NX MIND
Privacy Policy
Privacy Policy for nxmind.com and the NX Mind service
Privacy at a glance
- NX Mind is a business-to-business decision-intelligence service for government-contracting opportunity evaluation and portfolio triage.
- The NX Mind fit score and recommendation are not generated by a general-purpose AI model. They are calculated by NX Mind's backend logic using confirmed company-profile data, opportunity data and documents, and market and competitive parameters such as historical award values, award history, incumbent signals, and competitive concentration.
- AI may be used to extract and summarize requirements from the opportunity data and documents available to the service. The AI Summary is intended to remain source-constrained and is not a substitute for reviewing the solicitation, amendments, attachments, or applicable rules.
- NX Mind does not sell personal information for money or share personal information for cross-context behavioral advertising. If our practices change, we will update this Policy and implement applicable choice mechanisms before the change takes effect.
- NX Mind is not intended for children, consumer credit, employment, housing, insurance, healthcare, or other decisions that create legal or similarly significant effects for individuals.
Who we are and scope
NX Mind is a product and service of ALBA STRATEGIC PARTNERS LLC, a Florida limited liability company ("ALBA," "NX Mind," "we," "us," or "our"). ALBA's mailing address is 110 SE 6th St, Suite 1751, Fort Lauderdale, Florida 33301, United States.
This Privacy Policy explains how we collect, use, disclose, retain, and protect personal information when you visit nxmind.com; create or use an NX Mind account; participate in a demonstration, onboarding, sales, customer-support, or research interaction; receive our communications; or otherwise interact with the NX Mind service, applications, dashboards, APIs, and related offerings (collectively, the "Service").
This Policy applies to personal information. It does not apply to information that cannot reasonably be linked to an identified or identifiable individual, including properly deidentified or aggregated information. It also does not replace a customer agreement, order form, data processing addendum ("DPA"), or other written agreement. If a written agreement conflicts with this Policy regarding Customer Content, the agreement controls to the extent stated in it and permitted by law.
The Service is designed principally for organizations and professional users. When you use the Service for or through an organization, that organization may separately control your account, content, and use of the Service.
Our privacy roles
Depending on the context, ALBA may act in different legal roles:
| Context | ALBA's role | What that means |
|---|---|---|
| Website, sales, demos, account administration, security, billing, and ALBA's own analytics | Controller / business | ALBA determines why and how the information is processed, subject to applicable law. |
| Customer Content processed on behalf of an organizational customer | Processor / service provider / contractor | ALBA processes the information under the customer's documented instructions and applicable contract. |
| Public procurement and award information used to operate NX Mind | Controller for product operation | ALBA selects and processes public-source information to provide contractor-specific decision intelligence. |
If your request relates to Customer Content controlled by your employer or another customer organization, we may direct the request to that organization and assist it as required by contract or law.
Key definitions
Personal information means information that identifies, relates to, describes, is reasonably capable of being associated with, or could reasonably be linked to an individual or household, as defined by applicable law. It may also be called personal data.
Customer means the organization that purchases, evaluates, administers, or otherwise authorizes access to the Service. Customer Content means data, documents, text, instructions, selections, decisions, and other material submitted to or generated within the Service for a Customer, excluding ALBA's pre-existing technology and properly deidentified or aggregated information.
Public Procurement Data means information obtained from public government-contracting sources, public APIs, award datasets, notices, amendments, and publicly available solicitation attachments, including sources such as SAM.gov and USAspending.gov.
Sensitive personal information has the meaning assigned by applicable law and may include account credentials, precise location, government identifiers, financial-account information, health data, biometric data, racial or ethnic origin, and certain communications content. Business identifiers such as a CAGE code or UEI are not necessarily personal information, but they may become personal information when linked to an individual or sole proprietor.
Personal information we collect
We collect only the categories reasonably needed for the purposes described below. The exact categories depend on your relationship with us, your configuration, and the features you use.
4.1 Account, identity, and contact information
- Name, business email address, business telephone number, job title, employer, department, and professional contact details.
- Account identifiers, authentication tokens, sign-in events, access permissions, company or tenant identifier, and related security information. Passwords should be handled in protected form by the authentication system; we do not need or want you to send passwords to us by email or support channels.
