Last updated 3 September 2026

Privacy Policy

This notice explains how Coliving Founders handles personal data across its website, partner network and communications.

1. Who is responsible for your data

The controller for the Coliving Founders website and services is BEET S.R.L. BENEFIT, VAT IT07106580827, Via XX Settembre 65, 90141 Palermo (PA), Italy. Contact: info@colivingfounders.com. The colivingfounders.com domain and official mailbox are administered through Aruba. Website, database, file, analytics and delivery providers may also process data under contract and appropriate safeguards.

2. COFO governance contacts

Operational governance is coordinated by the three COFO cofounders: Marco Traina (BeetCommunity / BEET S.R.L. BENEFIT), Maria Mayordomo Iglesias (Cactus Coliving SL), and Claire Cipriano (POMAR Coliving / CHHC, lda). These individuals support network governance; this statement does not make them personally and jointly liable for every processing activity. BEET S.R.L. BENEFIT remains the controller unless a specific notice identifies another party.

3. Data we collect

We may collect name, surname, email address, telephone number, nationality, date of birth, address, company and tax details, coliving and project information, event dates, group size, requirements, indicative budgets, profile photographs, social links, requests and message history, volunteer experience and curricula vitae, signed contracts, newsletter preferences, discount-code information, booking-related identifiers, IP address, device and browser data, cookie choices, and analytics or campaign events.

4. Why and on what basis

We process data to answer requests; assess, create and administer partner accounts; review volunteer and pop-up applications and connect approved applicants with authenticated founders; assess consulting enquiries and prepare tailored proposals; pre-fill, sign and review agreements; publish approved profiles; manage company requests and conversations; provide discount codes; deliver newsletters and operational emails; secure the service; comply with legal obligations; and improve the website. Depending on the activity, the basis is contract or pre-contractual steps, consent, legal obligation, or legitimate interests balanced against individual rights.

5. Email, newsletters and promotions

Operational emails such as form confirmations, invitations, password recovery and request replies may be delivered through the official Aruba mailbox or a configured transactional provider such as MailerSend. Marketing email is sent only with the required consent or another lawful basis. Every promotional message should offer an unsubscribe method. Newsletter fields can include name, surname, email, nationality, date of birth and phone number.

6. Google, Meta and cookies

Necessary storage supports login, security and preferences. Google Analytics, Google Tag Manager, Google Ads, Meta Pixel or related advertising technologies are activated only after the visitor accepts analytics and marketing technologies. Users can refuse optional tracking through the consent banner and may also use browser or platform controls.

7. Sharing and international transfers

We may share data with hosting, storage, authentication, email, analytics, advertising, booking and professional service providers; approved COFO partners when necessary to fulfil a request; authenticated founders when a volunteer profile or pop-up request has been approved for a private directory; and authorities where legally required. Where data is transferred internationally, we use an available legal transfer mechanism and appropriate contractual or technical safeguards.

8. Restricted guest safety reports

Authenticated partners may submit factual guest safety reports containing contact details and a description of a documented experience. A report is visible only to administrators until reviewed; approved reports may then be shared only with authenticated COFO partners for proportionate safety and risk-management purposes. Reports are never published on public profile pages. Individuals may contact us to request access, correction, review or deletion. COFO may restrict or remove information that is unsupported, excessive, discriminatory or no longer necessary.

9. Volunteer applications and private directory

Volunteer applications remain accessible only to COFO administrators while pending or rejected. If an application is approved, the profile, contact details, photograph, experience, social link and CV become available to authenticated COFO founders so they can contact the applicant about suitable opportunities. These records are not published on the public website. Newsletter subscription is optional and separate from submitting an application.

10. Pop-up and consulting requests

Approved pop-up requests contain the organiser's contact details, dates, group size, concept, space requirements and any indicative budget. They are visible only to authenticated COFO founders, who may contact the organiser to discuss availability and commercial terms. Consulting requests remain restricted to COFO administrators and are used to assess the project, contact the requester and prepare a proposal. Newsletter subscription is optional and separate from both request types.

11. Retention and security

We retain data only as long as needed for the stated purpose, contractual relationship, dispute period, tax or legal duties, and security. Volunteer profiles, pop-up requests and guest safety reports are periodically reviewed and should be deleted or anonymised when no longer necessary. Access is role-based: administrators can manage the platform, while partner accounts are restricted to their assigned profile, approved shared volunteer, pop-up and safety records, and conversations. Passwords are hashed and are not displayed to administrators. No online service can guarantee absolute security.

12. Your rights

Depending on where you live, you may request access, correction, deletion, restriction, portability or objection; withdraw consent; opt out of marketing; and complain to a competent privacy authority. California residents may also have rights to know, delete, correct, limit certain uses of sensitive data and opt out of sale or sharing as defined by applicable law. COFO does not sell personal data for money.

13. Children and worldwide visitors

The services are intended for adults and are not directed to children. Privacy rules vary by country. We apply this notice globally and will honour additional mandatory local rights where they apply, but no single notice can override local law. Contact us if you need a region-specific request handled.

14. Contact and updates

To exercise a right, request removal of a volunteer profile or pop-up request, contest a guest safety report or ask a privacy question, email info@colivingfounders.com. We may update this notice when services, providers or laws change; the current date appears at the top of this page.