Privacy and GDPR
Privacy Policy
NovaCheck explains what data is collected, why it is processed, and what you can do with it. This page is written to be readable first, then auditable.
1. Information We Collect
1.1 Account Information
When you create an account, we collect your email address and authentication credentials.
1.2 Usage Data
We collect information about your fact-checking queries, including analyzed text, media URLs, results provided, and product interactions needed to operate the service.
1.3 Technical Data
We automatically collect IP addresses, browser type, device information, security signals, and usage statistics required for abuse prevention and service reliability.
2. How We Use Your Information
- Provide and improve NovaCheck verification, reporting, and account services.
- Personalize product behavior, quota handling, and service messaging.
- Communicate with you about your account, billing, privacy, and security events.
- Comply with legal obligations and maintain fraud and abuse protections.
- Operate rate limiting, monitoring, debugging, and incident response workflows.
3. Data Sharing and Disclosure
We do not sell your personal data. We may share data with the following categories of processors or recipients:
- Service providers who help us operate the platform, such as Supabase and Stripe.
- Search and retrieval providers used to perform verification workflows, such as Brave or Google PSE.
- Competent authorities or courts when disclosure is legally required.
4. Your Rights (GDPR)
- Right to Access: Request a copy of your personal data or download your account export from settings.
- Right to Rectification: Correct inaccurate personal data.
- Right to Erasure: Initiate a deletion request from settings or by contacting privacy@novacheck.app.
- Right to Restrict Processing: Limit how we use your data.
- Right to Data Portability: Receive your data in a machine-readable format.
- Right to Object: Object to processing of your personal data.
- Right to Withdraw Consent: Withdraw consent at any time when consent is the legal basis.
5. Data Retention
We retain personal data for as long as your account is active or as needed to provide the service, meet compliance obligations, resolve disputes, or enforce our agreements. You may initiate an export or deletion request from the account settings workspace, or contact privacy@novacheck.app if you need manual assistance.
6. Security
We implement industry-standard security measures including encryption, secure authentication, monitoring, signed billing webhooks, access controls, and regular hardening work. No transmission method over the internet is completely secure, so residual risk always remains.
7. Cookies
We use cookies to improve the experience and keep the site operational. You can manage optional cookie preferences through the consent banner. Essential cookies are required for the site to function.
8. International Data Transfers
Your data may be transferred and processed in countries outside the EU. We rely on appropriate safeguards, including standard contractual clauses and data processing agreements with our service providers.
9. Children's Privacy
NovaCheck is not intended for children under 16. We do not knowingly collect personal data from children. If you believe we have collected data from a child, contact us immediately.
10. Contact Us
To exercise your rights or ask questions about this privacy policy:
Email: privacy@novacheck.app
Data Protection Officer: dpo@novacheck.app