- Information supplied by an account administrator, authorized colleague, partner, or customer representative to provision or manage access.
4.2 Company profile, capability, and eligibility information
- Company identity, legal and trade names, website, business address, and organization details.
- Products, equipment, services, and the actions the company can perform, such as manufacture, supply, delivery, installation, maintenance, repair, inspection, replacement, training, logistics, or consulting.
- Geographic coverage and place-of-performance capabilities, including national, state, regional, or remote coverage.
- PSC and NAICS codes; certifications; set-aside status; contract-vehicle or platform access; and other eligibility or access constraints.
- Past awards, agency relationships, performance history, supplier or partner information, and partner capabilities, eligibility, geography, codes, certifications, and award history.
- Confirmations, rejections, corrections, and manual additions made during onboarding. Website-extracted capabilities are treated as proposed inputs until a user confirms or rejects them.
4.3 Opportunity data, documents, and extracted requirements
- Solicitations, notices, amendments, attachments, PDFs, spreadsheets, statements of work, specifications, schedules, and other procurement materials that are publicly sourced or uploaded, linked, or selected by a user.
- Structured requirements extracted from those materials, including product, action, geography, PSC, NAICS, agency, set-aside, deadline, deliverables, technical requirements, compliance conditions, submission requirements, evaluation basis, attachment availability, conflicts, and platform or vehicle requirements.
- Source-linking data such as document name, section, page, quotation, identifier, version, timestamp, and source-coverage status. Identifiers may include CLIN, SLIN, NSN, NIIN, CAGE, drawing number, and revision where present.
- Text entered into prompts, search boxes, notes, feedback fields, or support communications, along with files and links provided with that text.
4.4 Decision, workflow, and outcome information
- Recommendations, fit scores, component signals, evidence, risk warnings, partner signals, score versions, and the source data used to produce them.
- Actions and decision states such as viewed, watched, skipped, submitted, not submitted, awaiting award, awarded, lost, cancelled, expired, or outcome unknown.
- Reasons for a decision or override, including capacity, deadline, fit, pricing, incumbent risk, access, geography, eligibility, partner availability, supplier quote availability, leadership decision, or another reason entered by the user.
- Event-log data such as user ID, company ID, notice ID, event type, timestamp, source, metadata, historical recommendation, fit score, and score version.
- Outcome and entity-matching information, including UEI, CAGE, recipient identifier, verified legal-entity mapping, and manual confirmation. We do not treat fuzzy company-name matching alone as definitive proof of an award outcome.
4.5 Public, professional, and third-party information
- Public Procurement Data, including opportunity, amendment, award, agency, incumbent, market-concentration, and historical award-value signals.
- Publicly available professional or business contact information contained in government records, company websites, solicitation materials, partner materials, or professional sources.
- Information from a Customer, its administrator, an authorized integration, a referral source, a partner, a service provider, or another person who represents that they are authorized to provide it.
4.6 Device, usage, and technical information
- IP address, browser and device type, operating system, language, approximate location derived from IP, referring and exit pages, timestamps, session identifiers, and cookie or similar identifiers.
- Pages, features, records, and links viewed; searches; navigation; response time; errors; stale or retry states; feature interaction; and other product-usage events.
- Security and diagnostic data, including authentication events, access logs, audit records, crash information, error traces, suspected abuse, and fraud or threat indicators.
4.7 Communications, demos, support, and research
- Messages, email correspondence, meeting details, support tickets, feedback, survey responses, interview notes, and customer-success records.
- Recordings or transcripts of demonstrations, support sessions, or calls if recording is enabled and notice or consent is provided as required by law.
- Marketing preferences, event attendance, referral source, outreach history, and unsubscribe or suppression records.
4.8 Billing and transaction information
For paid subscriptions, we collect billing contact details, billing address, subscription plan, order details, invoices, payment status, transaction identifiers, and limited payment metadata. Payment-card or bank-account information is collected directly by our payment processor and handled under that processor's privacy notice. We do not store full payment-card or bank-account numbers.
4.9 Sensitive and restricted information
The Service is not designed to require highly sensitive personal information. Account authentication may involve sensitive account-access data. Uploaded documents may incidentally contain government identifiers, signatures, personal contact details, or other sensitive information. We process such information only for the Service, security, legal compliance, or another disclosed purpose and do not use it to infer personal characteristics unless expressly disclosed and legally permitted.
