Skip to privacy notice
← Back to Nemus

EffectiveAugust 7, 2026

Privacy notice

Privacy, explained clearly.

Nemus builds technology for communities and organizations that depend on trust. This notice explains what information Nemus LLC collects, why we use it, when we disclose it, and the choices available to you.

Applies to

Nemus websites, products, and services that link to this notice.

Our approach

Collect what is useful, protect it, and explain the purpose in plain language.

Privacy requests

Use our contact form. We may need to verify your identity before we act.

On this page

Scope and rolesInformation we collectHow we use informationHow we disclose informationAI and automated systemsRetention and securityYour rights and choicesContact us

Have a privacy question?

Contact Nemus
01

Scope and our role

This Privacy Notice applies to Nemus LLC ("Nemus," "we," "us," or "our") and to the Nemus website, products, applications, automations, and other services that link to it (collectively, the "Services"). In this notice, "personal information" also includes "personal data" and similar terms used by applicable privacy laws.

The information we handle depends on how you interact with us. A visitor to nemus.ai, a prospective client, a user of a Nemus application, and a person whose records are managed by a client organization will not necessarily provide the same information. Service-specific notices, in-product disclosures, and customer agreements may supplement this notice. If a more specific notice applies to a particular Service, that notice controls for that Service.

When Nemus works for another organization

A parish, ministry, nonprofit, small business, or other client may decide why and how information is used while Nemus processes it on that organization's behalf. In that situation, the client is responsible for its privacy practices and Nemus acts as its service provider or processor. Requests about records maintained for that client should normally be directed to the client first.

02

Information we collect

We collect information you choose to provide, information generated when you use the Services, and information supplied by clients, providers, or other permitted sources.

Information you provide

  • Contact and communications. Your name, email address, organization, role, message, support request, feedback, and communication preferences.
  • Account and service information. If a Service includes accounts, this may include sign-in identifiers, profile details, permissions, organization membership, and settings.
  • Operational and community records. Depending on the Service, clients and authorized users may provide scheduling, registration, event, workflow, parish-management, payment, or administrative information.
  • Content submitted to AI-enabled Services.Prompts, instructions, messages, files, source material, feedback, and generated results when you choose to use those features.
  • Transaction information. When a Service supports payments, we may receive billing contact details, transaction amount, status, and provider identifiers. A payment processor generally handles full card or bank-account details under its own terms.

Information collected automatically

  • Connection and location signals. IP address and a hashed form of it, request headers, referrer, language, and approximate country, region, city, timezone, or network location derived from the connection. We do not intentionally request precise browser geolocation on the public website.
  • Device and browser signals. Browser and device type, operating platform, screen and viewport size, language, timezone, connection characteristics, touch support, and related technical attributes.
  • Usage and interaction data. Pages viewed, referring and campaign URLs, clicks, scroll depth, visibility, time on page, navigation timing, and sampled pointer coordinates.
  • Identifiers and security signals. Random visitor and session identifiers stored in the browser, device or browser characteristics, and signals associated with bots, fraud, VPNs, proxies, hosting networks, or other security risks.

General website telemetry is not designed to capture keystrokes, the contents of form fields, camera or microphone data, contacts, or files on your device. If optional session replay is enabled, form inputs and editable text are configured to be masked.

Information from clients and other sources

We may receive information from the organization that gives you access to a Service, identity and payment providers, infrastructure and security providers, integrations you authorize, public sources, and vendors that help identify network or fraud signals. We combine this information only for the purposes described in this notice, an applicable service notice, or a customer agreement.

Because some Services support Orthodox parishes and ministries, information supplied to those Services may reveal religious affiliation, community participation, or other information that receives heightened protection in some jurisdictions. We process that information only when needed for the relevant Service and as permitted by applicable law and client instructions. Please do not place confidential pastoral or similarly sensitive information in the general website contact form.

03

How we use information

Depending on the Service and our relationship with you, we use information to:

  • provide, configure, maintain, and support the Services;
  • authenticate users and manage accounts, roles, and permissions;
  • respond to inquiries and communicate about projects or Services;
  • carry out a client's documented instructions and workflows;
  • process or facilitate registrations, transactions, and payments;
  • operate AI-enabled features and return requested results;
  • understand usage, improve reliability and accessibility, and develop features using feedback and appropriately aggregated or de-identified information;
  • prevent abuse, investigate incidents, secure accounts and systems, and enforce applicable terms;
  • comply with law, protect rights and safety, resolve disputes, and maintain business and financial records; and
  • complete a merger, financing, reorganization, acquisition, or other business transaction, subject to appropriate safeguards.

Legal grounds where applicable

Where a law requires a legal basis, we rely on the basis appropriate to the context: performing a contract or taking requested steps before a contract; our legitimate interests in operating, improving, and protecting the Services; your consent; compliance with a legal obligation; or another basis permitted by law. If we rely on consent, you may withdraw it for future processing. A client is responsible for identifying the legal basis for processing it directs.

04

Browser storage, analytics, and session replay

The public website uses browser storage and similar technologies to maintain random visitor and session identifiers. These identifiers help connect page views and events, distinguish a new session, measure interest, and detect abuse. Local storage can persist after you close the browser; session storage normally ends when the browser tab or session closes.

The public website is built to use Vercel for hosting, Resend for contact-form email delivery, and a managed database for telemetry. If configured, it can also use PostHog for analytics and masked session replay, Fingerprint for security and device signals, and IPinfo for network and approximate-location enrichment. Providers may change as our systems evolve, but replacements will perform similar operational, analytics, communications, or security functions.

