Privacy Policy
Last updated: June 12, 2026
What we collect
- Account data: your email address and a salted, hashed version of your password (we never store plaintext passwords).
- Billing data: handled entirely by Stripe. We never see or store card numbers; we receive your email, plan, and payment status from Stripe.
- Usage data: standard web server logs (IP address, timestamps, requested pages) and in-product usage counters (e.g. probe volume) used for metering and security.
What we don't do
- We do not sell or rent your personal data.
- We do not run third-party advertising or tracking pixels on this site.
- We do not collect credentials for any third-party service.
Cookies
We use a single signed session cookie to keep you logged in (7-day expiry). Signing out removes it. No marketing or cross-site cookies are set.
How data is protected
All traffic is encrypted with TLS. Passwords are hashed with bcrypt. Account data lives on access-controlled infrastructure with rate limiting, intrusion mitigation, and nightly backups. Subscriber data is logically separated per account.
Retention and deletion
Account data is retained while your account is active. Email support from your account address to delete your account and associated data; we complete deletions within 30 days, except records we must retain for tax or legal compliance (e.g. Stripe invoices).
Third parties
We share data only with processors necessary to run the Service: Stripe (payments) and our hosting provider (DigitalOcean). Each processes data under their own privacy terms.
Changes and contact
Material changes to this policy will be posted here with an updated date. Questions: info@nexusdataengineering.com.