Legal · GDPR · Client Portal

Client Portal Privacy Policy.

Last updated: 6 August 2026  ·  Applies to: NexDam Client Portal on Android, Windows, Linux and iOS

This policy covers the NexDam Client Portal app, used by clients to follow their own projects. The main NexDam Privacy Policy covers the website and the services in general; this one explains what the app does on your device.

The short version. The app shows you the data of the projects you commissioned: progress, messages, files, invoices. It is the same data you see on the website, on a device instead of a browser. No advertising, no analytics, nothing sold or shared for marketing.

1. Who is responsible

NexDam is a personal software project and technical service operated under the NexDam name — not a company. For the data described here I am the data controller under the EU General Data Protection Regulation (Regulation 2016/679).

Email: contact@nexdam.it
Website: www.nexdam.it

Where the material you send me in a project contains personal data of your users or customers, you remain the data controller for that data and I act as processor under Art. 28 GDPR, on the basis of our written agreement.

2. What the app collects

The app has no data of its own: it reads and writes the same account and the same projects as the website. There is no separate portal account.

2.1 Account

2.2 Project data

Invoices record what is owed and whether it was paid. They contain no card numbers and no banking credentials: the app processes no payments.

2.3 Technical data

3. Push notifications

So that a new message reaches you even with the app closed, the device registers a notification token issued by Firebase Cloud Messaging, stored alongside your account identifier.

The token identifies the installation, not you: it changes when you reinstall the app and is used only to deliver notifications about your own projects. Denying the notification permission — or signing out — stops it being used; the app keeps working, you simply learn about new messages when you open it.

4. What the app does not collect

5. Why, and on what legal basis

6. Who else processes the data

Each acts as processor on documented instructions. Nothing is passed to advertising networks or data brokers, for any reason.

7. How long it is kept

8. Security

Data travels encrypted in transit. Access is protected at database level so each account can read only its own projects, and a second authentication factor is available and recommended.

No system is immune. If a breach occurs that puts your rights at risk, I will notify the supervisory authority within 72 hours and inform you directly, as Articles 33 and 34 GDPR require.

9. Your rights

Access, rectification, erasure, restriction, portability, and objection to processing based on legitimate interest. You may also complain to the Italian Data Protection Authority (Garante per la protezione dei dati personali).

Write to contact@nexdam.it: I reply within one month. Bear in mind the limit above — invoices remain for as long as tax law requires, even after an account is closed.

10. Changes

Changes appear here with a new date, and are announced in the app when they materially affect how your data is handled.

11. Contact

contact@nexdam.it

See also: Client Portal Terms of Service · NexDam Privacy Policy · NexDam Terms of Service