You can clear or restrict browser storage through your browser controls. Blocking these technologies may limit some functionality and does not prevent essential server logs or security processing. Browsers also offer signals such as Do Not Track and Global Privacy Control. Because there is no uniform rule for every signal and use, we respond as required by applicable law and describe relevant opt-out choices below.

05

How we disclose information

We may disclose information to the following categories of recipients:

  • Clients and authorized users when we operate a Service for their organization or when your actions are intended to be visible to them.
  • Service providers and subprocessors that support hosting, databases, communications, payments, identity, analytics, security, support, and AI functionality under contractual or other appropriate restrictions.
  • Integrations and parties you direct us to use when you or an authorized organization connects another service or asks us to transfer information.
  • Professional advisors such as attorneys, accountants, auditors, insurers, and consultants who need the information to advise or protect us.
  • Authorities and other parties for legal or safety reasonswhen we reasonably believe disclosure is required by law or needed to protect people, rights, property, or the integrity of the Services.
  • Parties to a business transaction in connection with due diligence, financing, reorganization, sale, or transfer of all or part of Nemus, with protections appropriate to the context.

No sale for money or cross-context advertising

Nemus does not currently sell personal information for money or share it for cross-context behavioral advertising. If our practices change, we will update this notice and provide any choices required before the change applies.

06

AI and automated systems

Some Services may use Nemus systems or third-party AI providers to analyze instructions, transform content, generate responses, route work, or automate administrative tasks. The information sent to an AI provider depends on the feature you choose and may include prompts, files, context supplied by an authorized client, and generated output. Service-specific terms or notices may provide additional details, including provider or retention choices available for that Service.

We may use automated signals to detect fraud and abuse, assess security risk, prioritize inquiries, or help route work. Public-site telemetry is not used by Nemus to make decisions that produce legal or similarly significant effects about a person. If a future Service uses automated decision-making in a materially different way, we will provide the notice and choices required for that Service.

AI output can be incomplete or inaccurate. Authorized users remain responsible for reviewing results before using them in decisions or communications. Do not submit information you are not authorized to provide.

07

Retention and security

How long we keep information

We retain personal information for the period reasonably necessary for the purpose for which it was collected, including providing the Services, following client instructions, maintaining security and business records, resolving disputes, and meeting legal obligations. The period varies by category and context. For example, an inquiry may be kept while we manage the relationship; service records may be kept for the client's contract term and an appropriate period afterward; security and telemetry records may be kept while useful to investigate patterns or incidents; and financial records may be kept for legally required periods.

We may delete information, aggregate or de-identify it, or retain it longer when reasonably necessary for legal claims, security, fraud-prevention, or a valid preservation request. Copies in backups are removed according to normal backup cycles and may be isolated from further use in the meantime.

How we protect information

We use administrative, technical, and organizational measures designed to protect information in light of its nature and the risks involved. These may include access controls, authentication, encryption in transit, logging, provider reviews, and procedures for responding to incidents. No online service, transmission, or storage system can be guaranteed completely secure. You are responsible for protecting credentials and promptly reporting suspected unauthorized access.

08

Your rights and choices

Depending on where you live and the context in which we process your information, you may have the right to request access, correction, deletion, restriction, or a portable copy; object to certain uses; withdraw consent; opt out of certain sales, sharing, targeted advertising, or profiling; appeal a decision about a request; or file a complaint with a privacy regulator.

To make a request, use the Nemus contact form and write "Privacy request" in your message. Tell us the Service or client organization involved and the type of request. Do not send government identification through the form unless we ask for it through a secure process.

We may ask for information needed to verify your identity, authority, and relationship to the requested records. An authorized agent may submit a request where permitted, subject to proof of authority. Rights are not absolute, and we may retain or withhold information where an exception applies, including to protect another person's rights, security, legal privilege, or records we must keep. We will respond within the period required by applicable law and will not unlawfully discriminate against you for exercising a privacy right.

Records controlled by a Nemus client

If your request concerns information a parish, ministry, business, or other organization manages through a Nemus Service, contact that organization first. We will assist the client with verified requests as required by our agreement and applicable law.

09

International processing

Nemus and its providers may process information in the United States and other countries where they operate. Privacy laws in those locations may differ from the laws where you live. Where applicable law requires safeguards for an international transfer, we use an appropriate contractual or legal mechanism and assess supplementary protections as appropriate to the transfer.

10

Children and youth services

The general Nemus company website is not directed to children under 13, and we do not knowingly ask them to submit personal information through the general contact form. If we learn that a child submitted information there without appropriate authorization, we will take reasonable steps to delete it.

A client-facing parish, school, event, family, or community Service may involve information about minors. In those cases, the client organization directs the Service and is responsible for obtaining permissions and providing notices required by law. A service-specific notice or agreement may describe additional safeguards and parent or guardian choices.

11

Third-party services and links

The Services may link to or integrate with websites and products operated by clients, community partners, payment processors, social networks, or other third parties. Their privacy practices are governed by their own notices, not this one. A link from Nemus does not mean we control the third party's handling of information. Review the applicable notice before providing information to an external service.

12

Changes to this notice

We may update this notice as Nemus, our Services, providers, and legal obligations evolve. We will post the revised notice here and change the effective date. If a change is material, we will provide additional notice or request consent when required. Earlier versions remain applicable to prior activity only to the extent required by law or an agreement.

13

Contact Nemus

Nemus LLC is responsible for questions about this notice and for personal information it controls directly. For questions, concerns, or privacy requests, send us a message through the contact form.

Open the contact form ↗

Last updated August 7, 2026. This notice is intended to explain our practices and does not limit rights available under applicable law.