← Back to NexCentus

Privacy Policy

Effective Date: July 2026

Welcome to NexCentus. Your privacy is important to us. This Privacy Policy explains what information we collect, why we collect it, how we use it, and the choices available to you. Our goal is simple: collect only the information required to provide the service and protect it with appropriate security measures.

1. Who We Are

NexCentus is a business platform designed to help organizations manage products, projects, agreements, approvals, teams, and operational processes.

Throughout this policy, "NexCentus", "we", "our", and "us" refer to the operator of the NexCentus platform. "Customer" refers to the organization using the platform. "User" refers to an individual account belonging to a Customer.

2. Information We Collect

We collect only the information necessary to provide the service.

Account Information

When an account is created, we may collect:

  • First name
  • Last name
  • Email address
  • Password (stored securely as a hash)
  • Company
  • Department
  • Role
  • Profile preferences

Security Information

To protect your account, we may store:

  • Login history
  • Session information
  • IP address
  • Browser and device information
  • Multi-factor authentication status
  • Password change history

Platform Data

As part of using NexCentus, Customers may create information such as:

  • Products
  • Projects
  • Agreements
  • Teams
  • Departments
  • Documents
  • Notes
  • Comments
  • Attachments
  • Business data entered by authorized users

This information belongs to the Customer.

3. Information We Do Not Collect

NexCentus is designed with privacy in mind. We do not:

  • Sell personal information.
  • Share your data with advertising networks.
  • Track your activity across unrelated websites.
  • Build advertising profiles.
  • Use your information for targeted advertising.

4. Why We Process Your Information

We use your information to:

  • authenticate users
  • provide the requested services
  • secure accounts
  • prevent fraud and unauthorized access
  • maintain audit trails
  • improve platform reliability
  • respond to support requests
  • comply with legal obligations

We never process your personal information for purposes unrelated to providing the service.

5. Legal Basis

Where the General Data Protection Regulation (GDPR) applies, we process personal data under one or more of the following legal bases:

  • Performance of a contract
  • Legitimate interests
  • Legal obligations
  • Consent (where required)

6. Customer Data Ownership

Data created within NexCentus belongs to the Customer. NexCentus does not claim ownership of Customer data. We process Customer data only for the purpose of providing the requested services.

7. Artificial Intelligence

Some features may use Artificial Intelligence (AI) to assist users. Examples include:

  • content generation
  • summaries
  • recommendations
  • document assistance
  • workflow assistance

When AI services are provided by third-party providers, only the information necessary to complete the requested task is transmitted. We do not use Customer data to train public AI models unless explicitly stated and agreed. Customers remain responsible for reviewing AI-generated content before relying on it.

8. Cookies

NexCentus uses only the cookies required to operate the platform. These may include:

  • authentication cookies
  • session cookies
  • security cookies
  • user preference cookies

Optional analytics cookies are only used where enabled and where required by applicable law. For more information, please refer to our Cookie Policy.

9. Security

Protecting your information is one of our highest priorities. We use appropriate technical and organizational measures, including:

  • encrypted connections (HTTPS/TLS)
  • secure password hashing
  • role-based access control
  • least-privilege access
  • audit logging
  • regular backups
  • authentication and authorization controls

No online service can guarantee absolute security, but we continuously work to improve our security practices.

10. Data Retention

We retain information only as long as necessary. Examples include:

DataRetention
User accountsWhile active
Audit logsAs required for operational or legal purposes
InvitationsUntil accepted, expired, or revoked
BackupsAccording to backup retention policies

When data is no longer required, it is securely deleted or anonymized where appropriate.

11. Third-Party Services

NexCentus may rely on trusted third-party providers for services such as:

  • email delivery
  • cloud hosting
  • authentication
  • AI services
  • monitoring
  • backups

These providers receive only the information necessary to perform their services.

12. International Data Transfers

Where information is transferred outside your country or the European Economic Area (EEA), we take appropriate safeguards to protect your data in accordance with applicable privacy laws.

13. Your Rights

Depending on your jurisdiction, you may have the right to:

  • access your personal information
  • correct inaccurate information
  • request deletion
  • restrict processing
  • object to certain processing
  • receive a copy of your personal information
  • withdraw consent where processing is based on consent

Requests should normally be submitted through your organization or by contacting us directly.

14. Children's Privacy

NexCentus is designed for business use. It is not intended for use by children under the age required by applicable law without appropriate authorization.

15. Changes to This Policy

We may update this Privacy Policy from time to time. When significant changes are made, we will notify users through the platform or by other appropriate means. The latest version will always be available within NexCentus.

16. Contact

If you have questions regarding this Privacy Policy or how your information is processed, please contact: privacy@nexcentus.com

Our Privacy Principles

Privacy is part of how NexCentus is designed—not something added later. Our principles are simple:

  • We collect only what we need.
  • Your organization's data belongs to your organization.
  • We never sell personal information.
  • Security is designed into the platform.
  • Transparency matters.
  • We continuously improve our privacy and security practices.

Last Updated: July 2026