Legal
Privacy Policy
Nuscio queries your systems in place rather than replicating them, so there is no copy of your source records. This policy covers what we do hold: information about you as a person using the service, and the operational records the Trust Center lists in full.
Last updated 26 July 2026
return (
Privacy Policy
Last updated: March 2026
Welcome to Nuscio!
This Privacy Policy (“Policy”) explains how your information is collected, used and disclosed
while using our domains, applications and services located or accessed at
https://nuscio.com
which is owned and operated by Nuscio (“we” / “us” / “our”).
This Policy applies where we are acting as a Data Controller, where we determine the purposes and means
of the processing of that personal data, for example with respect to the personal data of our website
visitors, service users, and clients.
Who Will Use My Data?
Nuscio.
What For?
We will store and process your data in order to allow us to provide and improve our services. We will
use your data when you communicate with us by sending administrative notifications, product updates, and
other related communications. We also use your data to assist you with any questions, issues, or feedback
related to Nuscio.
We use your personal data to detect, prevent, or address fraud, security, or technical issues and as
required by law, legal process, or in the interest of public safety or investigation.
If you contact us, we may also send you information that we think you will be interested in, including
information about related services. We will also send any relevant details to authorities and any other
organisation that requires them by law.
What Will Happen If I Contact You?
If you contact us, we will use your data to send you the information that you have requested, updates,
and other information that we think you will be interested in. This may include information about our
services and related offerings.
What Data Will Be Stored?
We will store your personal details in order to provide our services and run our company. This includes
your contact details, company information, account information, information provided through our support
channels, and financial information.
What Data Will Be Shared?
We will not share your data with any third parties other than as described here, to fulfil our obligations
to you, operate and develop our company, and to protect our interests. We will only share data that is
relevant to providing the services that we offer. We may share your information with regulators or legal
bodies that request it.
How Long?
Your data will be stored only for as long as necessary to fulfil our purposes unless otherwise required
by law or to meet legal and customer contractual obligations. For more information, please contact us
Who Can Access My Data?
We will never sell, share or otherwise distribute your data to any other third party other than as
described here. Access to your data is carefully controlled.
How Is My Data Kept Secure?
We will store your data on secure servers. We use industry-standard security protocols and technology
to secure your data.
About This Privacy Policy
This policy sets out how we will collect, store, and process the information you provide to us, the
information we collect as a result of our interaction, the information we collect about you from other
sources, or the information we derive by using the information we hold.
With this policy, we work towards meeting the following goals:
- Ensuring the protection of the individual’s privacy rights and personal information
- Promoting transparency and accountability in the processing of personal information
- Minimising the risk of data breaches and unauthorised access to personal information
- Compliance with applicable laws, regulations, and guidelines
- Establishing a framework for effective management of personal information
Principles of Processing Personal Information
The General Data Protection Regulation (GDPR) describes how organisations must collect, handle, process,
and store personal information. These rules apply regardless of whether data is stored electronically, on
paper or other materials. To comply with the law, personal information must be collected and used fairly,
stored safely and not disclosed unlawfully. GDPR is underpinned by eight important principles. These say
that personal data must:
- Be processed fairly and lawfully
- Be obtained only for specific, lawful purposes
- Be adequate, relevant, and not excessive
- Be accurate and kept up to date
- Not be held for any longer than is necessary
- Be processed in accordance with the rights of the data subjects
- Be protected in appropriate ways
- Not be transferred internationally, unless the country or territory also ensures an adequate level of protection
We take these responsibilities seriously; this document describes our approach to data protection.
Who We Are and How to Contact Us
Nuscio is an operating partner for businesses that run on several separate systems. It connects to the systems an organisation already uses, reads across them where they sit, answers questions in plain language, and alerts the right person when something changes. It queries those systems in place rather than replicating them, so no warehouse or extract of an organisation’s records is created. It does retain operational records, including the questions asked and the answers returned, which contain figures drawn from those systems.
For any data protection enquiries, please contact:
- Data Protection Team: Nuscio Data Protection Team
- Email:
To Whom Does This Privacy Policy Apply?
We process your data to offer you our services and to run our company. This applies to all data we hold
relating to identifiable individuals, even if that information technically falls outside of the GDPR. This
policy relates to the following identified categories of data subjects:
- Employees
- Contractors
- Clients
- Third parties
What This Policy Applies To
This section describes the purposes for processing your data and applies to the information about yourself
that you choose to provide us with or that you allow us to collect. This includes:
- The information you provide when you contact us
- When you contact us to discuss using our services
- Information collected when you create an account
- Information collected when you use Nuscio
- Queries and data you submit through Nuscio
- Information that we collect while offering support
- Information we collect about how you use the website
- Information relating to services we offer to you and other transactions including financial and other personal information required to complete these transactions
- Information that is given and stored as part of our ongoing relationship
- Information we collect as a result of our interaction
We do not routinely collect or process sensitive data about you. However, where this is the case we will
ensure we ask for your consent where applicable and take appropriate precautions to protect your data.