DO NOT UPLOAD Classified information; Controlled Unclassified Information (CUI); export-controlled or ITAR-restricted data; security credentials; Social Security numbers; payment-card data; health records; biometric templates; information about children; or confidential proposal, pricing, source-selection, or third-party data that you are not authorized to provide, unless ALBA has expressly authorized that data type in a written agreement and implemented the required controls.
Sources of information
We may obtain personal information:
- Directly from you when you create an account, complete onboarding, confirm capabilities, upload or select documents, make a decision, contact us, or participate in a demo or research session.
- From your Customer organization, account administrator, colleagues, partners, or authorized integrations.
- Automatically through the Service, cookies, logs, security systems, and similar technologies.
- From public government-contracting sources and APIs, government records, public solicitation attachments, company websites, and other publicly available professional sources.
- From vendors and service providers that support identity, hosting, analytics, communications, security, payment, document processing, or AI functionality.
- From business partners, event organizers, referrals, and professional networks, subject to applicable law.
How we use information
We may use personal information for the following business and commercial purposes:
- Provide, operate, authenticate, maintain, configure, and support the Service.
- Create and validate a Customer's contractor-intelligence profile and confirmed capability model.
- Ingest opportunities, organize attachments, track amendments, identify unavailable sources, and extract source-linked requirements.
- Calculate contractor fit, eligibility and access gates, domain alignment, award and incumbent signals, partner logic, market concentration, execution warnings, and explainable recommendations.
- Generate source-constrained AI summaries and identify missing, conflicting, or incomplete opportunity information.
- Maintain watch, skip, submission, award, and outcome workflows; preserve decision history; and support auditability, score versioning, and future calibration.
- Personalize queues and dashboards for the relevant Customer and user, and provide portfolio and administrative views authorized by that Customer.
- Process subscriptions and payments; manage contracts, renewals, invoices, and account administration.
- Provide support, respond to inquiries, troubleshoot errors, communicate service notices, and improve accessibility and usability.
- Measure feature use, service performance, reliability, and adoption; conduct research; develop and improve the Service; and create aggregated or deidentified insights.
- Detect, investigate, and prevent fraud, abuse, unauthorized access, cross-tenant leakage, security incidents, and violations of agreements.
- Comply with law, respond to valid legal process, protect rights and safety, enforce agreements, establish or defend legal claims, and support corporate transactions.
- Send marketing communications where permitted, manage preferences, and evaluate outreach effectiveness without using Customer Content for unrelated advertising.
NX Mind scoring, AI, and automated processing
7.1 Fit score and recommendation
NX Mind's fit score and recommendation are not an AI-generated prediction. They are produced by backend logic using Customer profile data entered or confirmed during onboarding, opportunity data and documents, and multiple market and competitive parameters. Depending on the feature version, those parameters may include Product + Action + Geography capability alignment, PSC and NAICS domain fit, certification and set-aside eligibility, platform or vehicle access, agency and PSC award history, historical award values, partner capability, incumbent position, competitive concentration, deadline, attachment volume, and source completeness.
Scores, weights, rules, and recommendation labels may change as the Service is tested and improved. We may retain the score version and the evidence associated with a decision so that the result remains explainable and auditable. Scores are decision-support signals, not guarantees of eligibility, compliance, proposal quality, award, profitability, or legal outcome.
7.2 AI Summary and document processing
AI may be used to parse supplied opportunity information and attachments, convert requirements into structured data, and generate a concise AI Summary. The summary is designed to use the available opportunity data and documents, preserve source references where available, identify conflicts and unavailable documents, and avoid unsupported assumptions. It is not designed to add internet research, budget estimates, win probability, proposal drafting, or a bid/no-bid decision to the source-document summary.
AI output may be incomplete, inaccurate, or affected by missing, inconsistent, amended, or inaccessible source material. Users must review the controlling solicitation, amendments, attachments, agency instructions, and applicable law before acting.
