1. What we collect
We collect information you choose to send to us. This can include your email address, access request details, login code submissions, support messages, form entries, and feedback.
We also collect technical data needed to run the site. This can include IP address, browser type, device details, request time, visited routes, referrer data, session state, cookie status, and security events.
If you use a private feature, we may keep records related to that use, including access checks, request logs, product actions, and operational events tied to the account or session.
2. How we use it
We use this information to operate nanto.io, protect gated pages, verify login sessions, review access requests, respond to messages, debug issues, prevent abuse, and improve the product.
We may use contact details to reply to you, send access updates, discuss product use, share service notices, or follow up on a request you started.
We may use aggregated or deidentified information to understand usage patterns, improve reliability, and decide which parts of the product need attention.
3. Cookies and sessions
Nanto uses cookies and similar storage to keep a session active after login. These cookies help private pages stay hidden from unauthenticated visitors and keep you from repeating the same login step during a valid session.
You can clear cookies in your browser. If you do, private pages may ask you to log in again. Some browser settings may also limit session behavior.
4. Login codes
Login codes are used to verify access. We may store code request events, code attempt events, timestamps, email addresses, IP addresses, and user agent details to protect the login flow.
We do not ask you to send passwords, private keys, seed phrases, or exchange credentials through the login form.
5. Sharing
We do not sell personal information. We may share limited data with service providers that help us host, secure, monitor, email, analyze, or operate the site.
We may also disclose information when required by law, to protect the service, to investigate abuse, or to enforce our terms.
6. Retention
We keep information for as long as it is useful for the purposes described in this policy, unless a longer period is required for legal, security, accounting, or operational reasons.
We may keep security logs and access records for a reasonable period so we can investigate incidents, detect abuse, and maintain private areas.
7. Security
We use access controls, session checks, logs, and operational safeguards to protect private areas. No internet service is perfectly secure.
Do not send private keys, seed phrases, passwords, or other highly sensitive information through forms or prompts unless a feature clearly asks for it.
8. Your choices
You can choose not to submit optional forms. You can clear cookies, avoid logging in, or contact us to ask about information linked to your email address.
Some requests may require us to verify that you control the email address or session involved.
9. Changes
We may update this policy as the site and product change. If the update is material, we will change the effective date and may provide additional notice where appropriate.
10. Contact
Privacy questions can be sent to hello@nanto.io.