Privacy Policy
Last Updated: January 20, 2025
We operate the Nibbs mobile application (the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard information when you use our parental monitoring application.
PLEASE READ THIS PRIVACY POLICY CAREFULLY.
By accessing or using the Service, you agree to be bound by the terms and conditions of this Privacy Policy. If you do not agree with the terms of this Privacy Policy, please do not access or use the Service.
1. Legal Basis for Processing
We process personal information under the following legal bases:
- Consent: You have given explicit consent for monitoring your minor child's communications
- Legal Obligations: Processing is necessary for compliance with legal obligations
- Vital Interests: Processing is necessary to protect the vital interests of a child
- Legitimate Interests: Processing is necessary for our legitimate interests in child safety
2. Information We Collect
2.1 Information You Provide
- Profile Information: When you create a profile, we collect basic information about your relationship to the child and monitoring preferences.
- Caution Words: Custom words and phrases you define for monitoring your child's messages.
- Monitoring Preferences: Your settings for AI moderation and alert preferences.
2.2 WhatsApp Account and Message Data
IMPORTANT DISCLOSURE:
When you connect WhatsApp to Nibbs, we automatically collect and store the following personal data from the connected WhatsApp account:
- Account Information: The child's WhatsApp account name, phone number, email address (if available), profile picture, and status message
- Contact Information: Names and phone numbers of contacts in the child's WhatsApp
- Message Content: All WhatsApp messages sent and received, including text, images, videos, voice messages, and documents
- Message Metadata: Timestamps, sender/recipient information, chat identifiers, message status (read/delivered), and group participation
- Group Information: Names and members of WhatsApp groups the child participates in
- Media Files: Photos, videos, documents, and other files shared through WhatsApp
- AI Analysis: When AI moderation is enabled, message content may be sent to our AI partners for analysis
2.3 Automatically Collected Information
- Anonymous Authentication: We generate anonymous user IDs to sync your data across devices without requiring personal information.
- Usage Data: App features used, frequency of use, and interaction patterns.
- Device Information: Device type, operating system version, and app version.
3. How We Use Your Information
We use the information we collect to:
- Display the child's WhatsApp account information and contacts to the parent
- Monitor WhatsApp messages for user-defined caution words and inappropriate content
- Store and display message history for parental review
- Provide real-time safety alerts to parents when concerning content is detected
- Process messages through AI moderation when enabled by the parent
- Maintain monitoring sessions and connection status
- Associate the child's WhatsApp data with the parent's monitoring account
4. Message Processing and AI Moderation
Important Notice: When AI moderation is enabled, your child's WhatsApp messages are processed and may be sent to our AI partners (such as OpenAI) for content analysis to detect inappropriate content, cyberbullying, and safety threats.
5. How We Share Your Information
5.1 Service Providers
We share your information with third-party service providers that help us operate our app:
- AI Partners (OpenAI, etc.): When AI moderation is enabled, message content is sent to AI services for safety analysis.
- Convex: For secure data storage and synchronization across devices.
- WAHA: For WhatsApp message monitoring infrastructure.
5.2 Legal Requirements
We may disclose your information if required to do so by law or in response to valid requests by public authorities.
6. Data Security
We implement appropriate technical and organizational security measures to protect your information:
- All data transmissions are encrypted using industry-standard TLS/SSL protocols
- Data is encrypted at rest in our databases
- Access to user data is restricted to authorized personnel only
- Regular security audits and updates are performed
However, no method of transmission over the Internet or electronic storage is 100% secure, and we cannot guarantee absolute security.
7. Data Retention
7.1 Message Content
Standard Messages: Messages that do not trigger any safety alerts are processed in real-time and are not stored permanently.
Flagged Messages: Messages that are flagged as potentially dangerous or inappropriate are retained only as long as necessary for safety purposes and parental review.
8. Your Privacy Rights
Depending on your location, you may have the following rights regarding your information:
- Access: Request a copy of the information we have about you
- Correction: Request correction of inaccurate information
- Deletion: Request deletion of your information
- Data Portability: Request your data in a portable format
- Opt-out: Opt-out of certain uses of your information
9. Children's Privacy and Parental Rights
Nibbs is designed specifically for parents to monitor their children's WhatsApp activity for safety purposes. The app processes your child's messages only when you, as the parent, have explicitly enabled monitoring.
10. Contact Us
If you have questions about this Privacy Policy or our privacy practices, please contact us at:
Email: support@nibbs.ai
Data Protection Officer: support@nibbs.ai
11. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA), including the right to know what personal information we collect, the right to delete your information, and the right to opt-out of the sale of your personal information (which we do not do).
12. European Privacy Rights (GDPR)
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR).
13. Limitation of Liability
TO THE FULLEST EXTENT PERMITTED BY LAW, THE COMPANY SHALL NOT BE LIABLE FOR ANY INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, OR PUNITIVE DAMAGES, OR ANY LOSS OF PROFITS OR REVENUES, WHETHER INCURRED DIRECTLY OR INDIRECTLY, OR ANY LOSS OF DATA, USE, GOODWILL, OR OTHER INTANGIBLE LOSSES ARISING FROM YOUR USE OF THE SERVICE.