Skip to content

Legal

Privacy Policy

Nuscio queries your systems in place rather than replicating them, so there is no copy of your source records. This policy covers what we do hold: information about you as a person using the service, and the operational records the Trust Center lists in full.

Last updated 26 July 2026

return (

Privacy Policy

Last updated: March 2026

Welcome to Nuscio!

This Privacy Policy (“Policy”) explains how your information is collected, used and disclosed

while using our domains, applications and services located or accessed at

https://nuscio.com

which is owned and operated by Nuscio (“we” / “us” / “our”).

This Policy applies where we are acting as a Data Controller, where we determine the purposes and means

of the processing of that personal data, for example with respect to the personal data of our website

visitors, service users, and clients.

Who Will Use My Data?

Nuscio.

What For?

We will store and process your data in order to allow us to provide and improve our services. We will

use your data when you communicate with us by sending administrative notifications, product updates, and

other related communications. We also use your data to assist you with any questions, issues, or feedback

related to Nuscio.

We use your personal data to detect, prevent, or address fraud, security, or technical issues and as

required by law, legal process, or in the interest of public safety or investigation.

If you contact us, we may also send you information that we think you will be interested in, including

information about related services. We will also send any relevant details to authorities and any other

organisation that requires them by law.

What Will Happen If I Contact You?

If you contact us, we will use your data to send you the information that you have requested, updates,

and other information that we think you will be interested in. This may include information about our

services and related offerings.

What Data Will Be Stored?

We will store your personal details in order to provide our services and run our company. This includes

your contact details, company information, account information, information provided through our support

channels, and financial information.

What Data Will Be Shared?

We will not share your data with any third parties other than as described here, to fulfil our obligations

to you, operate and develop our company, and to protect our interests. We will only share data that is

relevant to providing the services that we offer. We may share your information with regulators or legal

bodies that request it.

How Long?

Your data will be stored only for as long as necessary to fulfil our purposes unless otherwise required

by law or to meet legal and customer contractual obligations. For more information, please contact us

[email protected].

Who Can Access My Data?

We will never sell, share or otherwise distribute your data to any other third party other than as

described here. Access to your data is carefully controlled.

How Is My Data Kept Secure?

We will store your data on secure servers. We use industry-standard security protocols and technology

to secure your data.

About This Privacy Policy

This policy sets out how we will collect, store, and process the information you provide to us, the

information we collect as a result of our interaction, the information we collect about you from other

sources, or the information we derive by using the information we hold.

With this policy, we work towards meeting the following goals:

  • Ensuring the protection of the individual’s privacy rights and personal information
  • Promoting transparency and accountability in the processing of personal information
  • Minimising the risk of data breaches and unauthorised access to personal information
  • Compliance with applicable laws, regulations, and guidelines
  • Establishing a framework for effective management of personal information

Principles of Processing Personal Information

The General Data Protection Regulation (GDPR) describes how organisations must collect, handle, process,

and store personal information. These rules apply regardless of whether data is stored electronically, on

paper or other materials. To comply with the law, personal information must be collected and used fairly,

stored safely and not disclosed unlawfully. GDPR is underpinned by eight important principles. These say

that personal data must:

  • Be processed fairly and lawfully
  • Be obtained only for specific, lawful purposes
  • Be adequate, relevant, and not excessive
  • Be accurate and kept up to date
  • Not be held for any longer than is necessary
  • Be processed in accordance with the rights of the data subjects
  • Be protected in appropriate ways
  • Not be transferred internationally, unless the country or territory also ensures an adequate level of protection

We take these responsibilities seriously; this document describes our approach to data protection.

Who We Are and How to Contact Us

Nuscio is an operating partner for businesses that run on several separate systems. It connects to the systems an organisation already uses, reads across them where they sit, answers questions in plain language, and alerts the right person when something changes. It queries those systems in place rather than replicating them, so no warehouse or extract of an organisation’s records is created. It does retain operational records, including the questions asked and the answers returned, which contain figures drawn from those systems.

For any data protection enquiries, please contact:

  • Data Protection Team: Nuscio Data Protection Team
  • Email:

[email protected]

To Whom Does This Privacy Policy Apply?

We process your data to offer you our services and to run our company. This applies to all data we hold

relating to identifiable individuals, even if that information technically falls outside of the GDPR. This

policy relates to the following identified categories of data subjects:

  • Employees
  • Contractors
  • Clients
  • Third parties

What This Policy Applies To

This section describes the purposes for processing your data and applies to the information about yourself

that you choose to provide us with or that you allow us to collect. This includes:

  • The information you provide when you contact us
  • When you contact us to discuss using our services
  • Information collected when you create an account
  • Information collected when you use Nuscio
  • Queries and data you submit through Nuscio
  • Information that we collect while offering support
  • Information we collect about how you use the website
  • Information relating to services we offer to you and other transactions including financial and other personal information required to complete these transactions
  • Information that is given and stored as part of our ongoing relationship
  • Information we collect as a result of our interaction

We do not routinely collect or process sensitive data about you. However, where this is the case we will

ensure we ask for your consent where applicable and take appropriate precautions to protect your data.

