Privacy policy

Last updated: December 19, 2024

TL;DR

  • You own and control your data.
  • We never sell your personal information to third parties.
  • We never use your data for advertising.
  • We will never access your notes in the cloud unless explicit permission is given for troubleshooting purposes.

Data storage and security

  • Local Data: If you’re using Nover as a local-only app, all your notes stay on your device. We don’t see or store any of your data.
  • Nover Pro: If you subscribe to Pro, your data is stored on our servers to enable cloud features like syncing and sharing. This data is:
    • Encrypted at Rest: We use AES-256 to keep your data secure.
    • Encrypted in Transit: We use TLS for secure communication.

We take security seriously, but no method of data transmission or storage is 100% secure. Please keep this in mind when using our service.

Account creation and authentication

When you subscribe to Nover Pro, you’ll need to create an account using:

  • Passwordless authentication (via email)
  • Or your Google account.

Your login credentials are managed securely, and we do not store passwords.

Payments

Payments for Pro subscriptions are processed by Paddle. We don’t store any payment details on our servers.

Third-party services

We rely on trusted third-party services to make Nover work smoothly:

  • Sentry for error tracking
  • PostHog for analytics (privacy-friendly and anonymous)
  • Supabase for authentication and database
  • Cloudflare for hosting and file storage
  • Google API Services for authentication (if you sign in with Google)

We only use cookies where necessary, such as for authentication. No tracking or ad-related cookies.

Data privacy

  • We do not sell your data to third parties.
  • Your data is yours. Even with Pro, our servers simply store and sync your notes to provide the features you’ve subscribed to.

GDPR compliance

We’re GDPR-friendly and committed to respecting your rights:

  • You can request to delete your account and all associated data anytime.
  • We keep our use of personal data to a minimum, strictly for app functionality.

Transparency on encryption

While your data is encrypted on our servers and during transfer, Nover does not use end-to-end encryption (E2EE). This means:

  • In theory, we could access your notes on our servers.
  • However, we prioritize your trust and will never access or read your notes without your explicit consent.

We understand this is a matter of trust, and we encourage you to use Nover locally if you have concerns about this.

Changes to this document

We may update this document as needed at any time to comply with relevant regulations and reflect any new practices without notice. If we make significant changes, we will refresh the date at the top of this page.

Contact us

If you have any questions, concerns, or feedback, feel free to send us an email at [email protected]