Privacy

Privacy policy

What we collect, why we hold it, who else touches it, and how to make us delete it. Written from what the product actually does.

Last updated September 19, 2026

Who we are

Nobarra is operated by Nobarra Labs LLC, 7901 4th St N #30205, St. Petersburg, FL 33702, USA. For anything in this policy, including a request to see or delete your data, write to [email protected].

What we collect

Your account email and a hashed password, or the identity of the provider you signed in with. Everything you put into the product: your Project Brain answers, campaigns, drafts, listings, outreach notes and missions. The credentials for any platform you connect, stored encrypted. Any subscriber list you upload. Support messages you send us. A record of what you paid. Technical logs, product analytics and error reports.

What we never ask for

Card numbers. Payment is handled entirely by Stripe's hosted checkout, which we redirect you to; the card details never touch Nobarra's servers and we cannot see them. We keep only what Stripe tells us: the plan, the amount, the status and an identifier.

Why we hold it

To run the product you signed up for, to take payment for it, to answer your support messages, to keep the service secure and working, and to meet our own legal and accounting obligations. We do not sell your data and we do not use it to advertise to you.

AI generation

When you generate a campaign, a reply, a description or a visual, the relevant parts of your project's content are sent to the AI providers named below so they can produce it. We do not send them your password, your payment details or your connected-platform credentials. Treat anything you put into your Brain as something that will be processed by those providers.

Platforms you connect

Connecting X, Telegram, Discord or Farcaster authorises Nobarra to act on that account on your behalf. We post only what you have approved or scheduled. You can disconnect at any time from the project's Connections page, and revoke access from the platform itself. Those platforms receive whatever you publish through them and apply their own privacy policies to it.

Subscriber lists you upload

If you import an email list, that list is yours and you remain responsible for it. You confirm you have the right to contact those people. We store the list so you can send to it, honour unsubscribes and suppressions automatically, and delete it with your project. We never mail your list for our own purposes.

Cookies

A session cookie that keeps you signed in, which the product cannot work without. Analytics cookies from PostHog, which tell us which features get used. No advertising cookies and no third-party ad trackers.

Keeping it

We hold your data while your account exists. Deleting your account from Account settings removes your projects, campaigns and content. Two things outlive that on purpose: records of payments, which Stripe and our accounting obligations require us to keep, and unsubscribe suppressions, which have to survive so someone who opted out is not mailed again.

Security

Connected-platform credentials are encrypted before they are stored. Access to your data is enforced at the database level, so one account cannot read another's rows. Traffic is served over HTTPS. No system is perfect, and if a breach affects your data we will tell you.

Where it is processed

Nobarra is operated from the United States and the services below process data in the United States and other countries where they operate. Using Nobarra means your data is transferred there.

Your rights

Ask us for a copy of your data, ask us to correct it, or ask us to delete it, by writing to [email protected]. You can delete your account yourself at any time from Account settings. If you are in the EU, UK or California you have these rights under your own law and we apply them to everyone regardless.

Children

Nobarra is a business tool and is not intended for anyone under 18. We do not knowingly collect data from children.

Changes

If this policy changes in a way that matters, the date at the top changes with it and we will say so in the product. Continuing to use Nobarra after that means the revised policy applies.

Who else processes your data

The complete list. Each one is a service Nobarra calls to do a specific job, and each gets only what that job needs.

ServiceWhat it doesWhat it receives
SupabaseDatabase, sign-in and file storageYour account and everything you create in the product
RenderHostingRequests to the site and server logs
StripePaymentsYour email and payment details, which you give to Stripe directly
ResendSending emailThe address and contents of emails we send you or your subscribers
AnthropicGenerating campaigns, replies and textThe project content needed to generate what you asked for
OpenAIGenerating visualsThe prompt and project context for the image you asked for
PostHogProduct analyticsWhich features are used, tied to an account identifier
SentryError monitoringTechnical details of an error, including the page it happened on
NeynarFarcaster connection and postingYour Farcaster authorisation and the casts you publish
CoinMarketCapChecking whether a token is listedThe token or contract address you asked about
TelegramAlerting us to a new signup or a purchaseThe email address of a new signup, so a person can respond to it
X, Telegram, DiscordPublishing, only if you connect themWhat you publish through them

Nobarra Labs LLC, 7901 4th St N #30205, St. Petersburg, FL 33702, USA. Questions, or a request to see or delete your data: [email protected]. See also our terms and security page.