COSMOS-CQAPublic Research Portal

User Data Notice

Local-first research workflow data.

The public portal is a static site. The browser workbench is designed for local-first research artifacts, imports, exports, downloads, and replay evidence. This notice is an engineering disclosure, not a substitute for counsel-reviewed privacy terms.

Current public data behavior

No account system

The hosted static portal does not provide public accounts, login, subscriptions, server-side workspaces, or server-side COSMOS-CQA research profiles.

Local imports and exports

Files selected in the browser are used for local workflow inspection. Exported reports, sessions, CSVs, bookmarks, SBOMs, and evidence bundles are downloaded to the user's environment.

Browser state

The workbench may use browser-local state for demo/session behavior, labels, bookmarks, or replay settings. Clear site data in your browser if you want to remove local state.

External services

GitHub Pages, GitHub issue reports, email, CDN assets, public science references, and other linked domains are handled by those services under their own terms and logs.

Selective-access boundary

A separate application is planned for verified researchers and institutions. That future surface is outside this public local-first demo and is not described by this user data notice.

What not to share publicly

Do not submit restricted datasets, personal information, personal health information, regulated data, confidential screenshots, private source code, credentials, private keys, unpublished diligence materials, or third-party materials that you are not allowed to share.

Use synthetic examples, public references, redacted screenshots, and short non-confidential descriptions when reporting bugs, safety concerns, accessibility barriers, or data/provenance questions.

GitHub issues and public reports

Repository issues and pull requests are public by default. Safety, accessibility, bug, schema, and data/provenance reports should avoid sensitive details and use the issue templates to provide reproducible, non-confidential context.

Contact email

If you email the developer contact route, your email client and mail providers process the message. Use non-confidential summaries only. Do not send personal health information, regulated data, restricted third-party data, private keys, credentials, private source code, or confidential diligence materials through public email.

Operational logs and third-party routes

COSMOS-CQA is served as a static public site. Hosting, browser, CDN, email, and GitHub providers may process ordinary request metadata such as IP address, user agent, timestamp, referrer, and requested URL according to their own terms. COSMOS-CQA does not use this static portal to provide a public account database or hosted research workspace.