Privacy Policy
How we collect, use, and protect your data at Nuanso
Last updated: December 2025
1 Introduction
This Privacy Policy explains how Nuanso ("we", "us", or "our") collects, uses, stores, and protects your personal data when you use our platform. Nuanso is a Slack-native AI performance marketer that delivers daily metric summaries and AI-powered insights to marketing teams.
We are committed to protecting your privacy and complying with the General Data Protection Regulation (GDPR), the Belgian Data Protection Act of 30 July 2018, and all other applicable data protection laws.
2 Data Controller
The data controller responsible for your personal data is:
3 Data We Collect
We collect and process the following categories of personal data:
3.1 Account Information
When you create an account or connect platforms, we collect:
- Name and email address
- Company/organization name
- Slack workspace information (workspace ID, channel preferences)
- Authentication tokens for connected platforms (encrypted)
- Billing and subscription information
3.2 Marketing Platform Data
When you connect your marketing accounts, we access and store performance data from:
- Meta Ads: Spend, impressions, clicks, conversions, CTR, ROAS, and ad creative performance
- Google Ads: Spend, impressions, clicks, conversions, and quality scores
- LinkedIn Ads: Spend, impressions, clicks, conversions, and engagement metrics
- TikTok Ads: Spend, impressions, clicks, conversions, and engagement data
3.3 Onboarding and Context Data
- Industry and business type
- Marketing goals and KPIs
- Target audiences and markets
- Preferred metrics and reporting preferences
- Notification and briefing schedule preferences
3.4 Usage and Technical Data
- Log data (IP addresses, browser type, device information)
- Feature usage and interaction patterns
- Error logs and performance data
- Slack interaction data (commands used, messages from our bot)
4 How We Use Your Data
4.1 Service Delivery
Legal Basis: Contract Performance
- Delivering daily marketing briefings via Slack
- Generating AI-powered insights and recommendations
- Displaying performance dashboards and reports
- Syncing and aggregating data from connected marketing platforms
- Detecting anomalies and alerting you to significant changes
4.2 Service Improvement
Legal Basis: Legitimate Interest
- Analyzing usage patterns to improve our product
- Debugging and fixing technical issues
- Developing new features based on user needs
4.3 Communication
Legal Basis: Legitimate Interest / Consent
- Sending service-related notifications and updates
- Responding to support requests
- Marketing communications (only with your consent)
4.4 Legal Compliance
Legal Basis: Legal Obligation
- Complying with applicable laws and regulations
- Responding to lawful requests from authorities
- Maintaining records required by law
5 AI Processing and Automated Decisions
Nuanso uses artificial intelligence to analyze your marketing data and generate insights and recommendations. This AI processing:
- Analyzes performance trends and patterns in your connected marketing platforms
- Generates actionable suggestions for improving campaign performance
- Creates personalized briefings based on your business context and goals
- Detects anomalies that may require your attention
Important: These AI-generated insights are recommendations only and do not result in automated decisions with legal effects. All marketing decisions remain under your control.
6 Data Sharing and Third Parties
We do not sell your personal data.
We share data only with the following categories of recipients:
6.1 Service Providers
- Railway: Cloud hosting infrastructure
- PostgreSQL: Data storage (hosted via Railway)
- Anthropic: AI processing for generating insights
- Stripe: Payment processing and subscription management
- Slack: Delivery of briefings and notifications
6.2 Platform Integrations
We connect directly with the following platforms. No third-party intermediaries are used:
- Meta Platforms, Inc. (Facebook Ads, Instagram Ads)
- Google LLC (Google Ads)
- LinkedIn Corporation (LinkedIn Ads)
- TikTok Inc. (TikTok Ads)
- Slack Technologies, LLC
These integrations use OAuth 2.0. You can revoke access at any time through your platform settings or Nuanso dashboard.
