top of page

Information Security Transparency

Your privacy matters to us. This page explains—in plain language—what data we handle, how we keep it safe, what happens if something goes wrong, and how to reach us.

What we collect (briefly)

  • Contact details you provide (e.g., name, email, phone).

  • Information needed to run specific programs or services you join.

  • Technical data such as IP address and basic analytics when you use our website (only with the permissions required by law).

 

How we safeguard your information

  • Encryption in transit and at rest for sensitive data where technically feasible.

  • Strict access controls (least‑privilege), multi‑factor authentication for admins, and regular reviews.

  • Vendor due‑diligence and contracts that limit service providers to our instructions only.

  • Security monitoring, backups, and staff training to help prevent and detect issues.

 

If something goes wrong

We maintain an internal Data Breach & Incident Response Policy. If a personal‑data breach creates a risk to individuals, we will notify the appropriate authority and, where required, affected individuals. Where the GDPR/UK GDPR applies, we notify the supervisory authority within 72 hours when legally required and inform individuals without undue delay if there is likely high risk to their rights and freedoms. This page is a simple summary; detailed procedures are kept internal to protect security.

 

Where we store it and how long we keep it

  • We use reputable providers and appropriate safeguards for any international transfers.

  • General records are kept up to 5 years after our last interaction; program‑specific records are kept up to 90 days after that program ends, unless the law requires longer.

  • When the retention period ends, we delete or de‑identify the data.

 

Who we share data with

  • We do not sell your personal information.

  • We do not share your information with third parties for marketing.

  • We work with vetted service providers (e.g., secure hosting, communications) who act on our instructions and may not use your data for their purposes.

 

Your choices and rights

  • You can unsubscribe from emails or texts at any time (e.g., click Unsubscribe in emails or reply STOP to texts).

  • Depending on where you live, you may have rights to access, correct, delete, or receive a copy of your information.

  • See our full Privacy Policy for details and how to make a request.

 

How to contact us

 

Data Protection Lead (DPL): Attn: Data Protection Manager 755 West Lancaster Avenue #1121, Bryn Mawr, PA 19010 Telephone: +1 610-795-2578  Email: DataProtection@aid-coalition.org


EU Representative (GDPR Art. 27): Instant EU GDPR Representative Ltd (Attn. Adam Brogden), contact@gdprlocal.com, +353 1 554 9700, Office 2, 12A Lower Main Street, Lucan, Co. Dublin K78 X5P8, Ireland

 

UK Representative (UK GDPR Art. 27): GDPR Local Ltd (Attn. Adam Brogden), contact@gdprlocal.com, +44 1772 217800, 1st Floor Front Suite, 27–29 North Street, Brighton, BN1 1EB, England

This one‑pager is a simple overview. For the complete picture—including lawful bases, retention, and international transfers—please read our full Privacy Policy or our Data Breach Transparency Notice.  Our detailed, internal incident‑response procedures are not published for security reasons, but we follow them rigorously.

Last updated: November 15, 2025 • © AID Coalition

bottom of page