Privacy Policy
Last updated: August 16, 2026
Last updated: August 16, 2026
This Policy describes how Nodo AI, Inc. (“Nodo”, “we”) handles information when you use Nodo on the web, iPhone, iPad, or desktop, or when you visit nodoia.app.
By using the Platform you accept this handling. Account, business, and plan details are also in the Terms of Use.
1. Who is responsible
Nodo AI, Inc. operates the Platform. Legal address: 131 Continental Dr, Suite 305, Newark, DE 19713, United States. Branch (correspondence): 2261 Market Street, San Francisco, CA 94114, United States. EIN: 37-2193232.
For your account data (email, sign-in identifiers, preferences), Nodo decides the processing.
For floor operations data — menu, inventory, sales, tables, shifts, staff the owner enters — the owner introduces it and must have a basis to do so. Nodo processes it to provide the service.
2. What we process
2.1 Account
- Name or alias, email, profile photo if you upload one
- Identifiers from the sign-in provider (Apple, Google, or another we enable)
- Language, theme, notification preferences
- Device identifiers for alerts, if you turn them on
2.2 Business
- Trade name, country, tax id (for example RNC)
- Tables, menu, prices, inventory, units
- Employees and shifts the owner records (name, alias, hours)
- Sales, tender types recorded on the floor, service charges you configure
- Plan status (trial, active, expired) and dates tied to the business
2.3 Orb and voice
- The text or transcript of what you ask the Orb
- The result of that instruction (a stock change, a sales question, an order)
That is required to do what you asked. We do not use the audio to sell ads.
2.4 Printer and the floor network
- Printer name and address (Bluetooth or an IP on the local network)
- Paper width and the fact that a ticket was sent to print
Those exist to print. We do not map your network beyond finding or remembering that printer.
2.5 Fiscal invoicing
If you connect e-CF: provider, certification status, tax id, and the metadata the flow asks for. The contents of a receipt follow the provider and the tax authority.
2.6 Plan payments
The plan is charged by a third party (Stripe). Nodo keeps subscription status and payment-customer references, not the full card number.
2.7 Technical
- Device type, OS, language, time zone
- IP address and error or performance logs
- Cookies or local storage to keep you signed in
We do not ask for the phone’s location to “match” people. If a future flow uses location (for example a floor map), we will ask then.
3. Why we use it
- Create and keep your account and business
- Let the owner and staff run POS and the Orb
- Charge the plan and apply the trial
- Print tickets and, if you turn it on, issue e-CF
- Detect abuse, failures, or fraud
- Improve the product (for example so the Orb hears an order better)
- Meet the law and answer an authority when we must
We do not sell your personal information.
4. Who we share with
Only what is needed:
- Infrastructure (hosting, transactional email, technical logs)
- Payments (Stripe, for the plan)
- Sign-in (Apple, Google, or the provider you use)
- Fiscal invoicing, if the owner connects a provider or starts certification
- Authorities, when the law requires it
Staff see what the owner opens: tables, menu, checkout. They do not see the owner’s fiscal setup or the plan payment.
A printer on your network is not a personal-data “recipient” on the internet: the ticket prints on the floor.
Custom work may sit under a separate engagement, with the same confidentiality rules or those in that contract.
5. Retention
We keep the account and business while the service is active, plus whatever extra time the law requires (for example sales or payment records).
If you delete the account or the business, we delete or anonymize what we no longer need, except what we must keep by law or to close a claim.
6. Security
We encrypt traffic, restrict internal access, and host on managed infrastructure. No system is perfect. If an incident materially affects you, we will notify you as required.
7. Your rights
Depending on your jurisdiction you may ask for access, correction, deletion, objection, or to withdraw consent. Write to info@nodoia.app. The owner manages staff data in the business; if an employee wants a name or shift fixed, the natural path is the owner, and we help if needed.
8. Children
The Platform is not directed at children under 13. A business must not load a minor as floor staff. If we find that case, we delete it.
9. Transfers
We use providers that may process data outside your country. We take reasonable steps so the level of protection still holds.
10. Cookies
On the web we use the minimum for session, language, and security. Clearing the browser store signs you out.
11. Changes
We will publish the updated policy on docs.nodoia.app, with a date. Use after a reasonable change means you accept it.
12. Contact
Nodo AI, Inc.
131 Continental Dr, Suite 305, Newark, DE 19713, United States
2261 Market Street, San Francisco, CA 94114, United States (branch)
EIN: 37-2193232