Privacy Policy

Effective Date: September 2, 2026
Website: https://nick-renard.com
Operator / Data Controller: Nicholas Renard
Contact: admin@nick-renard.com


1. Introduction and Scope

This Privacy Policy explains what information we collect, why we collect it, how we use and protect it, and the choices and rights you have with respect to your personal information. It applies to the website nick-renard.com (the “Site”), the products and services we operate under NRCOM (the “Products”), and your interactions with us through either.

We have written this policy to be clear and readable. In short: we collect only what we need to run the Site and Products, we do not sell personal information, and we process data on lawful bases with appropriate safeguards. This Site is a personal portfolio and contact site; it does not require an account, and browsing it does not require you to provide any personal information.

Where a separate Product has its own terms, privacy policy, or app-store privacy label, those documents govern your use of that Product and describe any additional data handling specific to it. This policy should be read together with those documents.


2. Who We Are (Data Controller)

For purposes of applicable data protection law, including the EU General Data Protection Regulation (GDPR), the UK GDPR, and the California Consumer Privacy Act (CCPA/CPRA), the data controller responsible for personal information collected through this Site is Nicholas Renard.

Our contact details for privacy matters are:


3. Information We Collect

3.1 Information You Provide Directly

You may choose to provide us with information in the following ways:

  • Contact form and correspondence. When you use the contact form on the Site, we receive your name, email address, and the contents of your message. We use this information solely to respond to your inquiry. If you email us directly, we receive the content of your message and your email address.
  • Product accounts and billing. If you register for, subscribe to, or purchase an NRCOM Product, we or our service providers may collect account details, contact information, and transaction information as described in that Product's own privacy policy and terms.

3.2 Information Collected Automatically

When you visit the Site, we (and the analytics providers described in Section 7) collect limited technical information automatically, including:

  • The pages and content you visit on the Site
  • The approximate general location derived from your IP address (for example, country or region)
  • Device type, operating system, and browser type
  • Referring URLs and links clicked
  • The date and time of your visit

This information is collected primarily in aggregate form for analytics, security, and site-improvement purposes. Where we process an IP address, it is handled in a way that does not identify you beyond what is necessary and is not used to build a profile of you.

3.3 Information Relating to NRCOM Products

The NRCOM Products are designed to minimize data collection. For example, the DimDash app operates on-device with no account, no analytics, and no cloud dependency; your configured dashboards remain between the app and the services you run. Some Products may involve account registration, subscription management, or transactional communications; information related to those Products is described in their respective privacy policies and app-store privacy labels.


4. How We Use Your Information

We use personal information for the following purposes:

  • To respond to your inquiries. Contact-form submissions (name, email, message) are used to reply to you and to address the matter you raised.
  • To operate and improve the Site. Aggregate usage information helps us understand how visitors use the Site, identify and fix errors, and improve content and performance.
  • To protect security and prevent abuse. We use minimal technical safeguards (including spam protections on the contact form) to keep the Site safe.
  • To operate Products you use. Where you register for or purchase a Product, information is used to provide that Product, process transactions, and send service communications.
  • To comply with legal obligations. We may process information where required by applicable law, regulation, or legal process.

We do not sell personal information, and we do not use it for targeted advertising or for building advertising profiles.


5. Legal Bases for Processing (EEA and UK)

If you are located in the European Economic Area (EEA) or the United Kingdom, we process personal information based on the following legal grounds:

  • Consent (Article 6(1)(a)). Where we rely on consent, you may withdraw it at any time without affecting the lawfulness of processing that occurred before withdrawal.
  • Contract (Article 6(1)(b)). Where processing is necessary to provide a Product or service you requested, or to take steps at your request before entering into a contract.
  • Legitimate interests (Article 6(1)(f)). To operate, secure, and improve the Site and Products, to prevent abuse, and to respond to inquiries. We balance these interests against your rights and freedoms.
  • Legal obligation (Article 6(1)(c)). Where processing is necessary to comply with a legal obligation to which we are subject.

6. Cookies and Similar Technologies

The Site aims to minimize reliance on cookies. Our primary analytics provider (Plausible) is configured to be cookieless and privacy-friendly, and does not require consent banners for its basic operation because it does not set tracking cookies or collect personal identifiers.

Our hosting and analytics providers may use cookies, local storage, or similar technologies for security, session, or performance purposes. Where the law requires consent before non-essential cookies or tracking are deployed, we will only place them after obtaining your consent through a consent banner or mechanism. You can control or delete cookies through your browser settings.


7. Analytics and Measurement

To understand how the Site is used, we rely on privacy-respecting, aggregate analytics. Our analytics configuration includes Plausible Analytics and, in some deployments, Vercel Analytics and Vercel Speed Insights. These tools provide us with aggregate statistics such as page views, visitor counts, top pages, referrers, and general geographic regions.

Because this information is aggregate and does not identify individual visitors, it does not constitute personal information for most purposes. The analytics providers act as processors on our behalf, and we have configured them to limit data collection to what we need. The DimDash Product itself does not use analytics and processes data on-device.


