Privacy Policy
This policy explains what information Nexus POS handles, why, and what you can do about it. Nexus POS is operated by Nexus POS ("we", "us"). "You" means anyone who uses Nexus POS or visits our website.
Summary
- Nexus doesn't collect your business data. Unless you sign in to a team server, your sales, customers and settings stay only on your device and nothing is sent to us.
- The first time you open the app, you choose where your data lives: encrypted on your device, encrypted plus your own cloud drive, shared with Nexus, or an unencrypted copy on your own drive. Nothing is preselected, and you can change it any time in Settings.
- We do not sell personal data. We do not show ads. We use no analytics trackers and no ad SDKs.
- Card numbers never touch Nexus. Card payments go through your payment processor's own checkout.
- We never ask for crypto private keys or seed phrases.
- Businesses using Nexus control their own customer records. If you are a customer of a shop, contact that shop.
- The app only uses your camera when you tap scan. Barcode pictures stay on your device. Invoice and price-list pictures are sent to be read by AI only when you choose to scan one (see section 2).
- You can delete your login in the app, or email support@nexuspos.co and we will handle it within 30 days.
1. Who is responsible for your data
Nexus POS is a point-of-sale app. Each business that uses it is a "merchant".
- Merchants control their business records. That includes the customer records they enter. For that data, the merchant decides what is collected and why. We only process it on their behalf, to run the app for them.
- We are responsible for our public website, early-access sign-ups, the idea board, and the login accounts we host on a Nexus server.
If you bought something from a shop that uses Nexus POS and want to see, fix or delete your details, please contact that shop. They hold your record and can act on it. We will help them if they ask.
2. What we collect
Where business data is stored
The first time the app opens, a merchant chooses where their data lives. Nothing is preselected, "Decide later" keeps the data only on the device, and the choice can be changed any time in Settings, Privacy and backups. Only "Shared with Nexus" sends business data to us, and only after the merchant confirms that we can read it unless Private mode is on.
- Encrypted on this device (recommended): local mode with the passcode lock turned on.
- Encrypted, plus my own cloud drive: local mode with the passcode lock and encrypted cloud backup.
- Shared with Nexus: a Nexus server, below. Nexus-hosted accounts for new businesses are not open yet.
- Unencrypted, saved to my own drive: a readable copy on the merchant's own drive, below.
In detail:
- Local mode: data stays only on the device or in the browser. We do not receive it. You can encrypt it with a passcode (AES-256). We never see the passcode and cannot recover it. Encrypted backups you download are locked with a password you choose.
- Cloud backup (optional): if a merchant connects their own cloud storage (an S3-compatible bucket, a WebDAV folder or a Nexus server), the app encrypts each backup on the device with a password they choose, then uploads it directly to that storage. That storage provider's own terms apply. The storage keys and password stay on the device and are not sent to us.
- Unencrypted copy on your own drive (optional): if a merchant chooses it, the app saves a readable backup and products, customers and sales spreadsheets directly to the S3-compatible bucket or WebDAV folder they connect. It is not encrypted, so anyone with access to that storage can read it. Secret server keys are left out. It is never sent to us.
- Claude artifact: when Nexus is used as a Claude artifact, data is stored in the merchant's own Claude account, under Anthropic's terms and privacy policy.
- Nexus server: data is stored on a Nexus server operated for that business, and whoever runs that server can read it. An owner can turn on Private mode in Settings: every device on the team then encrypts names, items, prices, customers, settings and sale details with a team key before sending them, and the server operator cannot read them. The server still sees what it needs to run the team: logins and email addresses, roles, sale numbers, which team member made each sale, refunds and stock counts. Online store orders, the published online menu and emailed receipts still pass through the server so it can deliver them.
- Invoice scanning (optional): when you scan a supplier invoice, the pictures are sent to the Nexus server and read by Claude, an AI service from Anthropic, to pull out the items, quantities and costs. In the Claude preview they are read on your own Claude account instead. The pictures are not stored by Nexus; Anthropic handles them under its commercial terms. Nothing changes in your products until you confirm the review screen.
Business records
Depending on how a merchant uses the app, business records can include:
- Products, prices and stock.
- Sales, receipts and expenses.
- Staff names, roles and PINs.
- Customer records the merchant enters: name, phone, email, birthday, loyalty points, notes and marketing opt-in.
Team logins
A merchant can invite team members by email. When you have a login, we store:
- Your email address.
- A scrypt hash of your password. We never store your password itself.
- Session tokens that keep you signed in. They expire after 30 days.
- Invite links (valid 7 days) and password-reset links (valid 60 minutes).
Payments
- Cards: card payments are handled on the hosted checkout of the merchant's chosen processor (Stripe, Square, PayPal, Authorize.net or Clover). Card numbers never reach Nexus. We may receive payment status and reference details so the sale can be recorded.
- Crypto: crypto payments go to the merchant's own wallet address, or through BTCPay, Coinbase Commerce, NOWPayments or BitPay. We never ask for private keys or seed phrases. To confirm a payment, the app reads public blockchain data, which may include wallet addresses and transaction IDs.
