01. Introduction & Data Controller
Welcome to GetNomics (“GetNomics,” “we,” “us,” or “our”). We operate a global discovery platform, commercial directory, decentralized task system, and multi-vendor marketplace connecting businesses, products, informative articles, community reviewers, and consumers worldwide.
GetNomics acts as the Data Controller for personal data collected through your interactions with our web application (getnomics.com), internal member dashboards, public merchant storefronts, and associated API services. We are dedicated to respecting your privacy, safeguarding your personal identity, and upholding international data protection benchmarks, including the General Data Protection Regulation (GDPR - Regulation (EU) 2016/679), California Consumer Privacy Act (CCPA/CPRA), and the Nigeria Data Protection Regulation (NDPR).
02. Scope of the GetNomics Architecture
This Privacy Policy applies to all users interacting with any part of the GetNomics ecosystem, including:
- Public Visitors & Shoppers: Individuals browsing directory listings, category indexes, product catalogs, merchant articles, and public reviews.
- Registered Members: Account holders managing profiles, utilizing Nomic Coin (NC) wallets, saving wishlists, submitting reviews, and participating in community tasks.
- Commercial Merchants & Business Owners: Entities creating verified commercial storefronts, merchandizing product inventories, publishing business articles, and running sponsored advertising campaigns.
- Community Moderators & Staff: Authorized personnel performing content verification, quality assessment, anti-fraud moderation, and support ticket resolution.
03. Information We Collect
We collect personal, commercial, and technical information through direct submissions, automated platform logging, and secure third-party integrations:
A. Information You Voluntarily Provide
- Registration & Profile Credentials: Full name, username, email address, password hashes (secured via PBKDF2/SHA256 with individual salt), avatar images, biography, phone number, and social media handles.
- Business Profile Submissions: Business legal/trading name, registration identity, official address, industry category, operating hours, phone contacts, official website URL, logo, and cover photography.
- Business Verification & Legal Accreditation Documents: Official certificates of incorporation, commercial licenses, business registration filings, tax identifiers, and proof of insurance optionally uploaded during business creation or profile accreditation.
Strict Confidentiality Guarantee: Verification documents are stored in secure, private directories and are never made publicly visible, never displayed on public storefronts, and never indexed by search engines. They are accessed exclusively by vetted platform moderators and administrators solely to verify business legitimacy and award official accreditation badges. We do not use, share, monetize, or distribute your business verification documents for any other purpose. - Product & Inventory Data: Product names, detailed descriptions, pricing, currency, SKU attributes, variant options (size, color, weight), stock levels, and gallery imagery.
- Article & Content Submissions: Article headlines, editorial content, cover imagery, topic tags, and author attributions.
- Communications & Messages: Direct customer-to-merchant inquiry messages, order notes, support ticket communications, and feedback submissions.
B. Automatically Collected Technical & Geolocation Data
- Device & Telemetry Data: IP address, browser type and version, operating system, device screen resolution, referring/exit URLs, and platform navigation paths.
- Location Intelligence: Coarse geographic signals (Country, State/Region, City) derived from IP address or browser geolocation (upon explicit user consent) used to power location-based search and ranking algorithms.
- Audit & Security Logs: Timestamped records of authentication attempts, password modifications, moderator assignment actions, and critical dashboard interactions for anomaly prevention.
C. Financial & Transactional Data
- Nomic Coins Ledger: Timestamped records of coin purchases, signup bonuses, referral credits, ad campaign escrow holds, platform fee deductions (30%), review task reward payouts (70%), and gift coin transfers.
- External Payment Identifiers: Webhook transaction references, payment gateway IDs (Flutterwave & Nova), currency amounts, and completion timestamps. We never store credit card numbers, CVVs, or bank PINs on our servers.
