1. Introduction and Scope
This Privacy Policy describes how PT. Nook Digital Ventures ("Nook," "we," "us," or "our") collects, uses, processes, and protects your personal information when you use our AI-powered lead generation platform and related services ("Service"). This policy applies to all users of our platform, including real estate agents and property professionals. By using our Service, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with our practices, please do not use our Service.
2. Information We Collect
2.1 Personal Information You Provide
- Account Information: Name, email address, phone number, business name, and professional credentials
- Payment Information: Billing address and payment method details (processed securely through Xendit)
- Listing Information: Property details, photos, and descriptions
- Communication Data: Messages with our customer support, feedback, and support requests
- Marketing Preferences: Communication preferences and subscription choices
2.2 Automatically Collected Information
- Usage Data: Platform interactions, feature usage, session duration, and click patterns
- Device Information: IP address, browser type, operating system, device identifiers
- Technical Data: Log files, cookies, web beacons, and similar tracking technologies
- Performance Data: Service performance metrics, error reports, and system diagnostics
2.3 Lead Data We Collect
- Public Property Information: Rental listings, property details, and market data from publicly available sources
- Contact Information: Names, phone numbers, and email addresses from public sources
- Property Preferences: Rental criteria, location preferences, and timing information
- Engagement Data: Response rates, interaction patterns, and lead quality metrics
3. How We Use Your Information
3.1 Service Provision
- Create and maintain your user account
- Deliver personalized lead recommendations
- Process payments and manage subscriptions
- Provide customer support and technical assistance
- Enable CRM functionality and data management
3.2 Service Improvement
- Analyze usage patterns to enhance platform functionality
- Develop and improve our AI algorithms
- Conduct research and analytics for service optimization
- Test new features and functionalities
3.3 Communications
- Send service-related notifications and updates
- Provide important account and billing information
- Deliver marketing communications (with your consent)
- Respond to inquiries and support requests
3.4 Legal and Business Purposes
- Comply with legal obligations and regulatory requirements
- Prevent fraud, abuse, and unauthorized access
- Protect our rights and interests
- Facilitate business transfers or acquisitions
4. Legal Basis for Processing
Under Indonesian data protection laws and international standards, we process your personal information based on:
- Contractual Necessity: To fulfill our service obligations under our Terms and Conditions
- Legitimate Interests: To improve our services, prevent fraud, and conduct business operations
- Consent: For marketing communications and optional features (withdrawable at any time)
- Legal Compliance: To meet our legal and regulatory obligations
5. Information Sharing and Disclosure
5.1 We Do Not Sell Personal Information
We do not sell, rent, or trade your personal information to third parties for their marketing purposes.
5.2 Authorized Sharing
We may share your information with trusted third parties for specific purposes, such as:
- Service Providers: Trusted third-party vendors who assist with platform operations (payment processing, hosting, analytics)
- Team Members: Authorized users within your organization or team
- Legal Authorities: When required by law, legal process, or to protect rights and safety
- Business Partners: In connection with business transfers, mergers, or acquisitions
5.3 Lead Data Sharing
We may share your information with trusted third parties for specific purposes, such as:
- Lead information is provided exclusively to subscribing users
- Users may not resell or redistribute leads to unauthorized parties
- Lead data remains confidential within your authorized team
6. Data Security and Protection
6.1 Security Measures
- Industry-standard encryption for data transmission and storage
- Regular security assessments and monitoring
- Access controls and authentication protocols
- Secure payment processing through Xendit (PT Sinar Digital Terdepan)
- Regular security training for our team
6.2 Data Breach Response
- Immediate assessment and containment procedures
- Notification to affected users and authorities as required by law
- Investigation and remediation measures
- Continuous improvement of security protocols
7. Data Retention
7.1 Retention periods
- Active Accounts: Information retained during active subscription period
- Inactive Accounts: Account data retained for 12 months after cancellation
- Lead Data: Aggregated, anonymized data may be retained for service improvement
- Legal Requirements: Some data retained longer for compliance purposes
7.2 Data Deletion
- Users may request account deletion upon termination
- Personal information deleted within 30 days of valid deletion request
- Some information may be retained for legal compliance
- Anonymized data may be retained for analytical purposes
8. Your Privacy Rights
8.1 Access and Control
- Access: Request information about your personal data we hold
- Rectification: Correct inaccurate or incomplete information
- Deletion: Request deletion of your personal information
- Portability: Obtain a copy of your data in a structured format
- Objection: Object to certain types of processing
8.2 Marketing Communications
- Opt-out: Unsubscribe from marketing emails at any time
- Preferences: Manage communication preferences in your account settings
- Consent Withdrawal: Withdraw consent for optional processing activities
8.3 Exercising Your Rights
- Contact us at info@nookapp.io to exercise your rights
- Identity verification may be required for security purposes
- We respond to requests within 30 days
- Some rights may be limited by applicable law
9. Cookies and Tracking Technologies
9.1 Cookie Usage
- Essential Cookies: Required for platform functionality
- Performance Cookies: Help us analyze and improve service performance
- Functionality Cookies: Remember your preferences and settings
- Marketing Cookies: Enable personalized marketing (with consent)
9.2 Cookie Management
- Configure cookie preferences in your browser settings
- Opt-out of non-essential cookies through our cookie banner
- Some features may not function properly without certain cookies
10. Third Party Services
10.1 Integrated Services
- Payment Processing: Xendit (PT. Sinar Digital Terdepan) for secure payment handling
- Communication Tools: WhatsApp Business API for lead delivery
- Analytics: Service performance and usage analytics
- Cloud Services: Secure hosting and data storage providers
- AI Services: OpenAI for data standardization, analysis, and lead scoring
10.2 AI Data Processing
- Data Standardization: AI systems process and standardize lead data from various public sources
- Lead Analysis: Machine learning algorithms analyze lead quality and relevance
- Pattern Recognition: AI identifies trends and patterns in lead data and user behavior
- Automated Scoring: AI-powered systems score and rank leads based on various criteria
- Data Enhancement: AI may enrich lead data with additional publicly available information
10.3 Third Party Policies
- Third-party services have their own privacy policies
- We recommend reviewing their privacy practices
- We are not responsible for third-party privacy practices
- AI service providers are bound by strict data processing agreements
11. Children's Privacy
Our Service is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children under 18. If you are a parent or guardian and believe your child has provided us with personal information, please contact us to have the information removed.
12. Modifications
12.1 Policy Updates
- We may update this Privacy Policy periodically
- Material changes will be communicated via email or platform notification
- 30 days advance notice for significant changes
- Continued use constitutes acceptance of updated policy
12.2 Version Control
- Previous versions available upon request
- Change log maintained for transparency
- Users notified of all material modifications
13. Compliance
13.1 Indonesian Users
- Compliance with Indonesian data protection laws
- Data processing within or outside Indonesia with appropriate safeguards
- Rights and obligations under Indonesian law
13.2 International Users
- Compliance with applicable local data protection laws
- Additional rights may apply based on your jurisdiction
- Cross-border data transfer protections
14. Contact Information
If you have any questions about these terms and conditions, please contact us at:
PT. Nook Digital Ventures
Email: info@nookapp.io
Address: Paramount Land Serpong, Plaza Times Square Unit 81728 Lt 2-4, Medang, Kec. Pagedangan, Kabupaten Tangerang, Banten 15334
Last updated: 16 July 2025
The privacy policy is effective as of the date of publication and apply to all users of the Nook service.