7.3 No legally significant consumer decision
The Service evaluates business opportunities and organizational capability. It is not intended to make or materially assist decisions about an individual's employment, credit, housing, insurance, healthcare, education, criminal justice, immigration, or access to essential goods or services. NX Mind recommendations do not create a commitment to bid and should be reviewed by authorized personnel.
7.4 Human review and user control
A system recommendation is not the same as a Customer decision. Users may watch, skip, reverse an action, record an override reason, confirm submission status, and correct outcome information. Customers should maintain appropriate human review, procurement expertise, and approval authority.
7.5 AI and document-processing providers
We may transmit relevant content and instructions to AI, document-processing, hosting, or infrastructure providers acting for us. We limit those providers to processing needed to provide, secure, and support the Service and do not authorize them to use Customer Content to train generalized models for unrelated purposes. Provider retention for security, abuse prevention, or legal compliance is governed by our agreements with those providers and any applicable provider terms.
How we disclose information
We may disclose personal information to the following categories of recipients for the purposes described in this Policy:
- Service providers and contractors. Cloud hosting, storage, database, authentication, cybersecurity, monitoring, error tracking, analytics, communications, customer support, payment processing, document processing, AI, professional services, and other vendors that process information for us under contractual or legal restrictions.
- The Customer and authorized users. Account administrators and other users authorized by the Customer may access account details, Customer Content, usage, decisions, and administrative information according to permissions and the Customer's instructions.
- Partners at the Customer's direction. If a user chooses to review an opportunity with a partner, invite a partner, or otherwise direct a disclosure, we may share the relevant information. The Customer is responsible for ensuring it has authority to do so.
- Professional advisers. Lawyers, auditors, accountants, insurers, banks, and consultants subject to professional, contractual, or legal confidentiality obligations.
- Authorities and legal recipients. Courts, regulators, law-enforcement agencies, government bodies, or other parties when we reasonably believe disclosure is required by law or valid process, necessary to protect rights, security, or safety, or appropriate to investigate fraud or misuse.
- Corporate transaction participants. Prospective or actual buyers, investors, lenders, insurers, and advisers in a financing, merger, acquisition, reorganization, due diligence, sale of assets, or similar transaction, subject to appropriate protections.
- Other recipients with consent or direction. A recipient you authorize or another party identified when the information is collected.
We may disclose aggregated or deidentified information that is not personal information. We take reasonable measures to prevent reidentification where required by law.
Sale, sharing, and targeted advertising
We do not sell personal information for monetary or other valuable consideration, and we do not share personal information for cross-context behavioral advertising as those terms are defined by California law. We also do not process personal information for targeted advertising based on activity across nonaffiliated websites or services.
We may disclose information to service providers and contractors for the business purposes described in this Policy; those restricted disclosures are not intended to be a sale or sharing. If we introduce advertising technologies or another practice that constitutes sale, sharing, or targeted advertising, we will update this Policy and implement legally required notice and opt-out mechanisms before the practice begins.
Legal bases for EEA, UK, and Swiss processing
If data-protection law in the European Economic Area, United Kingdom, or Switzerland applies, we rely on one or more of the following legal bases:
- Contract: to create and administer an account, provide the Service, process Customer instructions, support users, and manage subscriptions.
- Legitimate interests: to secure and improve the Service; provide business-to-business decision intelligence; conduct limited product analytics and research; prevent fraud and misuse; communicate with professional prospects and customers; and protect legal rights, provided those interests are not overridden by your rights and interests.
- Consent: for nonessential cookies, certain marketing, call recording, or other processing where consent is required. You may withdraw consent without affecting prior lawful processing.
- Legal obligation: to comply with tax, accounting, sanctions, regulatory, court, law-enforcement, and other legal requirements.
- Vital interests or public interest: only in rare circumstances where recognized by applicable law.
If we process Customer Content solely on a Customer's behalf, the Customer determines the relevant legal basis and we process according to the agreement and documented instructions.
