NIM Compress

Privacy Policy

Effective June 14, 2026

Draft template. This reflects how NIM Compress actually works, but it is a starting point — please review it with legal counsel and confirm the legal entity name, governing-law jurisdiction, and the list of data processors before launch.

NIM Compress is operated by NIM (Nexinfinity Meta) (“we”, “us”). This policy explains what we collect, why, and your choices. We built NIM Compress to be privacy-first, and this policy describes that honestly.

The short version

  • Image compression happens in your browser. Those files are never uploaded to us.
  • Large media (video, audio, PDF, archives) are uploaded over an encrypted connection, compressed on our servers, and then automatically deleted within about an hour. We don’t inspect, keep, or share your file contents.
  • We collect the minimum needed to run accounts, the API, and usage limits — never your file data.

What we collect

  • Account data — your email address, to sign you in with a one-time code and to associate your API keys and plan.
  • Usage metrics — counts of operations and total bytes processed/saved, per account or API key, to enforce limits and show your usage. These are numbers only — never the contents of your files.
  • API key metadata — a hashed key, its name, scopes, and last-used time (we never store the raw key).
  • Basic technical data — standard server logs and, for abuse prevention, coarse signals like rate-limit counters.

Your files

Client-side compression (images) runs entirely on your device — the file never leaves your browser. Server-side media compression necessarily uploads the file: it is transmitted over TLS, processed, the result is returned to you, and both the input and output are deleted within roughly one hour (we set a short time-to-live on every job). We do not use your files to train anything, and we do not share them.

Cookies

We use essential cookies to keep you signed in (your authentication session). If and when we enable product analytics, any analytics cookies will be used in line with applicable consent requirements.

Service providers

We rely on a small number of processors to operate the service:

  • Supabase — authentication, database, and storage (for server-media jobs).
  • Google Cloud — the media-compute worker (Cloud Run) and the job queue (Pub/Sub).

These providers process data on our behalf under their respective data-processing terms. Confirm and keep this list current before launch.

Data retention

  • File contents: deleted within about an hour of a server-media job (client-side files are never uploaded).
  • Account and usage data: kept while your account is active; deleted (or anonymized) when you delete your account, subject to legal retention requirements.

Your rights

Depending on where you live (e.g. the EU/UK under GDPR, or California under CCPA/CPRA), you may have the right to access, correct, delete, export, or object to the processing of your personal data. To exercise any of these, email admin@nexinfinitymeta.ai.

International transfers

Our providers may process data in regions outside your own. Where required, such transfers are covered by appropriate safeguards (such as standard contractual clauses).

Children

NIM Compress is not directed to children under 16, and we do not knowingly collect their data.

Changes

We may update this policy; we’ll revise the effective date above and, for material changes, take reasonable steps to notify you.

Contact

Questions or requests: admin@nexinfinitymeta.ai.