What Information Do We Collect
Directly Provided Information
Our users connect Nuscio to the systems their organisation already runs. Nuscio reads those systems in place to answer questions and to raise alerts. It does not replicate them and creates no warehouse or extract, but it does retain the questions asked and the answers returned, and those answers contain figures drawn from the systems read.
We may collect, store and process, on your and/or your organisation’s behalf, any data (including
Personal Information) transmitted to Nuscio. This data is essential for the functionality of our
platform, delivering support, or ensuring your user experience is optimised.
Account Information
- Email Address: The primary means of communication between you and Nuscio. We send account verification emails, notifications, updates, and support information through this channel. Your email address also serves as a unique identifier for your account.
- Password: This confidential data ensures only authorised users can access a Nuscio account. We use robust encryption methods to protect your password.
- Profile Data: You may set up a profile that includes details such as your name, job title, company name, and contact number. This information enhances your experience and allows for personalised service.
- Billing and Payment Information: If applicable, we may collect payment details such as credit card numbers or other payment methods. This data is processed securely using third-party payment gateways.
Platform Usage Data
- Queries: The questions and prompts you submit through the Nuscio platform for analysis.
- Data Source Configurations: Settings and preferences that define how Nuscio connects to and analyses your organisation’s data.
- Organisation Settings: Configuration details related to your organisation’s use of the platform, including user roles and permissions.
Support and Communication Data
- Inquiries: When you reach out to our support team with questions or for assistance, you may provide data related to your issue, feedback, or suggestions.
- Interaction History: Previous interactions, ticket details, or any other historical data that helps us serve you better.
- Feedback: Opinions, testimonials, or reviews you provide about Nuscio.
Each piece of directly provided information has its specific use case and is handled with utmost care,
ensuring security and privacy at all stages. We aim to collect only the minimum data required to
facilitate your needs and enhance your experience with Nuscio.
Automatically Collected Information
We may collect information that your browser sends whenever you access our product, such as:
- Log Data: This may include information such as your IP address, browser version, pages visited, time spent on those pages, and other statistics.
- Device Information: Information about your device, including device type and operating system.
- Usage Information: Data about how and when you use Nuscio, such as access times and feature utilisation.
- Product Analytics: If you consent to analytics cookies, we use PostHog (hosted in the EU) to collect anonymised usage data such as page views, clicks, and feature interactions. This data helps us understand how our platform is used and improve the experience. PostHog is only activated after you provide explicit consent via our cookie preferences banner.
How Will Your Information Be Collected and Used?
We will only use your personal data for the purposes for which we collected it and as you would reasonably
expect your data to be processed, and only where there is a lawful basis for such processing:
Purpose / Activity
Type of Data
Lawful Basis
To create an account
Identity, Contact
Performance of a contract with you; Consent
To provide you with services and manage payments
Identity, Contact, Financial, Transaction
Performance of a contract with you; Necessary to comply with a legal obligation
To provide support and essential service notices
Identity, Contact, Technical
Performance of a contract
To manage our ongoing relationship with you
Identity, Contact, Profile, Marketing & Communications
Performance of a contract; Necessary to comply with a legal obligation
To administer and protect our business and site
Identity, Contact, Technical
Legitimate interests (administration, IT services, network security, fraud prevention); Legal obligation; Consent
To use data analytics to improve our services
Contact, Technical, Usage
Legitimate interests (to improve our platform and inform strategy); Consent (for accepted cookies)
You will only receive marketing communications from us if you have requested information from us, provided
your details and opted in to receiving marketing communications, have not opted out of receiving marketing,
or we have an appropriate lawful basis for processing your personal data for this purpose.
We will get your express opt-in consent before we share your personal data with any third party for
marketing purposes.
How to Change Your Preferences
We operate in line with the GDPR data protection guidelines. We respect your rights and will respond to
any request for access to personal information and requests to delete, rectify, or transfer data and to
stop processing. To exercise your rights, make a complaint, or change your preferences at any time, please
contact us at
Opting Out at a Later Date
You have the right to amend or withdraw your consent at any time, including opting out of marketing
communications or the processing of financial data. You can also object to the processing of your data
and request its deletion. We respect all user rights as defined in the GDPR. If you have any questions,
comments, or wish to file a complaint, please contact us at
How We Store and Process Your Data
Your data will be collected, stored and processed securely. In the case where we transfer your data
internationally, we will ensure we take appropriate precautions to protect this data. Your data will be
stored only for as long as necessary to fulfil its purposes unless otherwise required by law or to meet
legal and customer contractual obligations.
We will only use your personal data for the purposes for which it was collected unless we reasonably
believe that another use is necessary and compatible with the original purpose. If we need to use your
personal data for an unrelated purpose, we will notify you and explain the legal basis for doing so.
In certain circumstances, we may be legally required to disclose your personal information without your
knowledge. These circumstances include legal obligations, ongoing or prospective legal proceedings, or to
establish, exercise, or defend our legal rights.
