phynite-lab

Phynite Lab · Public beta

Privacy Notice

Updated 2 October 2026

Information we store

Waitlist requests contain your email and language. Contact requests contain the details you submit. Accounts contain identity, profile, access grants and computer connection metadata. Research projects can store structures, configurations, input files, trajectories, logs, results and provenance in private storage scoped to your account.

Where processing happens

Cloudflare serves the website. AWS Cognito manages sign-in, DynamoDB stores metadata and private S3 stores artifacts; the control plane currently uses the Singapore region. Quantum ESPRESSO and LAMMPS run on your connected personal computer. The worker downloads job inputs and uploads recorded outputs. Browser storage holds local drafts and preferences. Administrators manage access and operational records; research data is not public by default.

Cookies and visitor analytics

HttpOnly session cookies keep authentication tokens out of browser scripts. Necessary cookies remember language and your privacy choice; your consent choice is kept for one year. Optional HttpOnly analytics cookies identify a random visitor for up to 90 days and a browsing session for 30 minutes. Declining analytics deletes these analytics identifiers while keeping sign-in and language cookies. Page and workspace-feature analytics use a restricted event schema: page category, feature, coarse location, referral/campaign and performance measurements. Research files, query strings, invitation tokens and account identity are excluded. Analytics may run without opt-in in regions where the configured consent policy permits it. The cookies and visitor analytics notice appears until you make a choice. Use Cookies & privacy to reject analytics or change your choice anytime. The edge reads IP addresses for abuse prevention and hashes them for rate-limit keys. Optional analytics integrations run only when configured.

Account activity status

Administrators can see whether a signed-in account is online, idle or offline, its last heartbeat and its last successful login. This operational status uses session and tab identifiers and timestamps; it does not record keys pressed, pointer positions, page URLs or research content and is separate from optional visitor analytics. Session and tab records expire after 30 days. The latest account timestamps remain with account records.

Retention and exports

Calculation outputs and temporary MD analysis inputs/outputs are scheduled for expiry after three days. Download results promptly. Saved research documents and project inputs follow project storage limits rather than that temporary-output rule. Project trash is retained for 15 days. Operational AWS logs are configured for 30 days. Waitlist, contact and account records have no automatic deletion deadline in the current implementation; request deletion through Contact. Browser drafts remain until you clear them or browser storage is removed. Export input files, results and figures from the relevant lab. Pilot storage does not promise backup or disaster recovery.

Your requests and sensitive data

Use Contact to request access, correction, export or deletion and identify the account email; never send a password, worker token or private input in the initial message. We may need to verify ownership before handling an account request. Do not upload restricted, confidential or regulated data unless your institution permits this processing. Support is handled by the Phynite pilot team through Contact.

Terms of Use ↗