1. About this notice and who is responsible
This Privacy Notice explains how Midas Compute ("Midas," "we," "us" or "our") handles personal information through midascompute.com, the protected platform demo, the private data room, secure-share pages, sourcing and administrative workspaces, and related pages that link to this notice (together, the "Site"). It also applies to information you provide when you contact us through the Site or continue a business enquiry by email.
Midas Compute is the controller of personal information where it determines why and how that information is processed. A separate contract, data-room access letter or transaction document may contain additional privacy terms and will govern the relevant relationship if it expressly says so. Third-party websites and services are governed by their own notices.
The Site is intended for business users, including current and prospective customers, hosting counterparties, investors, lenders, suppliers, landowners, energy counterparties, professional advisers and other infrastructure partners. We do not use it for consumer purchases, public consumer-account creation, behavioural advertising or cross-site advertising tracking.
2. Information we collect
Depending on how you use the Site, we may process the following categories of information:
- Contact and professional information. Your name, work email address, telephone number, organisation, role and other business contact details.
- Enquiries and correspondence. The content of contact-form submissions, messages, meeting requests, attachments and subsequent communications.
- Business-relationship information. Information provided during diligence, procurement, partnership, financing, capacity or commercial discussions, including the organisations and representatives involved.
- Restricted-area and workspace records. Account or access identifiers, permissions, secure-link details, login and access times, document views or downloads, administrative actions and related audit events.
- Protected demo session data. The shared demo processes the password locally in your browser. It does not send the password to Midas. After successful access, a first-party encryption key is held in session storage so the demo remains open for the current browser-tab session.
- Technical and operational information. IP address, requested URL, timestamps, browser and device characteristics, referring page, response status, and delivery, diagnostic, error or security logs.
- Essential browser-storage information. Tokens, encryption keys and preference records used to maintain an authorised session, provide protected content and remember a choice you requested.
- Spam- and abuse-prevention signals. Limited form and request attributes used to identify automated submissions, misuse or attempts to circumvent access controls.
Please do not submit government identifiers, financial-account credentials, health information or other sensitive personal information through our public forms. If information is not reasonably necessary for a business enquiry, do not include it.
3. How we obtain information
We obtain information directly from you when you complete a form, request access, exchange correspondence or provide materials; automatically from your browser or device when you use the Site; from your organisation, an authorised workspace administrator or another representative involved in the same business relationship; and from service providers that support Site delivery, authentication, security and communications.
4. How and why we use information
We process information only where reasonably connected with operating Midas and the Site, including to:
- respond to general enquiries and arrange hosting, compute-capacity, energy, site, supplier, financing or partnership discussions;
- assess commercial opportunities, counterparties and proposed business relationships;
- provide requested materials and administer access to the protected demo, data room, secure-share pages and private workspaces;
- maintain permissions, authenticate sessions, record document interactions and create appropriate access or audit records;
- operate, secure, monitor, troubleshoot and improve the reliability of the Site and its supporting workflows;
- detect, prevent and investigate spam, fraud, misuse, security incidents and unauthorised activity;
- maintain business, compliance and transaction records, establish or defend legal claims, and enforce applicable terms or agreements; and
- comply with legal, regulatory, tax, accounting and reporting obligations.
5. Legal bases for EEA and UK visitors
Where European Economic Area or United Kingdom data-protection law applies, we rely on one or more of the following bases: our legitimate interests in operating and protecting a business-to-business service, communicating with business contacts and evaluating opportunities; taking steps at your request before entering into a contract or performing a contract; compliance with a legal obligation; and consent where we specifically request it.
When we rely on legitimate interests, we consider the nature of the information, the context in which it was provided and the effect of the processing on the individual. Where processing is based on consent, you may withdraw that consent prospectively at any time without affecting processing carried out before withdrawal.
6. Cookies and browser storage
The Site currently uses limited first-party browser storage for security, access and preferences requested by the user. We do not use advertising cookies, third-party analytics, pixels, behavioural profiling or cross-site tracking on the Site. The protected demo processes its shared password locally in the browser and does not submit that password to Midas. Further details, including the storage used by each protected workspace, are set out in our Cookie Notice.
