Skip to content

Privacy Policy

How we collect, use, and protect your personal information.

Data Controller and Data Protection Officer

nomu.land is the controller of your personal data. Our Data Protection Officer (Encarregado de Proteção de Dados, as defined by LGPD Art. 41) can be reached at:

  • Email: privacy@nomu.land
  • Subject line: "DPO / Encarregado"

The Encarregado is responsible for receiving communications from data subjects and the national authority (ANPD), and for advising on data protection practices.

Information We Collect

We collect information you provide directly to us, as well as information generated automatically when you use our services.

Account and Authentication

  • Email address (used to send one-time sign-in codes for authentication)
  • Display name, bio, and profile photo
  • Website URL, social media links (Instagram, Twitter/X, LinkedIn, TikTok, YouTube)
  • Languages, travel style, interests, and pronouns

You can optionally protect the app with your device's biometrics (Face ID / Touch ID) as an App Lock. This unlock happens entirely on your device through the operating system; we never receive your biometric data.

Device and Technical Information

  • IP address (collected during authentication and for rate limiting)
  • App version and device information (device model, OS version)
  • Authentication session metadata (timestamps, device type)

Travel and Trip Information

  • Trip names, descriptions, and dates (start and end dates)
  • Trip thumbnail images
  • Favorite trip designations
  • Profile and map visibility preferences
  • Country codes and place information

Place and Location Data

  • Place names and vendor place IDs (Geoapify)
  • Geographic coordinates (latitude and longitude)
  • Geohash data and bounding box coordinates
  • Country, region, state, or province
  • Timezone information (name and offsets)
  • Arrival and departure dates for each place
  • Place thumbnail images with photographer attribution

Transportation and Accommodation Details

  • Transportation types (flight, train, bus, car, ferry, other)
  • Departure and arrival locations and dates
  • Confirmation codes and reference numbers
  • Class and seat information
  • Accommodation types (hotel, hostel, apartment, house, resort, other)
  • Accommodation names, check-in and check-out dates
  • Reservation codes, room details, and guest information
  • Accommodation address

Content and Notes

  • Structured notes (reservation, food, place, tip, photo, preparation, money, or other types)
  • Note titles and bodies
  • Media files you upload (JPEG, PNG, WebP images, up to 10 MB)

Waiting List

  • Email addresses submitted to join the waiting list or request early access

Payment and Billing

  • Purchase records (purchase ID, support tier, status, timestamps)
  • Currency preference (USD or BRL)
  • We do not store credit card numbers, CVVs, or full payment card details. Payment processing is handled by Google Play Billing for purchases made inside the app. See Google's Privacy Policy.

Preferences and Settings

  • Privacy settings (profile visibility, location sharing, data sharing, third-party sharing preferences)
  • Locale, timezone, date format, and unit preferences
  • Notification preferences (email, marketing)
  • Marketing and analytics opt-out flags
  • Map theme and display preferences
  • Data retention period and account deletion delay preferences

Usage and Technical Information

  • Backend metrics: user actions (e.g., trip created, login), error tracking, and performance data (published to GCP Cloud Monitoring with anonymized user IDs)
  • Rate limiting records: IP address, attempt count, and expiration (auto-deleted via TTL)
  • Communications with our support team

Legal Basis for Processing

Under LGPD (Art. 7) and GDPR (Art. 6), we process your personal data based on the following legal grounds:

Performance of Contract (LGPD Art. 7(V) / GDPR Art. 6(1)(b))

  • Account creation and authentication (email sign-in codes)
  • Storing and managing your trips, places, transportation, accommodation, notes, and photos
  • Processing payments via Google Play Billing

Consent (LGPD Art. 7(I) / GDPR Art. 6(1)(a))

  • Marketing and promotional communications
  • Non-essential analytics and usage tracking
  • Third-party data sharing (where enabled in your privacy settings)

You may withdraw consent at any time through your account settings or by contacting privacy@nomu.land. Withdrawal does not affect the lawfulness of processing performed prior to withdrawal.

Legitimate Interest (LGPD Art. 7(IX) / GDPR Art. 6(1)(f))

  • Rate limiting and abuse prevention (IP address, user agent collection)
  • Security monitoring and fraud detection
  • Service improvement through aggregated, anonymized analytics
  • Technical error logging and debugging

Legal Obligation (LGPD Art. 7(II) / GDPR Art. 6(1)(c))

  • Retention of payment and billing records for tax and audit purposes
  • Responding to lawful requests from authorities

How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve our travel planning and trip management services
  • Store and organize your trips, places, transportation, and accommodation information
  • Display your travel data on maps and visualizations using location coordinates
  • Process and manage your travel bookings, reservations, and confirmations
  • Enable you to create, edit, and manage travel notes
  • Process payments and apply your support tier
  • Let you share a traveler card summarizing your travels
  • Personalize your experience based on your preferences and settings
  • Authenticate your identity and secure your account
  • Send technical notices, updates, and support messages
  • Respond to your comments, questions, and support requests
  • Monitor and analyze usage trends to improve our services
  • Send marketing communications (only with your consent)
  • Prevent abuse and enforce rate limits
  • Comply with legal obligations and protect our rights

Third-Party Service Providers

We share personal data with the following categories of service providers, strictly for the purposes described below. Each provider processes data under their own privacy policies and applicable data processing agreements.

