Privacy Policy
A privacy policy that matches how the product actually works.
Veridian Vista handles two very different kinds of personal data: the account and billing data of the people who pay us, and the public professional record of the developers, researchers, and investors we index. This policy covers both, and the second one starts here.
Last updated: September 4, 2026
Who We Are
- Veridian Vista is the controller of the personal data described here.
- The operating entity is being established, and its legal name, form, and registered address will be published here as soon as it exists. Until then, reach us at the address below — every right described in this policy applies now and is answered now.
- Our database and primary storage are in the European Union.
- Any privacy question, request, or complaint: info@vervista.com.
What We Collect About Account Holders, and Why
- Account information from our authentication provider — your name, email address, and sign-in identifiers — to run your account and keep you signed in. Basis: performance of our contract with you.
- Billing metadata from Stripe — customer and subscription identifiers — to take payment and keep the records tax law requires. We never store card numbers or CVCs. Basis: contract, and legal obligation.
- Product usage — watchlists, preferences, submitted targets, and interaction logs — to provide the product and improve it. Submitted targets stay scoped to you and only reach shared surfaces if our normal pipeline finds them independently. Basis: contract, and legitimate interest.
- Technical data — IP address, browser, device, and security logs — to keep the service secure and prevent abuse. Basis: legitimate interest.
- The service is not directed to children and you must be 18 to hold an account. If a child has given us data, tell us and we will delete it.
People We Index
- Most people in our index are not our users and have no account with us. If you have reached this page because you found yourself in the product, this section is the notice we owe you.
- For developers we hold your public GitHub profile — username, display name, bio, company, location, any email you chose to publish, your listed links, and public activity counts. For researchers, your name, affiliations, public ORCID, and publication record. For investors, your name, firm, role, public professional links, and publicly stated focus.
- It comes from public interfaces and published datasets: the GitHub API, OpenAlex, arXiv and PubMed, the Internet Archive, and public web pages. We access nothing that is not already public and do not look for private contact details.
- We index it, group it, and compute automated scores, tags, and short written summaries from it. These are estimates generated from public activity. They are not verified, they can be wrong or out of date, and they are not a judgement about you as a person.
- Basis: legitimate interest under Art 6(1)(f) GDPR — investors and operators have a real interest in finding early technical work, and we limit ourselves to what you already published professionally. We process no special category data, do not track you across the web, and never use this to advertise to you.
- You can object at any time under Art 21 GDPR. We will not ask for a reason: we will remove you. Write to us with the profile link or username.
- We keep profiles while they stay relevant, and sweep low-signal material weekly. A removal is permanent — we keep only the minimum identifier needed to stop our crawlers collecting you again.
How Long We Keep It
- Account data: while your account exists. Deleting your account removes your profile, watchlists, and preferences.
- We keep a small record of your email address, display name, and billing identifiers after deletion, so a late payment webhook cannot silently rebuild the account you just deleted.
- Billing, invoicing, and tax records: for as long as the tax and accounting law that applies to us requires, which is commonly several years and can be up to ten. We cannot delete these on request while that obligation runs.
- Security and abuse logs: as long as we need them to investigate, then deleted.
- Indexed material: reviewed weekly and deleted once it falls below our relevance threshold. Profiles stay while relevant, or until you ask to be removed.
Your Rights
- You can ask for a copy of what we hold about you, for it in a portable form, and for anything inaccurate to be corrected or deleted.
- You can ask us to restrict how we use your data, and you can object to anything we base on legitimate interest — including everything under “People We Index”.
- You can withdraw consent to analytics cookies at any time. That does not affect what was done while it was given.
- We answer within one month. If a request is genuinely complex we may take up to two further months and will tell you why before the first month is out.
- These requests are free and we will not treat you differently for making one. Write to info@vervista.com — if it concerns a profile in our index, include the link or username so we can find it.
Changes
- If we change this policy in a way that matters, we will update this page and the date at the top, and tell account holders before it takes effect.
- A change never removes your right to object to processing we base on legitimate interest.
Contact
For privacy questions, access requests, deletion requests, or to be removed from our index, contact info@vervista.com.