What Information Do We Collect

Directly Provided Information

Our users connect Nuscio to the systems their organisation already runs. Nuscio reads those systems in place to answer questions and to raise alerts. It does not replicate them and creates no warehouse or extract, but it does retain the questions asked and the answers returned, and those answers contain figures drawn from the systems read.

We may collect, store and process, on your and/or your organisation’s behalf, any data (including

Personal Information) transmitted to Nuscio. This data is essential for the functionality of our

platform, delivering support, or ensuring your user experience is optimised.

Account Information

  • Email Address: The primary means of communication between you and Nuscio. We send account verification emails, notifications, updates, and support information through this channel. Your email address also serves as a unique identifier for your account.
  • Password: This confidential data ensures only authorised users can access a Nuscio account. We use robust encryption methods to protect your password.
  • Profile Data: You may set up a profile that includes details such as your name, job title, company name, and contact number. This information enhances your experience and allows for personalised service.
  • Billing and Payment Information: If applicable, we may collect payment details such as credit card numbers or other payment methods. This data is processed securely using third-party payment gateways.

Platform Usage Data

  • Queries: The questions and prompts you submit through the Nuscio platform for analysis.
  • Data Source Configurations: Settings and preferences that define how Nuscio connects to and analyses your organisation’s data.
  • Organisation Settings: Configuration details related to your organisation’s use of the platform, including user roles and permissions.

Support and Communication Data

  • Inquiries: When you reach out to our support team with questions or for assistance, you may provide data related to your issue, feedback, or suggestions.
  • Interaction History: Previous interactions, ticket details, or any other historical data that helps us serve you better.
  • Feedback: Opinions, testimonials, or reviews you provide about Nuscio.

Each piece of directly provided information has its specific use case and is handled with utmost care,

ensuring security and privacy at all stages. We aim to collect only the minimum data required to

facilitate your needs and enhance your experience with Nuscio.

Automatically Collected Information

We may collect information that your browser sends whenever you access our product, such as:

  • Log Data: This may include information such as your IP address, browser version, pages visited, time spent on those pages, and other statistics.
  • Device Information: Information about your device, including device type and operating system.
  • Usage Information: Data about how and when you use Nuscio, such as access times and feature utilisation.
  • Product Analytics: If you consent to analytics cookies, we use PostHog (hosted in the EU) to collect anonymised usage data such as page views, clicks, and feature interactions. This data helps us understand how our platform is used and improve the experience. PostHog is only activated after you provide explicit consent via our cookie preferences banner.

How Will Your Information Be Collected and Used?

We will only use your personal data for the purposes for which we collected it and as you would reasonably

expect your data to be processed, and only where there is a lawful basis for such processing:

Purpose / Activity

Type of Data

Lawful Basis

To create an account

Identity, Contact

Performance of a contract with you; Consent

To provide you with services and manage payments

Identity, Contact, Financial, Transaction

Performance of a contract with you; Necessary to comply with a legal obligation

To provide support and essential service notices

Identity, Contact, Technical

Performance of a contract

To manage our ongoing relationship with you

Identity, Contact, Profile, Marketing & Communications

Performance of a contract; Necessary to comply with a legal obligation

To administer and protect our business and site

Identity, Contact, Technical

Legitimate interests (administration, IT services, network security, fraud prevention); Legal obligation; Consent

To use data analytics to improve our services

Contact, Technical, Usage

Legitimate interests (to improve our platform and inform strategy); Consent (for accepted cookies)

You will only receive marketing communications from us if you have requested information from us, provided

your details and opted in to receiving marketing communications, have not opted out of receiving marketing,

or we have an appropriate lawful basis for processing your personal data for this purpose.

We will get your express opt-in consent before we share your personal data with any third party for

marketing purposes.

How to Change Your Preferences

We operate in line with the GDPR data protection guidelines. We respect your rights and will respond to

any request for access to personal information and requests to delete, rectify, or transfer data and to

stop processing. To exercise your rights, make a complaint, or change your preferences at any time, please

contact us at

[email protected].

Opting Out at a Later Date

You have the right to amend or withdraw your consent at any time, including opting out of marketing

communications or the processing of financial data. You can also object to the processing of your data

and request its deletion. We respect all user rights as defined in the GDPR. If you have any questions,

comments, or wish to file a complaint, please contact us at

[email protected].

How We Store and Process Your Data

Your data will be collected, stored and processed securely. In the case where we transfer your data

internationally, we will ensure we take appropriate precautions to protect this data. Your data will be

stored only for as long as necessary to fulfil its purposes unless otherwise required by law or to meet

legal and customer contractual obligations.

We will only use your personal data for the purposes for which it was collected unless we reasonably

believe that another use is necessary and compatible with the original purpose. If we need to use your

personal data for an unrelated purpose, we will notify you and explain the legal basis for doing so.