Cloud Infrastructure and Storage

  • Google Cloud Platform (Firestore): Primary database for all user data (account, trips, places, preferences, etc.)
  • Google Cloud Storage: Storage for uploaded files (profile photos, trip images)
  • Google Cloud Monitoring: Aggregated metrics and telemetry (user IDs are anonymized UUIDs; no directly identifying information is sent)

Payment Processing

  • Google Play Billing: Handles payment processing for purchases made inside the Android app. Your payment is processed by Google under your Google account; we receive only a purchase confirmation and token to grant your entitlement, never your payment card details. See Google's Privacy Policy.

Email Delivery

  • Resend: Delivers transactional emails (one-time sign-in codes, welcome emails, and account notices). We share your email address and email content with Resend for delivery purposes. See Resend's Privacy Policy.

Geolocation Services

  • Geoapify: Provides place search, geocoding, and place detail enrichment. Search queries and coordinates are sent to Geoapify to resolve place information. See Geoapify's Privacy Policy.

Image Services

  • Unsplash: Provides place thumbnail images. Search queries are sent to Unsplash to find relevant photos. No personal user data is shared. See Unsplash's Privacy Policy.

Mobile App Diagnostics and Product Analytics

  • Sentry (US region): Crash and error reporting for the Nomu mobile app, hosted in the United States. When the app crashes we send diagnostic data — device model, OS version, a stack trace, and an opaque account identifier. We never attach your trip names, place names, coordinates, photos, or email address to a crash report. Data is encrypted in transit. See Sentry's Privacy Policy.
  • PostHog (EU region): Product analytics for the mobile app, hosted in the European Union. We record a small, fixed set of named events (for example, that a trip was created or photos were added) and screen views, tied to an opaque account identifier. Event properties are limited to counts and categories — never trip or place content, coordinates, photos, or email addresses. We do not use session recording or automatic event capture. See PostHog's Privacy Policy.
  • Expo: Delivers push notifications and over-the-air app updates. When you turn notifications on, your device is issued a push token that we store so we can reach it; sending a notification passes that token and the notification's title and text through Expo's service. The app also checks Expo for app updates. We never send your trip content, photos, coordinates, or email address to Expo. See Expo's Privacy Policy.

Map and Place Data

  • Natural Earth: The app draws your world map from public-domain country geometry bundled inside the app. This works offline and sends no data to any third party to render your map.
  • GeoNames: Reference place, city, and administrative-region data used on our servers to enrich and match the places in your trips. This is licensed reference data (CC BY 4.0); we do not send your personal data to GeoNames.

Full attribution and licensing details for these sources, and for the open-source software Nomu is built with, are listed in our Legal Notices.

Information Sharing

We do not sell, trade, or rent your personal information. Beyond the third-party service providers listed above, we may share your information only in the following circumstances:

  • With your consent: When you explicitly authorize sharing (e.g., enabling third-party sharing in your privacy settings)
  • Sharing you initiate: When you share a traveler card, or set your profile to public, the information you choose to show becomes visible to the people or apps you share it with
  • Legal obligations: To comply with applicable law, regulation, legal process, or governmental request
  • Rights protection: To protect the rights, property, or safety of nomu.land, our users, or the public
  • Business transfer: In connection with a merger, acquisition, or sale of assets, in which case you will be notified

International Data Transfers

Your personal data is stored on Google Cloud Platform servers, which may be located outside of Brazil, including in the United States. Our third-party service providers (Google Play Billing, Resend, Geoapify, Unsplash, PostHog, Sentry, Expo) may also process data outside of Brazil and the European Economic Area. PostHog processes data in the European Union; Sentry and Expo process data in the United States.

These international transfers are conducted in compliance with:

  • LGPD Art. 33: Transfers to countries or international organizations that provide an adequate level of data protection, or with appropriate safeguards including standard contractual clauses
  • GDPR Art. 44–49: Where applicable, transfers are protected by Standard Contractual Clauses (SCCs) or the service provider's adherence to adequacy decisions

All third-party providers listed in this policy maintain data processing agreements that include appropriate safeguards for the protection of your personal data during international transfers.