Data retention
We retain personal information only as long as reasonably necessary for the purposes described in this Policy, including to provide the Service, maintain decision history and auditability, comply with law and contracts, resolve disputes, enforce agreements, preserve security, and support a corporate transaction. We use the following criteria rather than a single period for all data:
| Category | Retention criteria |
|---|---|
| Account and contact data | For the account or business relationship, plus a reasonable wind-down period and any period required for legal, security, tax, or dispute purposes. |
| Company profile and Customer Content | According to the Customer agreement, account status, Customer instructions, product need, legal obligations, and backup-deletion cycle. |
| Decision and event history | For the Customer relationship and as needed for auditability, outcome tracking, calibration, disputes, or legal obligations. Corrections may be appended; when deletion is legally required, identifiers may be deleted, anonymized, or dissociated while nonpersonal audit data is retained. |
| Public Procurement Data | For as long as needed to provide historical market, award, amendment, source, and decision context, subject to source terms, law, accuracy, and product need. |
| Security, access, and diagnostic logs | Based on security risk, investigation needs, system integrity, and legal requirements. Higher-risk records may be held longer for an active incident or claim. |
| Support, sales, and demo records | For the relationship, support history, quality control, dispute prevention, and legally permitted business development; recordings are retained only as needed for the disclosed purpose. |
| Billing, contract, and tax records | For legally required accounting, tax, audit, anti-fraud, and contract periods. |
| Marketing preferences | Until opt-out or no longer needed; limited suppression data may be retained to honor the opt-out. |
| Privacy-request records | For the legally required recordkeeping period and as needed to demonstrate compliance and prevent fraud. |
| Backups | Until overwritten or deleted under the backup cycle, unless isolated for security, legal hold, or disaster recovery. |
| Deidentified or aggregated data | Potentially for a longer or indefinite period if it cannot reasonably be linked to an individual and is protected against reidentification as required. |
We may retain information longer when required by law, legal hold, contract, fraud prevention, or a pending claim. When retention is no longer justified, we delete, anonymize, or securely dispose of the information, subject to technical limitations and applicable law.
Security
We maintain administrative, technical, and organizational safeguards designed to protect personal information against unauthorized access, use, alteration, disclosure, or destruction. Depending on the system and risk, measures may include tenant and user-scoped access controls, authentication, least-privilege permissions, secure storage and transmission, logging and monitoring, backups, vulnerability review, testing, incident response, vendor diligence, and deployment or rollback controls.
No method of transmission, storage, authentication, or software operation is completely secure. We do not guarantee absolute security, uninterrupted availability, or that every attempt at unauthorized access will be prevented. You are responsible for protecting credentials, using authorized devices and networks, configuring permissions, promptly removing former users, and notifying us of suspected compromise.
If we become aware of a personal-data breach, we will investigate and provide notifications to affected Customers, individuals, regulators, or others as required by applicable law and contract. Security descriptions are not a representation that NX Mind holds a particular certification unless that certification is expressly stated in a current written document.
International data transfers
ALBA is located in the United States. We and our providers may process information in the United States and other countries where we or they operate. Those countries may have different data-protection laws than your jurisdiction.
Where required for transfers from the EEA, United Kingdom, or Switzerland, we will use an approved transfer mechanism, such as an adequacy decision, the European Commission's Standard Contractual Clauses, the UK International Data Transfer Addendum or agreement, or another lawful mechanism, together with supplementary measures where appropriate. Contact us to request information about an applicable transfer safeguard, subject to confidentiality and security limitations.
Privacy rights
Depending on your location and the law that applies, you may have some or all of the following rights:
- Confirm whether we process your personal information and access or obtain a copy of it.
- Correct inaccurate personal information.
- Delete personal information, subject to lawful exceptions.
- Receive certain information in a portable and, where technically feasible, usable format.
- Restrict or object to certain processing, including processing based on legitimate interests.
- Withdraw consent for future processing that relies on consent.
- Opt out of sale, sharing, targeted advertising, or profiling in furtherance of legally or similarly significant decisions, where those rights apply. Current NX Mind practices are described in Sections 7 and 9.
- Limit certain uses or disclosures of sensitive personal information where applicable. We use sensitive personal information only for disclosed Service, security, legal, and other legally permitted purposes and not to infer characteristics unless expressly disclosed.
- Appeal our decision on a privacy request where applicable.
- Be free from unlawful discrimination or retaliation for exercising a privacy right.
- Complain to an applicable data-protection authority or attorney general.