04. Public Marketplace Data & Search Engine Indexing
A foundational purpose of GetNomics is commercial discovery. When you publish a business profile, product, article, or public review, that content is deliberately visible to the public and indexable by global search engines (such as Google and Bing):
<meta name="robots" content="index, follow"> to maximize merchant exposure. Private dashboards (/dashboard/...) and checkout workflows (/cart/) strictly enforce <meta name="robots" content="noindex, nofollow">.
05. How We Use Collected Information
We deploy your data exclusively for legitimate, clearly specified commercial and technical purposes:
- Service Delivery: Rendering storefronts, synchronizing shopping cart sessions, processing order inquiries, and managing user wishlists.
- Algorithmic Feed Personalization: Generating customized discovery feeds based on selected algorithm modes:
- β¨ For You: Ranked dynamically by geographic proximity, viewed categories, and search intent.
- π§ Explore Global: Ranked purely by global catalog freshness and review quality.
- π₯ Following: Curated strictly from merchants, creators, and brands you explicitly follow.
- Financial Integrity & Escrow: Calculating wallet balances, locking escrow for advertising/review campaigns, processing 100% automated refunds on rejected/cancelled requests, and dispersing review task rewards.
- Anti-Abuse & Moderation: Inspecting flagged listings, identifying review manipulation rings, filtering spam comments, preventing click fraud on sponsored ads, and securing accounts.
- Transactional Notifications: Dispatching email verification tokens, account decision notifications, order updates, and wallet transaction summaries.
06. Legal Bases for Data Processing (GDPR Compliance)
Under Article 6 of the GDPR, GetNomics relies on the following lawful bases to process your personal data:
- Performance of a Contract: Creating accounts, displaying published merchandise, fulfilling shopping cart inquiries, and executing coin wallet transactions.
- Legitimate Interests: Improving platform search algorithms, preventing malicious fraud, maintaining server security, and displaying verified commercial listings.
- Consent: Storing browser geolocation coordinates, dispatching marketing newsletters, and placing non-essential analytics cookies. Consent can be revoked at any time.
- Legal Obligation: Maintaining accounting and financial audit records of coin purchases and complying with valid judicial requests.
07. Nomic Coins (NC), Financial Escrow & Audit Ledgers
GetNomics operates a secure internal financial utility token called Nomic Coins (NC). Our proprietary ledger architecture guarantees mathematical balance integrity:
- Escrow Protection: Submitting an Ad Campaign or Review Task Request immediately moves the bid amount into an escrow hold. Escrowed funds are quarantined and cannot be double-spent.
- 30% Platform Fee & 70% Net Allocation: Upon moderator approval, 30% is deducted for platform infrastructure costs, while 70% is committed to the campaign's active budget or distributed to community task reviewers.
- Guaranteed 100% Refunds: If a campaign is rejected by a moderator or cancelled by the owner while pending, 100% of escrowed funds are refunded instantly to the owner's wallet with an immutable
Transactionaudit entry. - Immutable Audit Logging: Every coin movement generates an unalterable transaction record containing timestamps, reference codes, debit/credit values, and reason classifications.
08. Cookies, Web Storage, and Analytics
GetNomics uses cookies, local browser storage, and session tokens to enable essential platform functions:
| Cookie / Storage Key | Type | Purpose | Duration |
|---|---|---|---|
sessionid |
Essential | Maintains your authenticated session state across dashboard pages. | 14 Days (or browser close) |
csrftoken |
Security | Protects against Cross-Site Request Forgery (CSRF) on forms. | 1 Year |
getnomics_cart |
Functional (LocalStorage) | Persists your shopping cart items locally on your device across visits. | Persistent until cleared |
getnomics_compared_ids |
Functional (LocalStorage) | Stores selected product IDs for the side-by-side comparison drawer. | Persistent until cleared |
Zero Third-Party Ad Trackers: We do NOT embed cross-site behavioral tracking pixels (e.g. Facebook Pixel or Google Remarketing trackers) to profile your browsing habits across third-party websites.
