What we collect
When you use Nodus, we process the following data:
- Request logs — IP address, timestamp, URL path, user agent, and response status. Retained for 30 days for security and debugging.
- Account data — email address and password hash (bcrypt) if you create an account.
- Billing data — handled by our payment processor. We never see or store your card details.
- Performance metrics — aggregate latency, cache hit rates, and error rates. No personal identifiers.
How we use it
We use your data to:
- Route requests to the nearest edge node
- Detect and mitigate DDoS attacks and abuse
- Monitor and improve network performance
- Send essential service notifications (security alerts, billing receipts)
We do not sell, rent, or share your data with third parties for marketing purposes.
Edge processing
Nodus processes requests at 320+ edge locations worldwide. Your data may be processed at the node nearest to your users, which may be in a different country than your origin server. We comply with GDPR and only retain request logs for 30 days.
Cookies
We use a single essential cookie for session authentication. We do not use tracking, advertising, or analytics cookies. No consent banner needed.
Your rights
Under GDPR and similar regulations, you have the right to:
- Access — request a copy of your data
- Rectification — correct inaccurate data
- Erasure — request deletion of your data
- Portability — receive your data in a machine-readable format
- Objection — opt out of certain processing
To exercise these rights, contact us at hello@nodus.app.
Data retention
- Request logs: 30 days
- Account data: until account deletion
- Billing records: 7 years (legal requirement)
- Performance metrics: aggregated, no personal data
Questions about privacy? Email hello@nodus.app or visit our contact page.