Privacy Notice Draft

Status: draft placeholder pending institutional and legal review. This page supports SRAM/OIDC registration review and internal preparation. It is not an approved production privacy notice, does not establish hosted-service readiness, and does not authorise invitations to additional external users.

Draft control

This notice must not be treated as evidence of:

Before invitations expand, the following must be confirmed:

Scope

The current OS-ERIN service operator is Biometris, Wageningen University & Research.

This notice concerns the public registration surface and the restricted hosted research demonstrator. The hosted demonstrator is intended to test federated access and controlled scholarly-review collaboration. It is not a production research service or long-term repository.

OS-ERIN is not a truth engine, ranking system, misconduct detector, compliance score, or automated peer-review replacement.

Parser, retrieval, model, and provider outputs remain proposals or provenance-bearing intermediate records unless an authorised reviewer explicitly accepts, edits, or replaces them within the OS-ERIN workflow.

Authentication and access

The current hosted demonstrator uses SURF SRAM and OpenID Connect through a restricted browser application and trusted OIDC proxy.

The reviewed public callback is: https://os-erin.eu/oauth2/callback

Login is limited to approved SRAM application-group membership.

The current operator-validation account has completed the bounded SRAM sign-in route. This does not establish:

Authentication alone does not grant access to a project or its documents. Authorisation depends on OS-ERIN project membership, invitation or allowlist rules, assigned roles, or approved SRAM collaboration, group, or entitlement claims mapped into OS-ERIN permissions.

Personal data expected in the demonstrator

Authentication and identity data

Collaboration and authorisation data

Application and review data

Operational and security data

Secrets and internal services

Client secrets, access tokens, ID tokens, refresh tokens, bearer tokens, session cookies, private keys, raw identity-provider responses, organisation API tokens, unredacted OIDC claim dumps, and equivalent credentials must not be placed in:

The hosted runtime should expose the application only through the approved HTTPS and OIDC boundary.

Internal components—including the application API, databases, object storage, parser services, GROBID, fallback workers, model or provider services, and administrative consoles—must not be directly exposed as public services.

Required before additional external users are invited

Rights, retention, and contact route

Registration contact: Peter Tamas, Wageningen University & Research.

The formal privacy-rights process, controller and processor roles, institutional data-protection route, retention and deletion schedule, and final policy approval remain to be confirmed before invitations expand.

Until those routes are approved, contact through this page is a project enquiry and should not be treated as a substitute for a formal institutional privacy request.