7. How we disclose information
We may disclose information only where relevant to the purposes described above, including to:
- Authorised personnel and advisers. Midas personnel, contractors and professional advisers who need the information to operate the Site, respond to an enquiry or evaluate a relationship.
- Infrastructure and service providers. Providers supporting cloud hosting, content delivery, storage, authentication, security, logging, email delivery and communications, including Amazon Web Services.
- Transaction participants. Prospective or actual investors, lenders, acquirers, financing sources, counterparties and their advisers in connection with diligence, a financing, reorganisation, acquisition, asset transfer or similar transaction.
- Authorities and protective recipients. Courts, regulators, law-enforcement bodies or other recipients where disclosure is required by law or reasonably necessary to protect rights, safety, property, security or the integrity of the Site.
Service providers are permitted to process information for the services they provide to us and are expected to apply appropriate confidentiality and security measures. We do not sell personal information collected through the Site, share it for cross-context behavioural advertising or use it for targeted advertising.
8. International processing
Midas operates from the United States. Information may be processed in the United States and in other countries where our providers, advisers or authorised business recipients operate. Those countries may have data-protection rules different from those in your location. Where applicable law requires a transfer mechanism or other safeguard, we will take the steps required for the relevant transfer, which may include contractual safeguards.
9. Retention
We retain information for no longer than reasonably necessary for the purpose for which it was collected. The period depends on the nature of the record, the duration of an enquiry or business relationship, the sensitivity of the information, security and audit requirements, applicable limitation periods, and legal, tax, accounting or contractual obligations.
Session-storage records ordinarily remain for the active browser-tab session. Local-storage records may remain until you sign out, clear browser storage, the record expires or the Site rejects it. Server-side enquiry, access and audit records may be retained for a longer period where needed to administer a relationship, maintain security, demonstrate authorised access or resolve a dispute. When information is no longer required, we delete it, anonymise it or isolate it from routine use where immediate deletion is not reasonably practicable.
10. Security
We use administrative, technical and organisational measures designed to protect information in light of its nature and the risks involved. Depending on the service, these measures may include HTTPS, encryption, restricted cloud resources, role-based access, access-link controls, logging, managed infrastructure, backups and procedures for reviewing security events. No transmission, storage or security control can eliminate every risk, and we cannot guarantee absolute security.
If you believe an access link, password or account has been compromised, or you identify a potential security issue affecting the Site, contact info@midascompute.com promptly and do not disclose the issue publicly before we have had a reasonable opportunity to investigate.
11. Your rights and choices
Depending on your location and subject to applicable conditions and exemptions, you may have rights to request confirmation of processing; access to or a portable copy of personal information; correction of inaccurate information; deletion; restriction of or objection to certain processing; withdrawal of consent; and review or appeal of a decision concerning a privacy request. You may also have the right not to receive discriminatory treatment for exercising an applicable privacy right.
EEA and UK visitors may lodge a complaint with the data-protection authority in the country where they live or work. Texas and California residents may have additional rights under applicable state privacy law. Because the Site does not sell personal information or use it for targeted or cross-context behavioural advertising, there is no sale or targeted-advertising activity to opt out of through the Site.
To submit a request, email info@midascompute.com and describe the request and the jurisdiction in which you reside. We may ask for information reasonably necessary to verify your identity, authority or relationship with the relevant record. An authorised agent may submit a request where applicable law permits, subject to verification. If a right to appeal applies, you may appeal by replying to our decision. We may retain a limited record of the request and our response for compliance and security purposes.
12. Automated decisions and children
We do not use personal information collected through the Site to make solely automated decisions that produce legal or similarly significant effects. The Site is intended for business audiences and is not directed to children under 13. We do not knowingly collect personal information from children through the Site. If you believe a child has provided information to us, contact us so that we can review and, where appropriate, delete it.
13. Third-party sites
The Site may link to websites or services operated by third parties. We do not control their privacy or security practices, and this notice does not apply to them. Review the privacy information provided by the relevant third party before submitting information.
14. Changes and contact
We may update this notice to reflect changes in the Site, our operations or applicable requirements. The effective date above identifies the latest revision. Material changes will be published on this page.
For privacy questions, requests or complaints, email info@midascompute.com. For hosting and compute-capacity enquiries, email hosting@midascompute.com.