Website: early-access sign-ups
If you sign up for early access, we collect your name, email, business name, business type, number of locations, current POS, which plan interests you, and any note you choose to add.
Website: idea board
You can post ideas and vote on them. No names are shown. To stop double voting, your browser stores a random ID. Our server stores only a hash of that ID, not the ID itself.
Technical data
- Your IP address is held in memory for about one minute to limit abuse (rate limiting). It is not written to a database.
- The server logs basic request errors so we can fix problems.
- We use no advertising, no analytics trackers and no third-party ad SDKs.
Mobile app permissions
- Camera: used only when you tap scan, to read a barcode. Images are processed on your device. They are not stored or uploaded.
- Face ID and fingerprint: if you turn this on, your phone checks your face or fingerprint itself. We never receive biometric data. Your passcode is kept in the phone's secure storage (Keychain or Keystore).
- Sharing: you can save or share receipt PDFs through your device's share sheet. You choose where they go.
3. How we use it
- To run the app: ring up sales, track stock and expenses, manage staff and keep customer records for the merchant.
- To sign you in and keep your account secure.
- To send emails you expect: invites, password resets, receipts and early-access confirmations.
- To confirm payments and convert prices to crypto amounts.
- To run early access and learn which features people want.
- To prevent abuse and fix errors.
- To meet legal obligations.
We do not use your data for advertising, and we do not sell it.
Where the GDPR or similar laws apply, our legal bases are: performing a contract with you or the merchant, our legitimate interest in running and securing the service, your consent (for example, early-access sign-ups and marketing opt-ins recorded by a merchant), and legal obligations.
4. Who we share it with
We share data only with service providers that help run Nexus, and only what they need. We do not sell or rent personal data.
| Provider | Why |
|---|---|
| Stripe, Square, PayPal, Authorize.net, Clover | Card payments, through the processor the merchant chooses. Their own privacy policies apply. |
| BTCPay, Coinbase Commerce, NOWPayments, BitPay | Crypto payments, if the merchant chooses one of them. |
| mempool.space, litecoinspace.org, Blockscout, Solana RPC | Reading public blockchain data to confirm crypto payments. |
| CoinGecko | Exchange rates. No personal data is sent. |
| Resend, Postmark, SendGrid or Mailgun | Sending emails. The operator picks one. It receives the recipient's email address and the message. |
| Hosting provider | Running the Nexus server, where one is used. |
| Anthropic | When a merchant runs Nexus as a Claude artifact, data is stored in the merchant's Claude account. When a merchant scans an invoice or price list, the pictures are read by Claude. |
| Google Fonts | The website and web app load their fonts from Google, which sees your device's IP address. No business data is sent. The phone apps include the fonts and load nothing. |
We may also disclose data if the law requires it, to protect people's safety, or as part of a sale or merger of the service. In a sale or merger, this policy would continue to apply to your data.
5. How long we keep it
- Business records: until the merchant deletes them, or deletes their server data.
- Logins: until you or the merchant delete the login. Sessions expire after 30 days. Invite links expire after 7 days. Password-reset links expire after 60 minutes.
- Early-access sign-ups: until you ask us to remove you, or early access ends and we no longer need them.
- Idea board: ideas and hashed vote IDs stay while the board is running.
- IP addresses: about one minute, in memory only.
- Error logs: only as long as needed to fix problems.
When a team member deletes their login, sales they rang up stay in the business's records under their name. The business needs them for its books. See Delete your account.
6. Security
- Passwords are stored only as scrypt hashes.
- Sessions and links expire on a fixed schedule.
- Card numbers are handled only by payment processors.
- We never ask for crypto private keys or seed phrases.
- Requests are rate limited to slow down abuse.
No system is perfectly secure. Keep your password and PIN private, and tell us at support@nexuspos.co if you think something is wrong.
7. Your rights
Depending on where you live (for example, under the GDPR in Europe or the CCPA in California), you may have the right to:
- Access: get a copy of the personal data we hold about you.
- Correction: fix data that is wrong.
- Deletion: have your data deleted.
- Portability: get your data in a usable format.
- Objection or restriction: ask us to stop or limit some uses.
- Withdraw consent: where we rely on consent, you can withdraw it at any time.
- Complain: contact your local data protection authority.
We do not sell or "share" personal data for cross-context behavioral advertising, as those terms are used in the CCPA. We will not treat you differently for using your rights.
To use these rights, email support@nexuspos.co from the email address on your account. We may ask you to confirm your identity. We reply within 30 days.
If you are a customer of a shop that uses Nexus, please send your request to that shop first. They control your record.
8. Children
Nexus POS is a tool for businesses. It is not meant for children under 13, or under 16 where local law sets a higher age. We do not knowingly collect their personal data. If you believe a child has given us data, email support@nexuspos.co and we will delete it.
9. International transfers
We and our service providers may process data in countries other than yours. Those countries may have different data protection laws. When we transfer data, we take reasonable steps so that it stays protected, such as using providers that offer appropriate safeguards.
10. Changes to this policy
We may update this policy. We will change the effective date at the top. If a change is significant, we will give notice in the app or by email before it takes effect.
11. Contact us
Nexus POS
Email: support@nexuspos.co
Website: https://nexuspos.co