On-Device Storage

The Nomu app does not use cookies or tracking technologies. It stores two kinds of data on your device:

  • Your session: Authentication tokens are kept in the device's secure storage — the iOS Keychain or the Android Keystore-backed store — which is protected by the operating system and not readable by other apps.
  • Offline cache: Trips, places, and images you have viewed, plus your display preferences, are cached on the device so the app works offline and loads quickly. This cache stays on your device and is not a separate transmission to our servers.

This on-device data is removed when you sign out or uninstall the app. You can also clear the app's storage through your device settings; doing so removes the local cache but does not affect the account data stored on our servers.

Data Security

We implement appropriate technical and organizational measures to protect your personal information, including:

  • Encryption of data in transit (TLS/HTTPS) and at rest (GCP encryption)
  • Session tokens stored in the device secure keystore (iOS Keychain / Android Keystore)
  • Server-side authentication and token validation on every request
  • Hashing of sensitive tokens (sign-in codes) before storage
  • Rate limiting to prevent brute-force and abuse
  • IP address collection limited to security purposes with automatic expiration
  • Location data privacy controls based on your preferences

No method of transmission over the internet is 100% secure. While we strive to protect your personal information, we cannot guarantee absolute security.

Your Rights

Under LGPD (Art. 18) and GDPR (Art. 15–22), you have the right to:

  • Confirmation and access: Confirm whether we process your data and obtain a copy of it
  • Correction: Update or correct inaccurate or incomplete personal data
  • Anonymization, blocking, or deletion: Request anonymization, blocking, or deletion of unnecessary or excessive data, or data processed in violation of the law
  • Portability: Request transfer of your data to another service provider (LGPD Art. 18(V) / GDPR Art. 20)
  • Deletion: Request deletion of data processed with your consent
  • Information about sharing: Know which public and private entities your data has been shared with
  • Consent withdrawal: Withdraw consent at any time, without affecting the lawfulness of prior processing
  • Objection: Object to processing based on legitimate interest if you believe your rights are being violated
  • Opt out of marketing: Unsubscribe from marketing communications at any time via your account settings
  • Restrict processing: Request restriction of processing in certain circumstances (GDPR Art. 18)

How to Exercise Your Rights

You can exercise several of these rights directly in the app (privacy controls and account deletion). To request a copy or export of your data, or for any request that cannot be handled in the app, contact us at privacy@nomu.land. We will respond within 15 days (LGPD) or 30 days (GDPR).

Right to Lodge a Complaint

If you believe your data protection rights have been violated, you have the right to lodge a complaint with the relevant supervisory authority:

  • Brazil: Autoridade Nacional de Proteção de Dados (ANPD) — www.gov.br/anpd
  • European Union: Your local Data Protection Authority (DPA)

Data Retention

We retain your personal information for as long as necessary to provide our services and fulfill the purposes described in this policy. Specifically:

  • Account and profile information: Retained while your account is active
  • Trip, place, and travel data: Retained until you delete your account or specific items. Deleted trips are soft-deleted first and permanently removed after your configured retention period.
  • Authentication tokens: Access tokens are short-lived; refresh tokens are rotated and expire after a period of inactivity. Expired tokens are automatically purged.
  • Sign-in codes: Short-lived; consumed on use or expire automatically
  • Rate limiting records: Auto-deleted via TTL after the limiting window expires
  • Payment records: Retained as required by applicable tax and financial regulations
  • Usage analytics: Retained in aggregated, anonymized form

When you delete your account, we will delete or anonymize your personal information within 30 days (configurable in your settings), except where we are required to retain it for legal or regulatory purposes.

You can configure your preferred data retention period and account deletion delay in your privacy settings.

Children's Privacy

nomu.land is not intended for use by anyone under the age of 16. We do not knowingly collect personal data from children under 16. If you are a parent or guardian and believe your child has provided us with personal information, please contact us at privacy@nomu.land and we will delete that information promptly.

For users in jurisdictions where the age of digital consent is lower (e.g., 13 in some countries), the local minimum applies, but never below 13 years of age.

Automated Decision-Making

nomu.land does not use automated decision-making or profiling that produces legal effects or similarly significant effects on you (LGPD Art. 20 / GDPR Art. 22). Rate limiting is applied automatically based on IP address to prevent abuse, but this does not constitute profiling and does not affect your rights or access to the service beyond temporary throttling.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new policy on this page and updating the "Last updated" date. For significant changes that affect your rights, we will provide additional notice via email. Your continued use of our services after the changes take effect constitutes your acceptance of the updated policy.

Contact Us

If you have questions about this Privacy Policy or wish to exercise your data protection rights, contact us at:

  • General privacy inquiries: privacy@nomu.land
  • Data Protection Officer (Encarregado): privacy@nomu.land (subject: "DPO / Encarregado")
  • General support: support@nomu.land
Last updated: July 2026nomu.land Legal Team