Coren by da.care SA

Version 0.2 (draft), 15 July 2026

Supersedes v0.1 (15 July 2026).

Draft for legal review. Bracketed items must be resolved before publication; open points are listed at the end. This policy must be live at a public URL before the first provider outreach e-mail is sent (GDPR Article 14 requires the disclosure at first contact, and the e-mails link here).


1. Introduction

da.care SA ("da.care", "we", "us", "our") operates Coren, an online directory and matching service that connects people looking for a service ("Seekers") with practitioners and businesses that provide one ("Providers"). This Privacy Policy explains what personal data we collect, why, and your rights.

Data controller: da.care SA (CHE-425.383.392), Chemin des Viaducs 1, 1820 Veytaux, Switzerland. Contact: [email protected].

For users in the EU/EEA and Switzerland, da.care SA is the data controller under the GDPR and the Swiss Federal Act on Data Protection (FADP) respectively.

How Coren creates profiles, at a glance. Coren lists practitioners and businesses before they sign up. We build these "Unclaimed" profiles from information the practitioner has published themselves, for example on their practice website, and we say so on every such profile. If one describes you, you can claim it, correct it, or delete it, free, at any time. The e-mails we send you contain two separate links: unsubscribe stops the e-mails, delete removes your profile from Coren entirely. Both always work. Details in Section 5.

2. Privacy by Design

Searching Coren requires no account. A search runs under a random session token; it is not linked to your identity unless you sign in.

Contacting a Provider happens outside Coren. Listings show the Provider's published contact details; you reach out to them directly, like on any map or directory service. We do not transmit, receive, or store those communications.

Only Providers are public. If you are not a Provider, nothing about you is published, and no other user can access your information. Provider listings are public by design; that is their purpose.

We do not sell personal data and do not share it with third parties for their own marketing or targeted advertising.

3. Data We Collect

Account data (all users with an account; not public)

Your name, e-mail address, and date of birth. Authentication and sessions are managed by our processor Supabase Auth. If you are not a Provider, this data is not public and no other user can access it.

Provider listing data (public by design)

Everything you choose to give about your service, your practice or business name, profession or specialisation, description, location, languages, pricing, opening hours, images, and similar, is published on your Coren listing and accessible to anyone. For profiles we create before a Provider signs up, see Section 5.