πŸ“œ Privacy Policy

Effective Date: 24/02/2025

Last Updated: 11/03/2025

Welcome to Nanu, operated by Investigate The Unknown Ltd ("we", "us", or "our"). We respect your privacy and are committed to protecting your personal data.

πŸ”Ή This Privacy Policy Covers:

βœ” What personal data we collect

βœ” How we use, store, and protect your data

βœ” Your rights under UK GDPR

βœ” How to contact us regarding privacy matters

If you have any questions, contact us at info@nanu-app.com.

1️⃣ Who We Are & How to Contact Us

Investigate The Unknown Ltd is a UK-based technology startup developing Nanu, a platform for exploring and documenting unexplained phenomena.

πŸ“§ Contact Email: info@nanu-app.com

We are the Data Controller, meaning we determine how and why your data is processed. If you believe your data protection rights have been violated, you can contact the Information Commissioner's Office (ICO): www.ico.org.uk.

2️⃣ What Personal Data We Collect & Why

Under UK GDPR, "Personal Data" refers to any information that can identify you directly or indirectly.

πŸ”Ή Data We May Collect:

Type of DataExamplesWhy We Collect ItLegal Basis
Identity DataName, usernameTo manage user accountsContractual Obligation
Contact DataEmail, phone numberTo communicate with youLegitimate Interest
Technical DataIP address, browser typeTo improve website performanceLegitimate Interest
Usage DataWebsite interactionsTo analyze and enhance user experienceLegitimate Interest

4️⃣ How We Use Your Data

We only use your personal data for the following purposes:

βœ… Providing & improving services (e.g., managing user accounts, technical support).

βœ… Sending updates & responding to inquiries (only if consented).

βœ… Ensuring security & fraud prevention (protecting our users and platform).

βœ… Complying with legal obligations (law enforcement requests, dispute resolution).

🚨 We do NOT sell, rent, or share your personal data for third-party advertising.

5️⃣ Your Rights Under UK GDPR

As a data subject, you have the following rights under UK GDPR:

πŸ”Ή Right to Be Informed – You have the right to know how we collect and use your data.

πŸ”Ή Right to Access – Request a copy of your personal data.

πŸ”Ή Right to Rectification – Correct inaccurate or incomplete data.

πŸ”Ή Right to Erasure ('Right to Be Forgotten') – Request data deletion under certain conditions.

πŸ”Ή Right to Restrict Processing – Limit how your data is used.

πŸ”Ή Right to Object – You can object to the processing of personal data under legitimate interest (this does NOT mean only if we deem it legitimate).

πŸ”Ή Right to Data Portability – Receive your data in a structured, commonly used format.

πŸ”Ή Right to Withdraw Consent – Opt out of marketing communications or other consent-based processing at any time.

πŸ“© To exercise any of these rights, contact us at info@nanu-app.com.

6️⃣ How We Protect Your Data

πŸ”’ Encrypted storage & transmission of personal data.

πŸ”‘ Access controls ensuring only authorized personnel handle data.

πŸ›‘ Regular security audits to maintain compliance.

πŸ“Œ No internet transmission is 100% secure. If you suspect a security issue, contact us immediately.

7️⃣ Data Sharing & Third-Party Services

We do not sell your personal data. However, we may share data with:

βœ”οΈ Legal Authorities – If required by law.

βœ”οΈ Service Providers – Trusted third parties (e.g., cloud hosting, analytics).

βœ”οΈ Business Transfers – In case of mergers, acquisitions, or asset sales.

πŸ”Ή Definition of "Service Provider":

"Service Provider" refers to any third-party organization or individual contracted to process personal data on behalf of Investigate The Unknown Ltd in order to provide specific services, such as data hosting, analytics, customer support, or security.

Service Providers are strictly bound by data protection agreements and cannot sell, share, or use data for any purpose other than what is explicitly required for their function.

Service Providers must implement appropriate security measures to protect user data and ensure compliance with UK GDPR & international data protection standards.

A full list of third-party service providers will be made available upon request.

πŸ“œ All third-party providers comply with data protection agreements.

8️⃣ Cookies & Tracking Technologies

We use cookies and tracking tools to:

βœ” Improve website performance

βœ” Understand user behavior

βœ” Deliver relevant content

πŸ”Ή Third-Party Tracking Transparency:

We use Google Analytics to analyze website traffic and improve our services. Google Analytics processes anonymized data about your browsing behavior but does not identify you personally.

We use Cloudflare to enhance website security and performance. While Cloudflare processes some network traffic, it does not collect or store personal data for advertising or analytics purposes.

πŸ“Œ You can control or disable cookies in your browser settings.

πŸ“Œ You can opt out of all non-essential tracking through our Cookie Preferences settings.

πŸ“œ For more details, see our Cookie Policy.

9️⃣ International Data Transfers

Data may be stored and processed outside the UK, including in the EU and US, only when necessary for providing our services. We ensure that international transfers comply with the highest data protection standards, including:

βœ”οΈ The UK Addendum to the Standard Contractual Clauses (SCCs) for transfers outside the UK.

βœ”οΈ Data processing agreements (DPAs) ensuring GDPR-level protection from non-UK providers.

βœ”οΈ Regular audits of third-party compliance with data security measures.

βœ”οΈ Minimization principles, ensuring only necessary data is transferred internationally.

🚨 Note: The SCC alone is NOT sufficient under UK GDPR post-Brexitβ€”the UK Addendum is required.

πŸ”Ÿ How Long We Retain Your Data

We retain your personal data only as long as necessary for legal and operational purposes. If no longer needed, we securely delete or anonymize it.

1️⃣1️⃣ Updates to This Privacy Policy

We may update this Privacy Policy periodically. If major changes occur, we will notify users via email or our website.

A "major change" includes, but is not limited to:

β€’ The introduction of new third-party data processors.

β€’ Changes in how personal data is collected, stored, or processed.

β€’ Updates to user rights or consent mechanisms due to legal or regulatory changes.

β€’ The addition of new tracking or analytics technologies.

Users will always have the right to review and object to changes affecting their data rights.

πŸ“… Last Updated: 11/03/2025

For questions, contact us at info@nanu-app.com.

1️⃣2️⃣ Contact Us

πŸ“§ Email: info@nanu-app.com

Our Commitment to Your Privacy

At Nanu, we believe that privacy is a fundamental right. Our data protection policies are built to exceed compliance standards and ensure that:

βœ… Your data is never sold or misused.

βœ… You have full control over your data preferences.

βœ… We use the highest industry standards to keep your data secure.

If you have any questions about how we handle data, we encourage you to reach out directly at info@nanu-app.com.

Have Questions About Privacy?

We're here to help you understand how we protect your data and privacy.