These rights are not absolute. We may decline or limit a request where permitted, including if we cannot verify identity or authority; the information is controlled by a Customer; an exception applies; compliance would adversely affect another person's rights; or the request is manifestly unfounded, excessive, technically infeasible, fraudulent, or otherwise not required by law.
How to submit a request or appeal
To submit a privacy request, email hello@nxmind.com with the subject line "Privacy Request" or write to: Privacy, ALBA STRATEGIC PARTNERS LLC, 110 SE 6th St, Suite 1751, Fort Lauderdale, FL 33301, USA. You may also use available account controls to correct or delete certain account information.
Describe the right you wish to exercise, the Service or Customer involved, and enough information for us to locate the relevant records. Do not send passwords, Social Security numbers, payment-card information, or unnecessary identity documents. We may ask for information reasonably necessary to verify your identity, residency, authority, or relationship with the Customer. We use verification information only for verification, fraud prevention, security, and legal compliance.
Authorized agents may submit requests where permitted by law. We may require proof of authorization and may verify the request directly with the individual. A parent or legal guardian may act for a minor where applicable, although the Service is not intended for minors.
We will respond within the period required by applicable law and will explain any permitted extension or denial. If you may appeal, email hello@nxmind.com with the subject line "Privacy Appeal" within a reasonable period after our decision and explain why you believe it should be reconsidered. We will provide the result and, where required, information about contacting the appropriate regulator.
U.S. state supplemental notice
17.1 California
This subsection supplements the rest of the Policy for California residents and uses terms defined by the California Consumer Privacy Act, as amended (CCPA). It applies only if and to the extent ALBA is subject to the relevant provision.
In the preceding 12 months, depending on the relationship and features used, we may have collected the following CCPA categories:
| CCPA category | NX Mind examples | Main purposes | Recipient categories |
|---|---|---|---|
| Identifiers | Name, business email, IP address, account, device or online identifiers | Accounts, Service, security, support, communications | Service providers; Customer administrators; legal recipients |
| Customer-record information | Business contact, billing contact, address, telephone, account details | Contract, billing, account management, support | Service providers; Customer; advisers; legal recipients |
| Commercial information | Subscription, transaction, opportunity, watch/skip/submission and outcome history | Service, billing, decision workflow, analytics | Service providers; Customer administrators; transaction/legal recipients |
| Internet or network activity | Clicks, pages, searches, feature use, logs, errors, authentication and security events | Operate, secure, troubleshoot, measure, improve | Hosting, analytics, security, support providers; Customer administrators |
| Geolocation | Approximate location from IP; business capability geography | Security, localization, capability matching | Service and security providers; Customer administrators |
| Audio/visual information | Demo or support recording if enabled with notice/consent | Support, training, quality, records | Communications providers; authorized staff; Customer where applicable |
| Professional or employment information | Employer, title, company profile, certifications, agency or partner relationships | Accounts, onboarding, B2B Service, communications | Service providers; Customer users; directed partners |
| Sensitive personal information | Account access data; sensitive data incidentally contained in authorized documents | Authentication, security, Service, legal compliance | Restricted service/security providers; legal recipients |
| Inferences | User preferences or usage patterns; business-opportunity fit and risk signals linked to a professional account | Personalization, Service improvement, decision support | Service providers; Customer administrators |
| Contents of communications | Support messages or content sent to NX Mind, where not directed to us as recipient | Provide support and Service at user's direction | Support/communications providers; Customer administrators |
Sources, purposes, and recipients are described more fully in Sections 5, 6, and 8. Retention criteria are described in Section 12. We do not use or disclose sensitive personal information for the purpose of inferring characteristics about a California consumer, except if expressly disclosed and legally permitted.
No sale or sharing. We have not sold personal information or shared it for cross-context behavioral advertising in the preceding 12 months, including personal information of consumers we actually know are under 16. We do not offer a financial incentive or price or service difference in exchange for personal information. If these practices change, we will update this notice and implement applicable choice mechanisms before the change takes effect.
California residents may request to know/access, correct, or delete personal information and may have rights to opt out of sale/sharing, limit certain sensitive-information uses, and receive equal service. Because we do not sell or share personal information or use sensitive personal information to infer characteristics, we do not provide opt-out or limit links for those practices. If our practices change, we will provide applicable choice mechanisms. We may retain privacy-request records for at least the period required by law.
