Privacy Policy
Nonagram is built so that we know as little about you as possible. Your photos and comments are end-to-end encrypted — we could not look at them even if we wanted to. This page explains the little we do process, why, and your rights over it.
1. Who is responsible
The data controller is Aigentbird. For anything in this policy, write to [email protected].
2. What we process, and why
- Email address — to create your account and send you one-time sign-in codes. Legal basis: performing our contract with you.
- Display name and username — shown to the people on your boards. Legal basis: contract.
- Profile picture — if you set one. Unlike board photos it is not end-to-end encrypted; it is stored as a regular image at an unguessable location and shown to your board co-members. Legal basis: contract.
- Board metadata — board names you can see, who is a member of which board, and when content was posted (but not what it shows). Legal basis: contract.
- Push notification tokens — so your devices get notified about new photos and comments. Legal basis: consent; revoke it any time in your device settings.
- Technical logs, including IP addresses — to keep the service secure and fight abuse. Legal basis: legitimate interest; kept briefly, then deleted.
3. What we cannot read
Your photos and comments are encrypted on your device with keys that only board members hold. Our servers and our storage provider only ever see ciphertext. We cannot read, scan, analyse, or hand over the content of your boards — not to advertisers, not to anyone.
4. Who helps us run Nonagram
Three service providers process data on our behalf, under data-processing agreements:
- Cloudflare — stores encrypted media and carries our network traffic.
- Resend — delivers sign-in code emails.
- Expo — delivers push notifications.
That's it. No ads, no analytics, no tracking SDKs, and we never sell data. We disclose data only if a valid legal order forces us to — and encrypted content stays unreadable even then. The one exception is child safety: evidence of child sexual abuse, and the account and connection data attached to it, is reported to the competent authorities as our Child Safety Standards explain.
5. How long we keep things
As long as you have an account. When you delete your account, your data is deleted immediately and permanently — including boards you admin, which are deleted for all their members. Technical logs expire on their own short schedule, except evidence preserved under our Child Safety Standards, which is kept as long as the authorities require.
6. Your rights
Under the GDPR you can ask for access to your data, correction, deletion, portability, restriction, or object to processing. Email [email protected] from your account address and we'll handle it. You can also complain to the French supervisory authority, the CNIL.
7. Children
Nonagram is not for children under 15, or under the digital-consent age where you live, without parental consent. If we learn we hold an account that shouldn't exist, we'll delete it.
8. Changes to this policy
If we make material changes, we'll tell you in the app or by email before they take effect. The date at the top always tells you when this page last changed.