Aquaduct Data Strategies LLC

Aquaduct Cascade — Privacy & Terms Annex

Aquaduct Data Strategies LLC — DBA: Aquaduct Cascade Version: 1.0-draft Effective Date: March 21, 2026 Last Updated: 2026-03-21


This annex supplements the Aquaduct Data Strategies LLC master Terms of Service and Privacy Policy. It describes data practices specific to the Aquaduct Cascade benefits data platform. In the event of conflict between this annex and the master documents, this annex controls for Aquaduct Cascade.

Note for existing Cascade users: This annex supersedes and supplements any previous privacy policy or terms of service displayed at Cascade’s /privacy and /terms routes. Where the previous policies are silent or inconsistent, this annex and the master documents control.


1. About Aquaduct Cascade

Aquaduct Cascade is a benefits data and services platform operated as a DBA of Aquaduct Data Strategies LLC. The platform serves both employers (administrators) and employees, providing benefits data monitoring, vendor discovery, and compliance intelligence via a web application. Cascade is hosted on Amazon Web Services (AWS) infrastructure.


2. Data We Collect

Cascade collects personal information from two categories of users: employer administrators and employees/members. The data collected differs by user type.

2.1 Identity and Account Data (All Users)

Data TypeHow CollectedPurpose
Email addressRegistration / Auth0 identity providerAccount creation, authentication, communications
Full nameRegistration / Auth0 profileAccount display, employer records
Profile imageUser-uploaded or Auth0 profileIn-platform display
User ID (Auth0 subject ID)Auth0Unique account identifier across sessions
Authentication tokensAuth0Session management and API authorization

2.2 Employer and Organizational Data (Employer Admins)

Data TypeHow CollectedPurpose
Tenant / organization IDPlatform provisioningMulti-tenant isolation; all employer data is scoped to a tenant
Organization name and settingsAdmin-providedPlatform configuration
Vendor selections and configurationsAdmin-providedBenefits plan administration
Billing and subscription dataStripe payment processingSubscription management

2.3 Employee / Member Data

Data TypeHow CollectedPurpose
Role and employment statusAdmin-provisioned or employee-providedBenefits eligibility determination
Tenant / organization membershipPlatform assignmentConnect employee to correct employer tenant
Benefits elections and enrollment dataEmployee-provided in-platformBenefits administration, vendor integration
Preferences and settingsUser-providedPersonalization
Feedback and support submissionsUser-providedProduct improvement, issue resolution

Cascade uses link-beacon telemetry to track interactions with vendor links and benefit resources within the platform. This is disclosed explicitly here because it was not fully described in earlier versions of Cascade’s privacy policy.

What is trackedWhyRetention
Which vendor links are clicked within the platformTo understand benefit resource engagement, improve vendor recommendations, and measure feature usage12 months rolling
Timestamp of the click eventTo enable time-based analytics and identify usage patterns12 months rolling
User ID (pseudonymous — not name or email)To associate engagement with a session for analytics purposes12 months rolling
Tenant/organization IDTo aggregate engagement at the employer level12 months rolling

What link-beacon does NOT track:

Link-beacon data is used for internal analytics and product improvement only. It is not shared with advertisers or third-party marketing platforms.

2.5 Vendor Tracking and Search Data

Data TypeHow CollectedPurpose
Vendor search queriesUser-entered in search interfaceReturn relevant benefits vendor results
Vendor interaction historyPlatform-loggedImprove recommendation relevance via Tinker inference
DOL/SEC public data usedAPI queriesInform vendor profiles with public regulatory data (no user data transmitted)

2.6 Technical and Security Data

Data TypeHow CollectedPurposeRetention
IP addressServer logsSecurity, fraud prevention, rate limiting30 days
Browser type and OSHTTP headersCompatibility and support30 days
Session tokensAuth0Maintain authenticated sessionsSession duration
Application error logsAutomatically capturedBug diagnosis and service improvement12 months

3. Third-Party Service Providers

Aquaduct Cascade uses the following third-party services. Each provider processes data only as necessary for the described function.

