Privacy
How NexusForge handles account, workspace, and subscription data, and how to request access, export, correction, or deletion.
Updated .
Who We Are
Legacy Nexus operates NexusForge (“we”, “us”). This notice covers the public portal and NexusForge accounts and workspaces, including free accounts, invitations, and paid subscriptions.
What We Collect
- Account Identity from the auth provider (for example email, subject id, verified status) when you sign in.
- Workspace Content you store in NexusForge (catalog records, imports, membership metadata, settings).
- Subscription Records such as your selected plan and billing interval, accepted offer terms, provider references, trial dates, payment status, amounts, and access history.
- Publication Records such as the policy version, eligible account role, reviewed public-field digest, registered source and permitted-use scope, command receipt, and withdrawal state for content you choose to make public.
- Operational Logs needed to run the service (request metadata, security events, abuse-protection counters).
- Support Messages you send via contact channels.
We do not sell personal data.
Browser Preferences
Required sign-in, security, and duplicate-submission protections are always used and are not optional. Remembered browser settings and usage measurement are optional and remain off unless the current browser has a valid, current preference record for the same account scope.
Withdrawing an optional choice stops its related browser storage or script admission; it does not sign you out or erase required security records. An unknown, stale, future-dated, or another-account preference is treated as optional purposes off.
How We Use Data
- Provide and secure your account and workspace.
- Authenticate sessions and prevent abuse.
- Start an authorized subscription, manage billing and tax, and apply the correct plan access.
- Verify the current policy, account eligibility, and source-use evidence before an external publication, and honor later withdrawal or takedown state.
- Improve reliability of imports, catalog, and membership flows.
- Communicate about your account, subscription, payment issues, and service changes.
Payment & Tax Information
Collector does not require payment information. If you start a paid trial, payment and billing details are submitted through the payment provider's checkout. A payment method is required before the trial starts because paid billing begins automatically after seven days unless you cancel first.
When Stripe is offered for an eligible subscription, it handles payment details and service-location information used to calculate applicable tax through Stripe Automatic Tax. We use provider references and subscription and payment records to reconcile billing and grant the correct workspace access. Full card numbers and card security codes are not stored in the NexusForge tenant database. Stripe's handling of data is described in its Privacy Policy.
PayPal subscriptions are not enabled for the initial launch. Available providers are identified before you authorize a subscription. Read the subscription terms for trial, renewal, cancellation, and payment policies.
Publication, Source & Assent Records
Catalog content stays private unless an eligible workspace owner or administrator explicitly publishes a selected copy. Before that command, NexusForge shows the public fields and current policy responsibilities. The command receipt binds the reviewed-field digest, policy version, eligible role cohort, registered source, and permitted-use scope. This record proves the software command that was made; it does not prove legal ownership or replace provider terms.
Withdrawing a publication stops later public reads without requiring a new assent. We may retain the minimum receipt, source, security, dispute, and takedown history needed to enforce the withdrawal and demonstrate what the service did. Private source records are not made public merely because a public derivative or selected field set was authorized.
Processors & Sharing
We use infrastructure and identity processors necessary to run the product (hosting, database, and the configured auth provider). Marketplace connections you authorize may exchange data with that marketplace under its terms. We do not share workspace content for advertising.
Access, Export & Deletion
Portability matters: a workspace owner or administrator can prepare a secure, time-limited workspace export from the authenticated product when the protected lifecycle service is available. The export is not a public link, and the product shows an unavailable state instead of falling back to an unprotected download. You can also request access, correction, export help, or deletion information through Privacy Contact.
Cancelling or changing a paid plan, a failed renewal, or a billing pause does not remove read or export access or delete your stored content. Plan limits may restrict additional writes; existing over-limit content and original-resolution images are retained. A subscription cancellation is not a data-deletion request.
Retention
We retain account and workspace data while you use the service, including when you return to Collector after a paid subscription. Deletion requests are handled separately from subscription cancellation and are retained in a non-destructive review state until backup, security, billing, dispute, and legal-retention duties are accounted for. We do not promise immediate erasure or a single retention period for every kind of record; contact us for information about a particular request.
Privacy Contact
Questions about this notice: Privacy Contact. Related: Security · Terms.