09. Third-Party Service Providers & Sharing
We do NOT sell, rent, or trade your personal data to third-party marketing companies. Data is shared strictly with verified technical infrastructure providers required to operate our service:
- Payment Gateways (Flutterwave & Nova): For processing debit/credit card and bank transfer purchases of Nomic Coins. Gateway transactions adhere strictly to PCI-DSS Level 1 compliance.
- Transactional Email Dispatchers: For transmitting account verification links, password reset tokens, order inquiry copies, and notification alerts.
- Cloud Hosting & CDN Infrastructure: For high-speed worldwide delivery of static assets, secure encrypted database storage, and automated backups.
- Business Verification Records: Business registration documents, licenses, and insurance filings uploaded for accreditation are strictly quarantined and never shared with third-party advertisers, data brokers, or commercial marketing partners.
- Law Enforcement & Legal Mandates: We may disclose information only if required by a valid subpoena, court order, or applicable statutory law to prevent imminent physical harm or financial fraud.
10. International Data Transfers
GetNomics serves a worldwide user base. Consequently, your data may be processed on servers located outside your country of residence. Where data is transferred internationally (such as from the European Economic Area to cloud servers globally), we implement robust legal mechanisms including the European Commission's Standard Contractual Clauses (SCCs) and equivalent data protection safeguards to ensure your rights remain fully protected.
11. Data Security & Encryption Standards
We apply enterprise-grade technical and organizational security controls to protect your data from unauthorized access, accidental alteration, disclosure, or destruction:
- Transport Layer Security (TLS 1.3): All network communications between your browser and our servers are encrypted using modern HTTPS protocols.
- Cryptographic Password Hashing: User passwords are never stored in plain text; they are hashed using salted PBKDF2/SHA-256 algorithms.
- Confidential Document Isolation: Business registration documents, certificates, and licenses uploaded for accreditation are segregated within access-restricted storage paths and protected against public enumeration.
- Role-Based Access Control (RBAC): Access to moderator and administrator consoles is restricted by capability flags (
ModeratorCapability) and audited continuously. - Continuous Vulnerability Auditing: Regular code reviews and automated security checks prevent SQL injection, XSS, and authorization bypasses.
12. Data Retention & Deletion Schedule
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected:
- Active Account Data: Retained for the active lifetime of your account.
- Financial & Coin Ledger Records: Retained for a minimum of 7 years in compliance with statutory financial reporting and anti-money laundering (AML) laws.
- Closed / Deleted Accounts: Upon an account deletion request, personal profile identifiers are purged or anonymized within 30 days, except where retention is mandated by law.
13. Your Legal Privacy Rights
Depending on your jurisdiction (including EU/EEA, UK, California, and Nigeria), you enjoy extensive legal rights concerning your personal data:
14. Children’s Privacy Protection
GetNomics is strictly intended for individuals who are at least 18 years of age or the age of legal majority in their jurisdiction. We do not knowingly collect, solicit, or maintain personal information from children under the age of 16. If we discover that a minor under 16 has registered an account, we will immediately take steps to terminate the account and purge associated data.
15. Revisions to This Privacy Policy
We may update this Privacy Policy periodically to reflect technological improvements, regulatory updates, or feature additions. When significant revisions are published, we will update the “Last Updated” date at the top of this document and notify registered members via dashboard alerts or direct email. Continued use of GetNomics following the posting of modifications indicates your agreement with the updated terms.
16. Contact Our Data Protection Officer (DPO)
For any inquiries, requests to exercise statutory data rights, or privacy compliance concerns, you may contact our dedicated Data Protection and Legal Compliance Office:
Email: [email protected] / [email protected]
Telephone: +1 (831) 308-7758
Address: 110 Cooper Street, Suite 400, Santa Cruz, CA 95060, United States
Direct Support Desk: Accessible via your authenticated member dashboard
Response SLA: We respond to all formal data subject requests within 30 calendar days.