ProviderServiceData SharedProvider Privacy Policy
Auth0 (Okta)Identity and authenticationEmail, name, profile image, role, tenant ID, authentication tokensAuth0 Privacy Policy
Stripe, Inc.Payment processingBilling contact, payment information (card data processed by Stripe; we do not store raw payment card numbers)Stripe Privacy Policy
Amazon Web Services (AWS)Cloud infrastructure hostingAll platform data (hosted on AWS; data remains within AWS infrastructure under our account)AWS Privacy Notice
TinkerAI/inference servicesUsage patterns and preferences (pseudonymous) for vendor recommendation improvementInternal service — no external-facing privacy policy (Tinker is operated by Aquaduct Data Strategies LLC)
Brave Search API / SerpAPI / Google Custom Search EngineSearch servicesSearch queries submitted to vendor search interfaceGoogle Privacy Policy / SerpAPI Privacy Policy
U.S. Department of Labor (DOL) APIPublic labor and benefits dataNo personal data transmitted; public data retrievedPublic government API
U.S. Securities and Exchange Commission (SEC) APIPublic financial dataNo personal data transmitted; public data retrievedPublic government API

4. Employer / Employee Relationship Data

Cascade serves multi-tenant environments where employers provision access for their employees. This creates a layered data relationship:


Cascade uses browser cookies and local storage for the following purposes:

CategoryPurposeOpt-Out
Functional / Session cookiesMaintain authenticated sessions, remember user preferencesRequired for platform functionality; cannot be disabled without logging out
Auth0 authentication cookiesAuth0 identity management and token storageManaged by Auth0; required for login
Analytics / telemetryLink-beacon telemetry (see Section 2.4)See Section 7 (CCPA Opt-Out) for California residents; contact us to opt out

For full cookie details, see the Cookie Policy.


6. DMCA and Intellectual Property

Aquaduct Cascade’s DMCA policy, designated agent for copyright takedown notices, and repeat infringer procedures are described in the Company’s DMCA Policy at:

DMCA Policy on the published legal policy site.

Cascade users who submit content (feedback, vendor reviews) are responsible for ensuring they have the rights to submit that content.


7. California Residents — CCPA Opt-Out and Additional Rights

California residents using Aquaduct Cascade have the following rights in addition to those described in the master Privacy Policy Section 10:

7.1 Opt-Out of Sale or Sharing

Cascade does not sell personal information. Cascade does not share personal information for cross-context behavioral advertising. If our practices change, we will update this section and provide an opt-out mechanism before any such sharing begins.

7.2 Limit Use of Sensitive Personal Information

We do not use sensitive personal information (as defined by the CPRA) beyond what is necessary to provide the Cascade service. Employees’ benefits election data may constitute sensitive personal information under California law; it is used only for benefits administration and is not used for inferencing beyond the purposes described in this annex.

7.3 How to Submit a CCPA Request

To submit a CCPA rights request for Cascade data:


8. Data Retention

Data TypeRetention Period
Account and identity data (active users)Duration of account
Benefits elections and enrollment dataDuration of account + 7 years (tax/regulatory record-keeping)
Billing and transaction records7 years (tax compliance)
Link-beacon telemetry12 months rolling
Vendor search queries and interaction data12 months rolling
Authentication logs (Auth0)Per Auth0 retention settings (typically 30 days)
Application error logs12 months rolling
IP address and security logs30 days

For account deletion requests, contact strategies@aquaductdata.com with the subject “Account Deletion Request — Cascade.”


9. Governing Documents

This annex is to be read together with:

For general contact or privacy requests, see Master Privacy Policy Section 15.


10. Version and Effective Date

AttributeValue
Version1.0-draft
Effective DateMarch 21, 2026
Last Updated2026-03-21
StatusDraft — technical accuracy review complete; pending final approval

Document History

DateVersionChangesAuthor
2026-03-211.0-draftInitial draft; addresses previously undisclosed gaps: link-beacon telemetry, CCPA opt-out, cookie consent, DMCA referenceADS Legal
2026-03-221.1-draftTechnical review: corrected “benefits enrollment” → “benefits data monitoring, vendor discovery, and compliance intelligence”; clarified Tinker as internal service (no external privacy policy)ADS Legal

This annex was prepared by Aquaduct Data Strategies LLC and has not been reviewed by a licensed attorney. Technical accuracy of all data types, third-party integrations, and the link-beacon telemetry disclosure was confirmed on 2026-03-22. Final review pending before publication.