is not a private personal account.
- Research and model providers: inputs needed for the relevant workflow, subject to the configuration and terms applicable to the engagement.
- Legal and business circumstances: disclosures required by law, necessary to investigate abuse or protect rights and safety, or made in connection with a proposed or completed corporate transaction, subject to applicable protections.
Storage & retention
Information may be processed in the United States and other countries where relevant providers operate. Location-specific safeguards and customer requirements must be addressed in the applicable engagement before restricted information is transferred.
Retention depends on the purpose of the record, the customer engagement, security needs, and legal obligations. Account and research records are not automatically erased when you sign out. A deletion request may require coordination with the organization responsible for the workspace; records subject to a legal hold or another lawful retention requirement may need to be retained. Contact us to discuss deletion, including the handling of backups and provider-held records.
Your choices & requests
Depending on the laws that apply to you and our processing, you may have rights to access, correct, delete, or receive a copy of personal information; object to or restrict processing; withdraw consent where processing relies on it; or opt out of certain disclosures. Some laws also provide a right to appeal a decision or complain to a supervisory authority. These rights have conditions and exceptions.
Send a request to contact@coincident.org, with enough context to locate the relevant information. Please do not send identity documents or sensitive data in the initial email. We may need proportionate verification of your identity or an authorized agent’s authority. We will respond within the period required by applicable law and will not penalize you for exercising a protected right.
For information controlled by a client organization, contact that organization first. If you contact us, we can help identify the appropriate route for your request. You may also raise a concern about personal information appearing in research results.
Security & browser storage
The client workspace uses authenticated access, organization permissions, database access rules, and private storage controls. These measures reduce risk; no service can guarantee absolute security. Keep access to your email account secure and report suspected unauthorized access promptly.
The Cookies & Browser Storage notice explains authentication cookies, local preferences, and contact-form abuse prevention. You can remove site data through your browser, although doing so may interrupt sign-in or clear saved preferences.
Children & external services
The website and workspace are intended for professional use, not for children. Do not create an account or submit a child’s information unless the engagement expressly allows it and the required permissions and safeguards are in place. Contact us if you believe a child has submitted personal information without appropriate authorization.
Links to other websites are provided for context. Those services operate under their own privacy notices.
Updates & contact
Questions and privacy requests can be sent to contact@coincident.org. We will identify revisions by an updated date and provide additional notice or obtain consent where required. A policy change does not, by itself, authorize a materially different use of previously collected information.
Inquiries
contact@coincident.org