Data controller
- Name
- Arthur Vincke
- Address
- Elektriciteitstraat 29/605, 2800 Mechelen, Belgium
NILLOW PRIVACY
Nillow accepts account data and bounded project intent. OXA may organize what a project needs, but it does not decide who a person is, whether they are eligible, or what they can be persuaded to buy.
This surface renders deployment configuration. Missing facts remain visibly missing instead of being inferred from the Nillow brand.
Only information needed for the account, project, security, and explicitly initiated commercial path belongs here.
Email, username, password hash, active sessions, profile fields you choose, and bounded security audit events support account access and protection.
Your project summary, desired outcome, declared constraints, optional contact fields, permission receipts, and submission state are used to review and respond to the request.
An immutable offer, its acceptance receipt, and bounded Paddle references are processed only when you deliberately start checkout. Paddle—not Nillow—collects payment-card details. A browser redirect never proves settlement and no payment grants enrollment, entitlement, or runtime authority.
A permission receipt controls an application action. It does not, by itself, manufacture a legal basis for unrelated processing.
Optional audience measurement starts disabled. Rejecting it does not block the website, Portal account access, or project requests. The persistent Privacy Controls button reopens the choice and withdrawal removes the optional local identifier.
n0_session authenticates a Portal session for up to 12 hours, or 30 days only when Remember Me is selected. n0_passkey_pending binds a passkey ceremony for at most three minutes. Requested Portal and OXA handoffs may use short-lived session storage. These functions are not used for advertising and cannot be disabled while using the related service.
When allowed, the HttpOnly n0_privacy_choice cookie presents an opaque choice token to the server, while __n0_funnel_sid_v1 groups the sequence of bounded route and interaction events within one tab. Each permitted event also carries the server-side identifier of the active consent receipt, so events made under the same receipt can be associated across tabs and visits for consent enforcement and retention. These fields do not directly name a person or contain visitor-authored project text. Withdrawal revokes the receipt, clears the cookie, and immediately disables and clears the optional tab identifier in every open same-origin tab.
The first-party service worker and nillow-mobile-brand-v2 cache are created only after the site has been installed and launched as a standalone web app. Ordinary browser visits do not register it.
OXA is allowed to map a project. It is not allowed to map a person into a persuasion target.
Retention review is a deletion decision point, not permission to keep every field indefinitely.
The authenticated export returns only commercial submissions linked to the signed-in account and their commercial state. It is not a complete Article 15 response: private operator notes, follow-up records, internal quote drafts, staff identities, and processing receipts require verified human review. It also excludes password, session, hash, webhook, and payment-provider internals.