Nestory

Privacy Policy (Datenschutzerklärung)

Draft — this page is a structural placeholder pending founder and legal review. It is not yet the final, published version.

This is a courtesy translation. In case of any conflict or ambiguity, the German version of this document prevails.

Data controller

[TODO: same legal entity + address as the Impressum]

Processors we use

Nestory uses the following processors, with EU/Frankfurt data residency where applicable:

  • Supabase (Frankfurt, eu-central-1) — database, authentication, storage
  • Mixpanel (EU, api-eu.mixpanel.com) — product analytics, only after consent
  • PostHog (EU Cloud) — feature flags / remote config, only after consent
  • Sentry (EU, org nestory-7t) — error monitoring
  • Resend — transactional email
  • Vercel — web hosting

Cookies & consent

We only load Mixpanel (product analytics) and PostHog (feature flags) in your browser after you accept the cookie banner shown on this site. Declining means these tools never load.

Your rights

[TODO: confirm and detail Art. 15–21 GDPR rights (access, rectification, erasure, restriction, portability, objection) and how to exercise them]

Contact for privacy requests

[TODO: dedicated privacy contact email, e.g. privacy@getnestory.app]

We use privacy-friendly, EU-hosted analytics (Mixpanel, PostHog) to understand how Nestory is used. No data is sold or used to train AI. See our privacy policy.