Effective Date: June 18, 2021
Nut is designed to find your items easily. This policy describes what information we collect from you and how we use it to accomplish that mission.
We take your privacy as seriously as you do, and because of that we take great care to collect only the information necessary to provide you with the best possible product experience.
As you review our policy, keep in mind that it applies to Beijing Zizai Co., Ltd’s (“We”, “Us”) website, mobile app, help center, and all other associated services that we provide (“Services”).
Table of Contents
The information we collect depends on what services you use and how you use them. Please see below for more details. Note that failure to provide necessary information when requested may result in you not being able to fully utilize our Services.
When you place an order on our website, and otherwise when needed to respond to a specific request, you’ll need to provide an email address, a first and last name and/or a shipping address. In some cases, we may also require your phone number.
In order to complete your order on our website, you’ll need to provide payment information, such as your credit card or PayPal account. This information is needed in order to process your order and is not stored on our servers.
You’ll need to use a valid email address or phone number and create a password to create an account for Services on the app. You can choose whether or not you’d like to provide your first and last name.
We do not identify you personally to other users or make your account information available to any third parties in any way that could identify you without your prior consent.
When you create a Nut account, you may choose to connect and interact with a third-party social networking service (“Social Network”). If you decide to interact with a Social Network when using our Services, we are permitted to collect information that you have already made public on your Social Network account. You can manage this information in the privacy settings of each Social Network.
When you bind a device with the app, that device’s unique identifier (or Device ID) will be associated with your account. If you choose to name your device or add a photo of it, this information will also be associated with your account.
Nut is designed to tell you where your items are. In order to do that, it’s necessary to collect data about your location. We use the term “Location Information” to refer to the combined location data of your phone and the device.
While the app is running on your phone, it periodically transmits your Location Information. This allows us to show you, on your map, the last place your device was seen by your phone (“Last Place Seen”). It is one of the primary ways we help you find your lost items.
The app normally only displays the latest Location Information update for each of your devices in your app, to provide the Last Place Seen. Location Information for each device is displayed in your app for up to 30 days, to support the Location History feature. We do this so you can find the most recent Location Information for your devices, in case you lose them.
Location Information is archived separately from your account data in a way that, alone, it is not associated with your account or registration data using a process called pseudonymization. We keep this archival data so we can answer general questions unrelated to any person, such as “How many devices were in New York in 2017 versus 2018?”
We may also collect and update Location Information for your device(s) from other users who are running our app or from other third parties that are using an app or device that has integrated the finding functionality (each, a finder) within Bluetooth range of your device. We do this to provide you with the most recent and accurate location of your devices, even if they are out of your devices’ Bluetooth range. These updates are fundamental to the Finding Community, which allows users to help each other find their lost devices. Likewise, your app may anonymously help other community members find their devices! The Location Information is reported to device owners anonymously and does not identify the owner of a device to others and vice versa.
If you use a computer, phone, or other device to visit our website or help center, we use the IP address of that computer or device to determine an approximate location. We do this so that we can provide you with a better, more personal customer service experience.
We use your Location Information to provide the Services and may use your Location Information to promote the Services or provide you with offers. However, your Location Information is never shared with other users unless you choose to share it through our Services.
We collect information about how, and how often you use our Services, including on our mobile and windows applications. For those using our mobile application, we also collect certain information that your mobile device sends when you use them for Services. This includes information such as your device’s model, operating system type and version, and the dates and times of your requests. We use this information to provide you with optimal services and support, and to collect statistics that help us understand our user base.
We provide support services via live chat on our website, email request submissions, recorded outbound telephone calls and direct email. We collect any information you may choose to provide to our customer care team in the process. This includes, but is not limited to: your name, email address, phone number, and mailing address. We may use and process your information, including Location Information, to handle your support request and provide you with the best support possible. You may also choose to submit a diagnostic report to our support team for troubleshooting purposes.
We collect information from current, prospective, and former Employees, their contact points in case of a medical emergency, and beneficiaries under any insurance policy (“Human Resources Data”). The Human Resources Data we collect may include title, name, address, phone number, email address, date of birth, passport number, driver’s license number, Social Security number or other government-issued identification number, financial information related to credit checks, bank details for payroll, information that may be recorded on a CV or application form, language abilities, contact information of third parties in case of an emergency and beneficiaries under any insurance policy. We may also collect Sensitive Human Resources Data such as details of health and disability, including mental health, medical leave, and maternity leave; information about national origin or immigration status; and optional demographic information such as race, which helps us achieve our diversity goals.
We acquire, hold, use and Process Human Resources Data for a variety of business purposes including: workflow management, including assigning, managing and administering projects; human Resources administration and communication; payroll and the provision of benefits; compensation, including bonuses and long-term incentive administration, stock plan administration, compensation analysis, including monitoring overtime and compliance with labor laws, and company recognition programs; job grading activities; performance and employee development management; organizational development and succession planning; benefits and personnel administration; absence management; helpdesk and IT support services; regulatory compliance; internal and/or external or governmental compliance investigations; internal or external audits; litigation evaluation, prosecution, and defense; diversity and inclusion initiatives; restructuring and relocation; emergency contacts and services; employee safety; compliance with statutory requirements; processing of employee expenses and travel charges; and acquisitions, divestitures, and integrations.
We may receive information about you from other sources, including through third-party services and organizations to supplement information provided by you. For example, if you access our Services through a third-party application, such as an App Store or Social Network, we may collect information about you from that third-party application that you have made public via your privacy settings. Information we collect through App Stores or Social Network accounts may include your name, your Social Network user identification number, your Social Network user name, location, gender, birth date, email, profile picture, and your contacts on the Social Network. This supplemental information allows us to verify information that you have provided to us and to enhance our ability to provide you with information about our business, products, and Services.
