Privacy Policy

Last updated: February 27, 2026

1. Information We Collect

We collect information you provide directly: account details (name, email, password), organization information, SMTP/IMAP credentials for mailbox integration, lead data you upload (names, emails, company info), and campaign content you create.

We automatically collect: usage data, device information, IP addresses, and email engagement metrics (opens, clicks, replies, bounces).

2. How We Use Your Information

We use your information to provide and maintain the Service, send emails on your behalf through configured mailboxes, track email deliverability and engagement, enforce sending limits and domain reputation protections, communicate with you about the Service, and comply with legal obligations.

3. Data Storage & Security

Your data is stored on Neon (PostgreSQL) with encryption at rest and in transit. SMTP credentials are encrypted before storage. We use industry-standard security measures to protect your data. No system is 100% secure, and we cannot guarantee absolute security.

4. Data Sharing

We do not sell your personal data. We may share data with infrastructure providers (hosting, database, email delivery) as necessary to operate the Service, and when required by law or to protect our rights.

5. Lead & Recipient Data

You are the data controller for any lead or recipient data you upload to the Service. You are responsible for ensuring you have the appropriate legal basis to contact these individuals. Nimu processes this data on your behalf as a data processor.

6. Cookies & Tracking

We use essential cookies for authentication and session management. We use tracking pixels in sent emails (when open tracking is enabled by you) and link tracking for click analytics (when click tracking is enabled by you). You control whether tracking is enabled per campaign.

7. Your Rights

You may access, correct, or delete your account data at any time through your account settings. You may export your data. You may request deletion of your account and all associated data. Email recipients may unsubscribe from your campaigns at any time via the unsubscribe link included in every email.

8. Data Retention

We retain your data for as long as your account is active. Upon account deletion, we remove your data within 30 days, except where retention is required by law. Aggregate, anonymized analytics may be retained indefinitely.

9. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or through the Service.

10. Contact

For privacy-related questions, contact us at privacy@nimu.app.