Data Sovereignty
Nuscio provides data sovereignty controls. Your organisation’s data is completely isolated from
other organisations. You choose where your data is stored, and we implement and enforce it.
Our Obligations and Your Rights
As the Data Controller, we are legally responsible for the handling of the information you provide to us.
We are committed to complying with the GDPR in all aspects of how we use and share your personal data.
Under data protection laws, you have the following rights in relation to your personal data:
- Request access to your personal data
- Request correction of your personal data
- Request erasure of your personal data
- Object to processing of your personal data
- Request restriction of processing your personal data
- Request transfer of your personal data
- Right to withdraw consent
You will not have to pay a fee to access your personal data or to exercise any of these rights. However,
we may charge a reasonable fee if your request is clearly unfounded, repetitive, or excessive.
We may need to request specific information from you to help us confirm your identity and ensure your
right to access your personal data. This is a security measure to ensure that personal data is not
disclosed to any person who has no right to receive it.
We aim to respond to all legitimate requests within one month. Occasionally it may take us longer if your
request is particularly complex, in which case we will notify you and keep you updated.
Third Parties
We may share your personal data with selected third parties in order to meet our obligations to you and
for the purposes described in this document:
- Third-party service providers who facilitate our service or assist us in analysing how our service is used, such as PostHog for product analytics (only when you consent to analytics cookies)
- Professional advisers including lawyers, auditors and insurers who provide consultancy, legal, and accounting services
- Infrastructure and hosting providers
- Government organisations, regulators, and other legal authorities who require reporting of processing activities in certain circumstances
- Third parties to whom we may transfer or merge parts of our business or assets
We require all third parties to whom we transfer your data to respect the security of your personal data
and to treat it in accordance with the law. We only allow such third parties to process your personal data
for specified purposes and in accordance with our instructions.
Security
We have implemented appropriate security measures to protect your personal data from accidental loss,
unauthorised access, use, alteration, or disclosure. Access to your data is restricted to employees,
agents, contractors, and third parties who have a legitimate business need to know. They are authorised
to process your data only under our instructions and are bound by confidentiality obligations.
In compliance with GDPR requirements, we will report any data breaches or potential breaches to the
relevant authorities within 24 hours of becoming aware of them, and to affected individuals within 72
hours.
Our website may contain links to third-party websites, plug-ins, and applications. Interacting with
these links may enable third parties to collect or share your data. We have no control over these
third-party websites and are not responsible for their privacy practices. We encourage you to review the
privacy policy of each website you visit after leaving our site.
Children
Our site and services are not intended for minors and we do not intentionally collect Personal Information
from individuals under 18 years old, in accordance with the General Data Protection Regulation (GDPR).
If we learn we have collected or received personal information from a minor under 18, we will delete that
information. If you believe we might have any information from or about a minor under 18, please contact
us at
Cookies
A cookie is a small file that asks permission to be placed on your computer’s hard drive. Once you
agree, the file is added, and the cookie helps analyse web traffic or lets you know when you visit a
particular site. Cookies allow web applications to respond to you as an individual by gathering and
remembering information about your preferences.
Overall, cookies help us provide you with a better website by enabling us to monitor which pages you find
useful and which you do not. A cookie in no way gives us access to your computer or any information about
you, other than the data you choose to share with us.
We use the following categories of cookies:
- Essential cookies: Required for the site to function correctly. These are always active.
- Analytics cookies: Used by PostHog to collect anonymised usage data such as page views and feature interactions. These are only set if you explicitly consent via our cookie preferences banner.
You can choose to accept or decline non-essential cookies. Most web browsers automatically accept cookies,
but you can usually modify your browser settings to decline cookies if you prefer. This may prevent you
from taking full advantage of the website.
When you first visit our site, you are presented with a cookie preferences banner where you can accept
all cookies, reject non-essential cookies, or customise your choices. You can change your preferences at
any time by clearing your browser’s local storage for our site.
Your Privacy Choices
We do not sell personal information. We may disclose personal information to third parties as described
in this Privacy Policy in order to provide our services, operate our business, and meet legal obligations.
You may exercise your privacy rights, including opting out of such sharing, by contacting us at
We will not discriminate or retaliate against you for exercising your privacy rights. This includes
rights to access, delete, or opt out of the sale or sharing of your personal information.
Contact Us, Exercising Your Rights, and Complaints
If you have any questions or comments about this Privacy Policy, wish to exercise your information rights
in connection with the personal data you have shared with us, or wish to complain, please contact:
- Nuscio Data Protection Team
- Email:
We aim to process data protection requests within 30 days. Responses are usually free, but we reserve the
right to charge for excessive or unfounded requests. We fully comply with data protection legislation and
will assist in any investigation or request made by the appropriate authorities.
If you remain dissatisfied, then you have the right to apply directly to your local data protection authority.
export default PrivacyPage;