Privacy Policy
Last updated: June 22, 2026
Nexus is a portfolio demo, not a production data vault. Authenticated workspace data is stored in the application database, with limited browser caching for responsiveness and queued commands.
1. Information We Collect
We collect information you provide directly to us:
- Account Information: Name, email address, and password when you create an account
- Profile Information: Optional profile photo and display preferences
- Content: Documents, tasks, and other content you create within the app
- Usage Data: How you interact with the service for improving user experience
2. Data Storage and Sync
Nexus v1 uses server-backed workspace storage with local cache and queued sync behavior. This means:
- Documents, tasks, requirements, workflow runs, and audit events are stored on the server database
- Some client-side data may be cached locally for faster navigation or offline queue behavior
- AI features require server connectivity and configured provider keys
- Production Zero cache support is deferred and is not currently claimed as a full offline sync guarantee
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve our services
- Send technical notices and support messages
- Respond to your comments and questions
- Run AI features that you explicitly start
4. AI and Your Data
When you use AI features in Nexus:
- Your prompt and relevant workspace context may be sent to the server-configured AI provider
- The public demo uses Gemini by default; deployments may configure another supported provider
- Provider processing is governed by that provider's terms and data policies
- Do not submit secrets, confidential source code, personal data, or other sensitive information
5. Data Sharing
We do not sell your personal information. We may share data with:
- Service Providers: Third parties that help us operate the service
- AI Providers: When you use AI features (with your consent)
- Legal Requirements: When required by law or to protect rights
6. Data Security
The demo uses practical application-security controls, including:
- HTTPS for the public deployment
- Hashed passwords and hashed/revocable MCP access tokens
- Workspace-scoped authorization and server-side API credentials
- Rate limits, audit events, and human approval for sensitive workflow changes
7. Your Rights
You have the right to:
- Access: Request a copy of your personal data
- Correction: Request correction of inaccurate data
- Deletion: Request deletion of your data
- Portability: Export your data in a standard format
- Opt-out: Opt out of marketing communications
8. Cookies and Tracking
We use essential cookies for authentication and preferences. We do not use tracking cookies for advertising purposes. You can manage cookie preferences in your browser settings.
9. Children's Privacy
Nexus is not intended for children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the "Last updated" date.
11. Contact Us
If you have any questions about this Privacy Policy, please contact us at:
- GitHub: github.com/zexy2/Nexus