In certain circumstances, we may be legally required to disclose your personal information without your

knowledge. These circumstances include legal obligations, ongoing or prospective legal proceedings, or to

establish, exercise, or defend our legal rights.

Data Sovereignty

Nuscio provides data sovereignty controls. Your organisation’s data is completely isolated from

other organisations. You choose where your data is stored, and we implement and enforce it.

Our Obligations and Your Rights

As the Data Controller, we are legally responsible for the handling of the information you provide to us.

We are committed to complying with the GDPR in all aspects of how we use and share your personal data.

Under data protection laws, you have the following rights in relation to your personal data:

  • Request access to your personal data
  • Request correction of your personal data
  • Request erasure of your personal data
  • Object to processing of your personal data
  • Request restriction of processing your personal data
  • Request transfer of your personal data
  • Right to withdraw consent

You will not have to pay a fee to access your personal data or to exercise any of these rights. However,

we may charge a reasonable fee if your request is clearly unfounded, repetitive, or excessive.

We may need to request specific information from you to help us confirm your identity and ensure your

right to access your personal data. This is a security measure to ensure that personal data is not

disclosed to any person who has no right to receive it.

We aim to respond to all legitimate requests within one month. Occasionally it may take us longer if your

request is particularly complex, in which case we will notify you and keep you updated.

Third Parties

We may share your personal data with selected third parties in order to meet our obligations to you and

for the purposes described in this document:

  • Third-party service providers who facilitate our service or assist us in analysing how our service is used, such as PostHog for product analytics (only when you consent to analytics cookies)
  • Professional advisers including lawyers, auditors and insurers who provide consultancy, legal, and accounting services
  • Infrastructure and hosting providers
  • Government organisations, regulators, and other legal authorities who require reporting of processing activities in certain circumstances
  • Third parties to whom we may transfer or merge parts of our business or assets

We require all third parties to whom we transfer your data to respect the security of your personal data

and to treat it in accordance with the law. We only allow such third parties to process your personal data

for specified purposes and in accordance with our instructions.

Security

We have implemented appropriate security measures to protect your personal data from accidental loss,

unauthorised access, use, alteration, or disclosure. Access to your data is restricted to employees,

agents, contractors, and third parties who have a legitimate business need to know. They are authorised

to process your data only under our instructions and are bound by confidentiality obligations.

In compliance with GDPR requirements, we will report any data breaches or potential breaches to the

relevant authorities within 24 hours of becoming aware of them, and to affected individuals within 72

hours.

Our website may contain links to third-party websites, plug-ins, and applications. Interacting with

these links may enable third parties to collect or share your data. We have no control over these

third-party websites and are not responsible for their privacy practices. We encourage you to review the

privacy policy of each website you visit after leaving our site.

Children

Our site and services are not intended for minors and we do not intentionally collect Personal Information

from individuals under 18 years old, in accordance with the General Data Protection Regulation (GDPR).

If we learn we have collected or received personal information from a minor under 18, we will delete that

information. If you believe we might have any information from or about a minor under 18, please contact

us at

[email protected].

Cookies

A cookie is a small file that asks permission to be placed on your computer’s hard drive. Once you

agree, the file is added, and the cookie helps analyse web traffic or lets you know when you visit a

particular site. Cookies allow web applications to respond to you as an individual by gathering and

remembering information about your preferences.

Overall, cookies help us provide you with a better website by enabling us to monitor which pages you find

useful and which you do not. A cookie in no way gives us access to your computer or any information about

you, other than the data you choose to share with us.

We use the following categories of cookies:

  • Essential cookies: Required for the site to function correctly. These are always active.
  • Analytics cookies: Used by PostHog to collect anonymised usage data such as page views and feature interactions. These are only set if you explicitly consent via our cookie preferences banner.

You can choose to accept or decline non-essential cookies. Most web browsers automatically accept cookies,

but you can usually modify your browser settings to decline cookies if you prefer. This may prevent you

from taking full advantage of the website.

When you first visit our site, you are presented with a cookie preferences banner where you can accept

all cookies, reject non-essential cookies, or customise your choices. You can change your preferences at

any time by clearing your browser’s local storage for our site.

Your Privacy Choices

We do not sell personal information. We may disclose personal information to third parties as described

in this Privacy Policy in order to provide our services, operate our business, and meet legal obligations.

You may exercise your privacy rights, including opting out of such sharing, by contacting us at

[email protected].

We will not discriminate or retaliate against you for exercising your privacy rights. This includes

rights to access, delete, or opt out of the sale or sharing of your personal information.

Contact Us, Exercising Your Rights, and Complaints

If you have any questions or comments about this Privacy Policy, wish to exercise your information rights

in connection with the personal data you have shared with us, or wish to complain, please contact:

  • Nuscio Data Protection Team
  • Email:

[email protected]

We aim to process data protection requests within 30 days. Responses are usually free, but we reserve the

right to charge for excessive or unfounded requests. We fully comply with data protection legislation and

will assist in any investigation or request made by the appropriate authorities.

If you remain dissatisfied, then you have the right to apply directly to your local data protection authority.

export default PrivacyPage;