Nexora Legal
Privacy Policy
Last updated: September 5, 2026 · Template, not legal advice
1. Controller
Joel Lading, Schrotebogen 6, 39126 Magdeburg, Germany. Contact: coding.nexora@gmail.com.
2. Scope
This policy applies to the Nexora website, editor, accounts, public profiles and published projects.
3. Account data
Nexora processes username, display name, email address, password hash, profile information and account timestamps.
4. Project data
Project names, descriptions, visibility settings, files, folders and update timestamps are stored to provide the service.
5. Session data
A technically necessary, HttpOnly session cookie keeps users signed in and protects authenticated areas.
6. Language cookie
A technically necessary language cookie stores the selected interface language.
7. Server logs
IP address, request time, requested resource, response status and browser information may be processed for security and troubleshooting.
8. Purposes
Data is processed to provide accounts, storage, previews, publishing, downloads, security and support.
9. Legal bases
Depending on the context, processing is based on contract performance, legal obligations, consent or legitimate interests in reliable and secure operation.
10. Public projects
Projects marked public can be viewed and downloaded by anyone. Their title, description, owner and files become publicly accessible.
11. Private projects
Private projects must not be exposed through public project endpoints and are accessible only with the required authorization.
12. Unlisted projects
Unlisted projects may be accessible to anyone who receives the valid link. Users should treat such links confidentially.
13. Recipients
Data is shared only with service providers required to operate Nexora, public visitors where users publish content, or authorities where legally required.
14. International transfers
If providers outside the EEA are used, Nexora will rely on a legally recognized transfer mechanism where required.
15. Retention
Data is retained only as long as necessary for the service, security, legal duties or legitimate claims.
16. Deletion
Users can delete projects, empty trash and request account deletion. Backups may be retained temporarily for technical recovery.
17. Password security
Passwords are not stored in plain text. Nexora stores a one-way password hash with a unique salt.
18. Preview isolation
Project preview code is executed in an isolated browser frame to reduce access to the Nexora application.
19. Uploaded files
Users must avoid uploading personal or confidential information that is not needed for their project.
20. Minors
Where consent is the legal basis, applicable age and parental-consent requirements must be observed.
21. Access
Users may request information about personal data processed about them.
22. Rectification
Incorrect personal data can be corrected through account settings or by contacting Nexora.
23. Erasure
Users may request deletion where legal requirements are met.
24. Restriction
Users may request restriction of processing where legal requirements are met.
25. Portability
Users may request a portable copy of data where the statutory right applies.
26. Objection
Users may object to processing based on legitimate interests in accordance with applicable law.
27. Withdrawal
Consent can be withdrawn for the future without affecting processing carried out before withdrawal.
28. Complaints
Users may lodge a complaint with a competent data-protection supervisory authority.
29. Automated decisions
Nexora does not intend to make decisions producing legal effects solely through automated processing.
30. Changes
This policy may be updated when the service, providers or legal requirements change.