7 International Data Transfers
Some of our service providers are located outside the European Economic Area (EEA). When we transfer your data outside the EEA, we ensure appropriate safeguards are in place:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- EU-US Data Privacy Framework certification (where applicable)
- Adequacy decisions by the European Commission (where applicable)
8 Data Retention
We retain your data for as long as necessary to provide our services:
- Account data: Retained while active and for 30 days after deletion request
- Marketing platform data: Up to 24 months for trend analysis
- AI-generated insights: Cached for 24 hours, regenerated when context changes
- OAuth tokens: Deleted immediately upon disconnection
9 Your Rights
Under GDPR, you have the following rights regarding your personal data:
Right of Access
Request a copy of your personal data
Right to Rectification
Correct inaccurate or incomplete data
Right to Erasure
Request deletion of your personal data
Right to Portability
Receive your data in a portable format
Right to Object
Object to certain types of processing
Right to Restrict
Limit how we use your data
To exercise any of these rights, contact us at hello@nuanso.io. We will respond within 30 days.
10 Data Deletion
You can request deletion of your data at any time by:
- Emailing hello@nuanso.io with subject 'Data Deletion Request'
- Disconnecting individual platform integrations from your Nuanso dashboard
- Deleting your account from the account settings page
We will delete your personal data within 30 days, except where retention is legally required.
11 Data Security
We implement appropriate technical and organisational measures to protect your data:
- All data is encrypted in transit using TLS 1.2+
- OAuth tokens and sensitive credentials are encrypted at rest
- Access to production systems is restricted and logged
- Regular security reviews and dependency updates
- Railway's infrastructure provides additional security controls
13 Slack Integration Specifics
When you install Nuanso in your Slack workspace:
- We access only the channels you explicitly configure for receiving briefings
- We do not read or store messages from your Slack workspace
- We request only the minimum scopes necessary for delivering notifications
- You can uninstall the app at any time from your Slack workspace settings
- Upon uninstallation, all associated data is deleted within 14 business days
14 Platform-Specific Data Usage
14.1 Meta (Facebook/Instagram Ads)
We use the Meta Marketing API to access your advertising data solely to display campaign performance in Nuanso and generate insights. We do not share your Meta data with third parties except as necessary for AI processing. You can disconnect your Meta account at any time.
14.2 Google Ads Data
We access Google Ads data through Google's OAuth APIs. Your data is limited to displaying your own performance metrics and generating AI-powered insights. We comply with the Google API Services User Data Policy and do not use Google data for advertising purposes.
14.3 LinkedIn Ads Data
We access your LinkedIn Ads data through LinkedIn's Marketing API to display campaign performance metrics. This data is used exclusively within Nuanso and is not combined with data from other sources for unrelated purposes.
14.4 TikTok Ads Data
We access your TikTok Ads data through TikTok's Marketing API solely for displaying advertising performance and generating insights within Nuanso.
14.5 Google API Services Limited Use Disclosure
Nuanso's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
- Only uses Google user data to provide and improve user-facing features
- Does not transfer Google user data to third parties except as necessary to provide services
- Does not use Google user data for serving advertisements
- Does not allow humans to read Google user data without your affirmative consent
15 Children's Privacy
Nuanso is a business-to-business service intended for use by marketing professionals. We do not knowingly collect personal data from individuals under the age of 16. If we become aware that we have collected data from a child under 16, we will delete it promptly.
16 Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by:
- Posting the updated policy on our website with a new 'Last Updated' date
- Sending an email notification to your registered email address
- Providing a notification in the Nuanso dashboard or via Slack
Your continued use of Nuanso after changes take effect constitutes acceptance of the updated policy.
17 Complaints and Supervisory Authority
If you believe we have not handled your personal data properly, you have the right to lodge a complaint with the Belgian Data Protection Authority:
Gegevensbeschermingsautoriteit (GBA)
Drukpersstraat 35, 1000 Brussels, Belgium
Phone: +32 (0)2 274 48 00
Email: contact@apd-gba.be
Website: www.dataprotectionauthority.be
18 Contact Us
For any questions, concerns, or requests regarding this Privacy Policy, please contact us:
