Privacy Policy

Last updated: February 26, 2026

1. Information We Collect

We collect the following types of information when you use Nexus:

  • Account Information: name, email address, company name, and password when you create an account.
  • Listing Information: facility details, gas specifications, contact information, location data, and contract terms submitted through listing forms.
  • Usage Data: pages visited, features used, browser type, IP address, and device information collected automatically.
  • Cookies: authentication tokens and session cookies necessary for the platform to function.

2. How We Use Your Information

  • To operate, maintain, and improve the Nexus marketplace.
  • To display your listing information to authenticated users seeking infrastructure.
  • To facilitate communication between buyers and providers.
  • To send transactional emails related to your account and listings.
  • To detect and prevent fraud, abuse, and security incidents.

3. Information Sharing

Contact information (name, email, phone) on listings is only visible to authenticated, signed-in users. We do not sell your personal information to third parties. We may share information with service providers who assist in operating the platform (e.g., hosting, email delivery) under strict confidentiality agreements.

4. Data Storage & Security

Your data is stored securely using Supabase with row-level security policies, encrypted in transit via TLS, and encrypted at rest. We implement security headers including Content-Security-Policy, HSTS, and X-Frame-Options to protect against common web vulnerabilities. Server-side validation is applied to all form submissions.

5. Your Rights

  • Access: You can request a copy of your personal data at any time.
  • Correction: You can update your account and listing information through your dashboard.
  • Deletion: You can request deletion of your account and associated data by contacting us.
  • Portability: You can request your data in a machine-readable format.

6. Cookies

Nexus uses essential cookies for authentication and session management. These cookies are required for the platform to function and cannot be disabled. We do not use advertising or tracking cookies.

7. California Residents (CCPA)

California residents have the right to know what personal information is collected, request deletion, and opt out of the sale of personal information. Nexus does not sell personal information. To exercise your rights, contact us at the email below.

8. European Users (GDPR)

If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have certain rights under the General Data Protection Regulation (GDPR):

  • Legal Basis: We process your data based on consent, contractual necessity, or legitimate business interests.
  • Right to Access: Request a copy of your personal data.
  • Right to Rectification: Request correction of inaccurate data.
  • Right to Erasure: Request deletion of your data ("right to be forgotten").
  • Right to Restrict Processing: Request limitation of how we use your data.
  • Right to Data Portability: Receive your data in a structured, machine-readable format.
  • Right to Object: Object to processing based on legitimate interests or direct marketing.
  • Right to Withdraw Consent: Withdraw consent at any time where processing is based on consent.

To exercise these rights, contact us at the email below. You also have the right to lodge a complaint with your local data protection authority.

9. Changes to This Policy

We may update this policy from time to time. Material changes will be communicated via email or a prominent notice on the platform. Continued use after changes constitutes acceptance.

10. Contact

For privacy-related inquiries, data requests, or to exercise your rights, contact us at hello@nexuspower.io.