Privacy Policy
1. Summary
The App is designed to hold as little of your data as possible. It has no user accounts and no backend of its own. The only circumstance in which any personal data reaches Wonnetix LLC is when you choose to contact support.
2. What stays on your device and never reaches us
- Cloud provider credentials (API keys, tokens, service-account files, passwords) are held in your device's secure storage — iOS Keychain or Android Keystore — and are sent only to the provider they belong to, directly from your device. They are never transmitted to Wonnetix LLC.
- Your app PIN is stored as a salted hash in secure storage and never leaves the device.
- App settings (which accounts you have added, their labels, your preferred regions and tabs) are stored locally on your device only.
- Infrastructure data fetched from your providers is held in memory and local cache for display, and is not transmitted to Wonnetix LLC.
3. We do not track you
The App contains no analytics, no advertising, no third-party trackers, and no crash or usage telemetry. We do not build a profile of you, and nothing is collected in the background.
4. What we receive when you contact support
If — and only if — you raise a support request from within the App, the following is sent to our support system:
- Your email address, which you verify with a one-time code. It identifies your requests and is how we reply. It is not used for marketing.
- The content of your messages and any replies.
-
A diagnostics report, containing: app version and build; device model,
operating system version and locale; network connection type; the accepted version of these
documents; the cloud providers and regions configured, with the labels you chose and a
masked hint of each credential (for example
AKIA…7Q); and technical metadata about recent API calls (method, host and path without query parameters, status code, duration, and any provider-side request identifier). - A screenshot, only if one is attached. It is captured from the App, shown to you before sending, and can be removed. Capture is automatically blocked on screens that display a secret.
The diagnostics report never contains your credentials, API keys, tokens, passwords, service-account files, or authorisation headers. It is assembled from an explicit list of permitted fields rather than by filtering, and this is enforced by an automated test.
You can view the full contents of the diagnostics report before sending.
5. Where support data goes
Support requests are handled in Support Hub, a helpdesk system operated by Wonnetix LLC and hosted at [LOCATION/REGION — pending]. Attachments are held in [OBJECT STORAGE PROVIDER/REGION — pending]. Support data is not sold, and is not shared with third parties except processors acting on our instructions.
6. Legal basis (GDPR)
Where GDPR applies, we process support data on the basis of legitimate interest in providing support you have requested, and to perform our agreement with you under the Terms of Use.
7. Retention
Support tickets and attachments are retained for 180 days and then deleted.
8. Your rights
Where GDPR or equivalent law applies you may request access to, correction of, or deletion of your support data, object to processing, or request portability. Contact privacy@nuverian.com. We will respond within the period required by law.
Note that because your ticket history is identified by your verified email address, changing your email address means your previous ticket history is no longer reachable from the App.
9. Purchases
In-app purchases are processed by Apple or Google. We receive confirmation that a purchase was made, but never your payment details.
10. Children
The App is not directed at children and is not intended for use by anyone under 18.
11. Changes to this Policy
We may update this Policy. Material changes will be brought to your attention in the App.
12. Contact
Privacy enquiries and rights requests:
privacy@nuverian.com
General enquiries: info@nuverian.com
Product support: use the in-app support flow, or
support@nuverian.com
Appendix — what we declare to the app stores
Apple and Google each require apps to declare the data they handle, shown as App Privacy on the App Store and Data safety on Google Play. This is what we declare, published here so you can check it against the policy above. Everything listed is handled for one purpose — providing the support you asked for — and none of it is used for tracking or advertising.
What we declare as collected
| Data | When | Why |
|---|---|---|
| Email address | Only when you contact support | Identifies your requests and is how we reply. Never used for marketing. |
| Your messages | Only when you contact support | The subject and body you write, and our replies. |
| Screenshot | Only if you attach one | Shown to you before sending and removable. Blocked automatically on screens showing a secret. |
| Diagnostics | Only when you contact support | App version, device model, operating system, locale, network type, your provider labels and regions, and recent request metadata. Never your credentials. |
What we declare as not collected
- No usage or product-interaction data. Nothing is recorded in the background.
- No device or advertising identifiers. No IDFA, no IDFV. Device model is diagnostics, not an identifier.
- No location. Cloud region names describe your servers, not your whereabouts.
- No crash logs. There is no crash reporter in the app.
- No payment details. Purchases are handled entirely by Apple and Google.
- No credentials. Your API keys stay in your device's secure storage and are never sent to us.
Also declared
- Data is encrypted in transit — every connection uses HTTPS.
- Nothing is sold or shared with third parties, other than processors acting on our instructions.
- You can request deletion of your support data at any time, in the app under App settings → Legal → Your data, or by writing to privacy@nuverian.com.
- Support data is kept for 180 days, then deleted.
- The app is intended for adults — see the Children section above.