Privacy Policy

Last Updated: August 19, 2026

NITROVENTUS - Unipessoal Lda ("Nitroventus," "we," or "us") provides the Nooko app and nookoapp.com and is responsible for the processing described in this policy. This policy explains what data we process, why we process it, the service providers involved, and the choices available to you.

The Short Version

For disclosures and rights specific to consumer health data, see our separate Consumer Health Data Privacy Policy.

Information Nooko Processes

App Account and Content

Nooko uses anonymous authentication, so an email address and password are not required to create the app account. The app and its service providers process an anonymous account identifier and, depending on the features you use:

Subscriptions, Notifications, Diagnostics, and Support

Product Analytics

In analytics-configured production builds, Nooko enables Product analytics by default after checking its local Settings records so an existing opt-out cannot be bypassed. The app does not read your App Store storefront, locale country, IP address, account data, or a country code to decide whether analytics is enabled. Settings → Your Data → Product analytics lets you turn it off at any time; that stops future capture. Core app features do not depend on the setting.

When enabled, the EU-hosted PostHog project counts only coarse, allowlisted events describing a fixed feature, screen, action, placement, result, app variant, release, or build. Events do not include pregnancy dates or weeks, symptoms, journal text, photos, measurements, appointment details, notification times, invite codes, names, email addresses, account or family identifiers, advertising identifiers, or persistent device or session identifiers.

Every permitted event uses the same shared non-user identifier and is sent in its own request. The analytics transport uses memory-only storage and does not identify people, build user profiles, record sessions, replay screens, autocapture interactions, capture console or performance data, or use feature flags, surveys, or advertising tracking. PostHog necessarily receives transient network metadata to accept an HTTPS request. Each event disables GeoIP enrichment. These controls are intended for aggregate event counts, not individual journeys, retention, or unique-user analysis.

Website and Newsletter

How We Use Information

Legal Bases in the EEA and UK

Where applicable law requires a legal basis, the basis depends on the processing: providing the service you request; your consent for optional permissions and communications; our legitimate interests in securing, supporting, maintaining, and improving Nooko through the privacy-limited Product analytics described above; and compliance with legal obligations.

When Information Is Disclosed

We do not disclose personal information for third-party advertising. Information is disclosed only as needed to operate Nooko, follow your choices, comply with law, or protect the service:

Storage and Security

No system can guarantee absolute security. Keep your device protected and contact us if you believe your Nooko data may have been accessed improperly.

Retention and International Processing

We retain information only for as long as needed for the purposes described above, the settings of the relevant service, dispute and security handling, or legal obligations. Synced app data remains associated with the anonymous account until it is deleted, subject to the non-atomic deletion sequence described below. The current PostHog plan reports a provider-set event-retention period of up to 84 months; we will use a shorter supported setting if one becomes available and periodically re-review the operational need. Diagnostics, support correspondence, and newsletter records follow the relevant provider settings and applicable retention requirements. Encrypted service backups and limited operational or security logs may retain copies for provider or legal retention periods. Apple and RevenueCat may separately retain purchase, subscription, and transaction records needed for accounting, fraud prevention, entitlement restoration, or legal compliance.

Some providers may process information outside your country. Where required, we use providers that offer contractual or other recognized safeguards for international transfers.

Your Choices and Rights

Depending on where you live, you may have rights to access, correct, delete, restrict, object to, or receive personal information in a portable format and to complain to your local data-protection authority. The in-app export has the scope described below; email us for a broader access request. Nooko provides these practical controls:

We do not sell personal information or share it for cross-context behavioral advertising. To exercise another applicable privacy right, email us with the subject “Privacy Request.” We may need enough information to verify and complete the request.

Children's Privacy

Nooko is designed for adults managing a pregnancy journey and is not directed to children. We do not knowingly create accounts for children under 16.

Changes to This Policy

We may update this policy as Nooko or legal requirements change. We will update the “Last Updated” date and provide additional notice when required.

Contact Us

Questions, support requests, or privacy-rights requests:

Email: contact@nookoapp.com
Controller: NITROVENTUS - Unipessoal Lda
App: Nooko (co.alexiron.nooko)

Formal privacy requests are handled within the deadline required by applicable law.