17.2 Florida
If the Florida Digital Bill of Rights applies to ALBA and the relevant processing, Florida consumers may have rights to confirm and access, correct, delete, and obtain a portable copy of personal data; opt out of targeted advertising, sale, or profiling for legally significant decisions; opt out of collection or processing of sensitive data; and appeal certain decisions. The law contains applicability thresholds and exemptions. We provide the request and appeal methods in Section 16 and will update this notice as required by applicable law.
17.3 Other U.S. states
Residents of other states may have similar rights to access, correct, delete, obtain a portable copy, opt out of sale or targeted advertising, opt out of certain profiling, withdraw consent to sensitive-data processing, appeal, and avoid discrimination. We will honor applicable rights based on your verified residence and the law that applies. Nevada residents may submit a verified request to opt out of covered sales, although current NX Mind practices do not involve such sales.
Business customer accounts and administrators
If a Customer provides your account, its administrators may create, suspend, or terminate your access; view profile and usage information; assign permissions; access Customer Content and decision records; and configure integrations or retention, subject to the agreement and applicable law. Your Customer's privacy notice may also apply.
Customers are responsible for providing appropriate notices to their personnel and partners; establishing a lawful basis for Customer Content; configuring roles and permissions; responding to requests for data they control; and ensuring that users do not submit unauthorized or restricted information. When a Customer asks us to process a request concerning Customer Content, we may act on its verified instructions.
Public procurement and third-party data
NX Mind uses public procurement and award sources to provide opportunity, market, and incumbent context. We do not claim ownership of government data. Public data may be incomplete, delayed, amended, inaccurate, unavailable, or subject to separate terms. We may preserve source IDs, timestamps, version information, unavailable-document flags, and amendment history to explain the basis of a result.
Removing a professional contact or other personal information from NX Mind does not remove the information from the original public source. We may refer you to the source authority for correction. We may also retain a limited record if needed to avoid republishing inaccurate information, honor an objection, maintain source integrity, or comply with law.
Customer responsibilities and restricted data
You represent that you have the rights, notices, consents, and lawful basis needed to provide Customer Content and direct its processing. You must respect procurement integrity, confidentiality, data-protection, intellectual-property, export-control, cybersecurity, records-management, and public-records requirements that apply to you.
NX Mind is not a system of record for classified information, CUI, export-controlled technical data, source-selection information, sealed bids, protected proposal information, personal health or consumer-financial data, or other regulated data unless a written agreement expressly authorizes that category and specifies appropriate controls. If you believe restricted or unauthorized data has been submitted, contact hello@nxmind.com promptly and identify the record without repeating the sensitive content in an unsecured message.
Children
The Service is intended for business users who are at least 18 years old and is not directed to children under 13 or to minors generally. We do not knowingly collect personal information from children through the Service. If you believe a child has provided personal information, contact us so we can investigate and delete it where required. Do not upload documents containing children's information unless expressly authorized in writing and legally permitted.
Third-party services and links
The Service may link to or interoperate with government systems, Customer-selected integrations, and third-party websites or services. Their privacy and security practices are governed by their own terms and notices, not this Policy. We are not responsible for independent third-party practices. Review them before providing information or enabling an integration.
Communications
We may send service, security, billing, support, and account communications that are necessary for the relationship. We may also send business-to-business marketing where permitted. You can unsubscribe from marketing by using the link in the message or contacting us. We may retain a limited suppression record to honor your choice. Unsubscribing from marketing does not stop nonmarketing Service communications.
Changes to this Policy
We may update this Policy as the Service, law, vendors, or data practices change. We will post the updated version and revise the "Effective date". If a change is material, we will provide additional notice or obtain consent where required. An archived version may be made available on request. We review this Policy at least annually and update it as needed.
Contact us
Privacy questions, requests, and complaints may be sent to:
ALBA STRATEGIC PARTNERS LLCAttn: Privacy - NX Mind110 SE 6th St, Suite 1751Fort Lauderdale, FL 33301United States
Email: hello@nxmind.com
If you are in the EEA, UK, or Switzerland, you may also lodge a complaint with your local data-protection authority. Please contact us first if you are comfortable doing so; this does not limit your right to complain to a regulator.