At NADA AI, security is fundamental to how we build and operate our AI-native creative products. We are committed to protecting user data, creative projects, account information, and platform infrastructure through appropriate technical and organizational safeguards.
This page explains the security practices we apply across NADA AI websites, applications, platforms, and related services.
1. Data Protection
We use appropriate technical and organizational measures designed to protect the confidentiality, integrity, and availability of user data.
These measures may include:
- secure cloud infrastructure;
- encryption of data in transit and, where appropriate, at rest;
- access controls and permission management;
- system monitoring and logging;
- regular security reviews;
- secure development practices;
- backup, recovery, and business continuity measures where applicable.
While no online service can guarantee absolute security, we continuously work to reduce risk and strengthen our protection measures as our products evolve.
2. Account Security
Users are responsible for keeping their account credentials secure. We recommend that users:
- use a strong and unique password;
- avoid sharing account credentials with others;
- keep login methods and connected third-party accounts secure;
- promptly notify us if they suspect unauthorized access;
- log out from shared or public devices after use.
Where available, users may use third-party login providers, such as Google or Apple, to help authenticate their accounts securely.
3. AI Interaction Data
AI interaction data may include prompts, instructions, generated content, feedback, and related activity. We apply access controls and data handling practices intended to protect this information and use it only as described in our applicable policies.
4. Infrastructure and Access Control
NADA AI uses trusted infrastructure and service providers to host, operate, and support our Services. We restrict internal access to systems and data based on business needs and apply access-control practices intended to reduce unauthorized access, misuse, loss, or disclosure.
Access to production systems, user data, and operational tools is limited to authorized personnel or service providers who need such access to operate, secure, support, or improve the Services.
5. Third-Party Service Providers
We work with selected third-party providers that support key functions such as cloud hosting, AI model services, analytics, crash reporting, login, payment processing, customer support, and security monitoring.
We expect service providers to process data in accordance with applicable data protection requirements and appropriate confidentiality and security obligations.
6. Data Retention and Deletion
We retain personal data and service-related information only for as long as reasonably necessary to provide the Services, fulfill the purposes described in our Privacy Policy, comply with legal obligations, resolve disputes, enforce agreements, maintain security, and support legitimate business needs.
When data is no longer required, we take reasonable steps to delete, anonymize, or securely handle it in accordance with applicable laws and operational requirements.
7. Platform Safety and Abuse Prevention
To protect users and the integrity of our Services, we may use automated systems, manual review, or a combination of both to detect, prevent, and respond to:
- spam, fraud, and account abuse;
- unauthorized access attempts;
- malicious content or code;
- policy-violating content;
- misuse of AI features;
- attempts to bypass rate limits, payment rules, or security controls.
We may remove content, restrict features, suspend accounts, or terminate access when necessary to maintain a safe and reliable platform.
8. Payments
Payment information is processed by third-party payment providers. NADA AI does not collect or store full payment credentials such as complete credit card numbers or payment account passwords.
9. Cross-Border Data Processing
NADA AI operates globally. User data may be processed, stored, or transferred in countries or regions outside the user's place of residence. Where required by applicable law, we use appropriate safeguards designed to protect personal data during cross-border processing and transfer.
10. Responsible Disclosure
If you believe you have discovered a security vulnerability, please contact us at contact@nadaai.ai. Please provide enough information for us to reproduce and evaluate the issue.
11. Contact
For general security and privacy questions, contact NADA AI at contact@nadaai.ai.