Effective and last updated: September 2, 2026
1. Information processed
NoveraFlow may process the following information to provide the service.
- Record content written by the user
- Symbols, states, and keywords selected by the user
- Photo or voice files attached by the user
- App events needed for record creation, feature use, and error checks
- Feedback rating data such as helpful, okay, or not quite
- When you sign in, a Supabase Auth account UUID, Google or Apple identity information supplied for authentication, and authentication session data
- Support inquiry category, subject, messages, replies, status, timestamps, and signed-in account link when you use in-app support
- For Push, an installation identifier, encrypted device token, platform, language, app version/build, permission state, and signed-in account link when present
- A device-generated anonymous analytics identifier, event name and time, language/locale, time-zone context, app version, platform, screen, and bounded feature outcome or error metadata
- For requested daily, weekly, or monthly AI feedback: selected record text, limited period/count and previous-feedback comparison data, language/time-zone and quota metadata, and the device-generated anonymous identifier
NoveraFlow does not collect record data to track users with advertising identifiers or build ad profiles.
2. Purpose of use
Processed information is used for record storage, AI feedback, symbol and flow analysis, app stability, and feedback quality improvement.
AI feedback is not designed to judge or diagnose records. It is a reference response that helps users revisit records.
3. Storage and location
Under the current v1 policy, primary record data is stored locally on the user's device.
Users may export backup ZIP files from the app. These files are outside NoveraFlow's managed storage, so managing and deleting them is the user's responsibility.
When AI feedback is requested, the selected data is sent to NoveraFlow's backend and configured AI runtime to generate the response. The current request-log path records content length and a short hash rather than the record text, and the generated feedback is stored with the local records.
App events and feedback ratings are sent with the device-generated anonymous analytics identifier and stored on servers for stability checks and quality improvement. Analytics payloads do not include record text, attachment contents, email, Supabase account UUID, advertising identifiers, or precise location.
Server backups are retained for no more than 30 days. The current server implementation has no automatic time-based expiry for anonymous analytics events, AI feedback quota/usage entries, or minimized Push dispatch audit fields, so their retention is not bounded by a fixed period.
4. No sale or unnecessary third-party sharing
NoveraFlow does not sell personal information or record data. It does not disclose records except where required by law or explicitly requested by the user.
Google and Apple process sign-in information, Supabase provides account authentication, and Firebase Cloud Messaging processes Push delivery tokens and messages when those optional features are used.
5. User rights and deletion
Signed-in users can request permanent account deletion in Home → Account/Settings → Account → Delete account. Users who cannot use the app can follow the verified request method on the account deletion page.
View account deletion instructions
- The Supabase Auth account is hard-deleted after required provider handling and server cleanup.
- Support account links and notification outbox rows are removed immediately. Content tied to the deletion is hidden immediately and physically purged within 7 days.
- Account-owned Push receipts, devices, and encrypted tokens are deleted immediately. A matching recipient account identifier is removed from retained Push dispatch JSON without changing unrelated dispatches.
- The device-generated anonymous analytics identifier is not the Supabase account UUID and is not automatically linked to or removed with account deletion. Clearing app data removes its local copy; analytics events already received by the server are not account-linked and are not deleted through account deletion.
- The keyed deletion replay entry is retained for up to 31 days, and the identity-free deletion receipt for up to 365 days, so deletion remains effective after retries or backup restore.
- Choosing whether to delete app-managed records and attachments on the current device is separate and optional. Records are kept by default.
- Backup ZIP files exported by the user are not automatically deleted.
6. Security
NoveraFlow applies reasonable technical and administrative safeguards to protect records and related data.
7. Children's privacy
NoveraFlow is not designed to intentionally collect personal information from children.
8. Policy changes
This policy may change when service features, data handling, laws, or platform policies change.
9. Contact
Service: NoveraFlow
Operator: moolsoft
Email: [email protected]
Website: https://noveraflow.com