8. How We Share Information

We do not sell, rent, or trade personal information. We share information only in the limited circumstances described below:

  • Service providers (processors). We engage a small number of third parties that help us operate the Site and Products, including:
    • Web hosting and deployment providers (for example, Vercel)
    • Email delivery providers (for example, Resend) used to deliver contact-form messages and service communications
    • Analytics providers (see Section 7)
    • Payment processors (see Section 9)
    These providers receive only the information necessary to perform their functions, are bound by appropriate data-processing agreements, and may not use your information for their own purposes.
  • Legal requirements. We may disclose information if required to do so by law, regulation, or legal process, or where necessary to protect the rights, property, or safety of ourselves, our users, or others.
  • Business transfers. In the event of a merger, acquisition, reorganization, or sale of assets, personal information may be transferred as part of that transaction, subject to this policy continuing to apply.

9. Payments

For Products that involve paid subscriptions or purchases, payments are processed by third-party payment providers such as Stripe, and (for app-store purchases) by the relevant app store such as Apple's App Store. We do not collect, store, or process your full payment card details on our servers. Card numbers and related payment data are handled by the payment provider under its own privacy and security practices.


10. International Data Transfers

The Site and its infrastructure are operated primarily from the United States. If you access the Site from outside the United States, your information may be transferred to, and processed in, the United States and other countries where our service providers operate.

Where we transfer personal information from the EEA, the UK, or Switzerland to countries that have not been recognized as providing an adequate level of protection, we rely on appropriate safeguards, including standard contractual clauses approved by the relevant supervisory authorities, and we require our service providers to apply equivalent protections.


11. Data Retention

We retain personal information only for as long as necessary to fulfil the purposes described in this policy, to comply with our legal obligations, to resolve disputes, and to enforce our agreements. Our general retention practices include:

  • Contact-form messages are kept for as long as needed to respond to and follow up on your inquiry, and are deleted when no longer needed.
  • Aggregate analytics are retained in aggregate form and do not identify you.
  • Product and billing records are retained in line with each Product's policies and applicable legal and tax requirements.

12. Data Security

We take reasonable and appropriate technical, administrative, and physical safeguards to protect personal information against unauthorized access, disclosure, alteration, and destruction. These measures include:

  • Encryption in transit (HTTPS/TLS) for the Site and its forms
  • Restricting access to personal information to those who need it to perform their duties
  • Minimizing the data we collect and retain
  • Relying on reputable, security-conscious service providers that maintain their own security programs

No method of transmission or storage is completely secure. While we strive to protect your information, we cannot guarantee its absolute security, and we encourage you to use strong, unique passwords where a Product account applies.


13. Children's Privacy

The Site and the Products are not directed to children under the age of 13 (or the higher minimum age in your jurisdiction, such as 16 in parts of the EEA), and we do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us at admin@nick-renard.com and we will take steps to delete it.


14. Your Privacy Rights

14.1 Rights under the GDPR (EEA and UK residents)

If you are located in the EEA or the UK, you have the right to:

  • Access the personal information we hold about you
  • Request correction of inaccurate or incomplete information
  • Request erasure of your personal information
  • Restrict or object to certain processing, including processing based on legitimate interests
  • Request data portability of information you provided to us
  • Withdraw consent at any time where processing is based on consent
  • Not be subject to decisions based solely on automated processing that produce legal or similarly significant effects
  • Lodge a complaint with your local data protection authority if you believe your rights have been violated

14.2 Rights under the CCPA/CPRA (California residents)

If you are a California resident, you have the right to:

  • Know what personal information we collect, use, and disclose
  • Request access to, and a copy of, the personal information we have collected about you
  • Request deletion of your personal information
  • Request correction of inaccurate personal information
  • Opt out of the sale or sharing of personal information
  • Limit the use and disclosure of sensitive personal information
  • Not receive discriminatory treatment for exercising these rights

We do not sell or share personal information, and we do not use or disclose sensitive personal information for purposes other than those you authorized. If you exercise your rights, we will not treat you differently.

14.3 How to exercise your rights

To exercise any of the rights described above, please contact us at admin@nick-renard.com. We may need to verify your identity before processing your request and may ask for information reasonably necessary to confirm who you are. We will respond within the timeframe required by applicable law (for example, within 30 days under the GDPR or 45 days under the CCPA, with permitted extensions). You may also authorize an agent to make a request on your behalf.


15. Automated Decision-Making and Profiling

We do not engage in automated decision-making, including profiling, that produces legal or similarly significant effects concerning you. Where we use automated tools (for example, spam protection on the contact form), they are limited to protecting the Site and do not make decisions about you.


16. Third-Party Links

The Site and the Products may contain links to third-party websites, app-store listings, or services (for example, the GitHub community, social profiles, or self-hosted dashboards you configure). This policy does not apply to those third parties. We encourage you to review the privacy policies of any third-party site or service you visit.


17. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or the Site and Products. When we make material changes, we will update the “Effective Date” at the top of this policy and, where appropriate, provide a more prominent notice. Your continued use of the Site or Products after changes take effect constitutes acceptance of the revised policy.


18. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or your personal information, please contact us:

We aim to respond to all legitimate requests within the timeframes required by applicable law.