Cookies are small text files that are placed on your computer’s hard drive or onto your mobile device’s memory -- if your browser is set to accept cookies. Like many other online services, cookies and other tools like them help us collect and understand how you use our services.
The cookies we use expire after they have fulfilled their purpose. Some cookies expire when you close your browser (i.e., session cookies) or after a set period of time (i.e., persistent cookies). The expiration time of cookies that are placed by third parties (explained below) is determined by the third-party, not us.
Web beacons (also known as web bugs, pixel tags or clear GIFs) are tiny graphics with a unique identifier that may be included on our Services for several purposes, including to deliver or communicate with cookies, to track and measure the performance of our Services, to monitor how many visitors view our Services, and to monitor the effectiveness of our advertising. Unlike cookies, which are stored on the user’s hard drive, web beacons are typically embedded invisibly on web pages (or in an e-mail).
While our website and the app at this time do not recognize automated browser signals regarding tracking mechanisms, such as "do not track" instructions, you can generally express your privacy preferences regarding the use of most cookies and similar technologies through your web browser, as indicated above.
Sometimes we use third-party service providers. These third-party service providers may place cookies on your computer's hard drive or your mobile device's memory or use web beacons to collect or receive information from the Services and elsewhere on the internet and use that information to provide analytics and to target ads on our behalf.
We utilize Google Analytics, a service provided by Google, Inc. to gather information about how users and visitors engage with our Site and Services. For more information about Google Analytics, please visit This link. You can choose not to be included in Google Analytics at This link.
These outside services may also collect information about your use of other websites over time. Since we do not link any information that you provide to us within the app to the information we store within the third-party analytics software, this additional information is stored in a way that does not directly identify you.
When you purchase our product, we process your payments through a third-party application, including the Apple App Store, Google Play App Store, Amazon App Store (together with any similar applications, “App Stores”) and Social Networks such as Facebook. The third-party application may collect certain financial information from you to process a payment on behalf of us, including your name, email address, address and other billing information.
We may use your information to provide you with a better service, improve the quality of our products and Services, and promote our Services. We use and process your information, including Location Information, to create anonymous, statistical and aggregated data reports where individual users are not identified. The specific purposes for our acquisition, hold, use, and processing of your information include:
We may use information about you to fulfill requests for products, Services, or information, including information about potential or future Services, including to: generally manage individual information and accounts; respond to questions, comments, and other requests; provide access to certain areas, functionalities, and features of our Services, including personalization; and contact you to answer requests for customer support or technical support.
We may use information about you for its administrative purposes, including to: measure interest in our Services; develop new products and Services; ensure internal quality control and optimize your experience; verify individual identity; communicate about individual accounts and activities on our Services and systems, and, in our discretion, changes to any policy; send email to the email address you provide to us to verify your Account and for informational, transactional and operational purposes, such as Account management, customer service, or system maintenance; process payment for products or services purchased; process applications and transactions; prevent potentially prohibited or illegal activities; and enforce our Terms.
We may use information to provide you with materials about offers, products, and Services that may be of interest, including new content or Services. We may provide you with these materials by phone, postal mail, facsimile, or email, as permitted by applicable law. Such uses include: to tailor content, advertisements, and offers; to notify you about offers, products, and services that may be of interest to you; to provide Services to you; for other purposes disclosed at the time that individuals provide information; or otherwise with your consent.
You may contact us at any time to opt out of the use of your personal information for marketing purposes, as described in section below.
We may use information to create non-directly identifiable information that we may use alone or in the aggregate with information obtained from other sources as set forth herein, in order to help us to optimally deliver our existing products and Services or develop new products and Services. For instance, from time to time, we may perform research (online and offline) via surveys. We may engage third-party service providers to conduct such surveys on our behalf. All survey responses are voluntary, and the information collected will be used for research and reporting purposes to help us better serve individuals by learning more about their needs and the quality of the products and services we provide. The survey responses may be utilized to determine the effectiveness of our Services, various types of communications, advertising campaigns, and/or promotional activities. If an individual participates in a survey, the information given will be used along with that of other study participants. We may share anonymous individual and aggregate data for research and analysis purposes.
Individuals who provide us with personal information may receive periodic emails, newsletters, mailings, or phone calls from us, as allowed by applicable law, with information on our or our business partners’ products and services or upcoming special offers/events we believe may be of interest. We offer the option to decline these communications at no cost to the individual by following the instructions further below.
In Australia, we will only use and disclose your personal information for the purposes of marketing our Products and Services or services of third party organizations where you have consented to us doing so, or as otherwise permitted by law.
We may use information about you to create anonymized and aggregated information. Anonymized and aggregated information is used for a variety of functions, including the measurement of visitors’ interest in and use of various portions or features of the Services. We may use such anonymized or aggregated information in a number of ways, including research, internal analysis, analytics, and any other legally permissible purposes. We may share this information within us and with third parties for our or their purposes in an anonymized or aggregated form that is designed to prevent anyone from identifying you.
Our Services may offer various tools and functionalities. For example, we allow you to provide information about your friends through our referral services, such as “Sharing.” Our sharing services may allow you to forward or share certain content with a friend or colleague, such as an email inviting your friend to use our Services. Email addresses that you may provide for a friend or colleague will be used to send your friend or colleague the content or link you request, but will not be collected or otherwise used by us or any other third parties for any other purpose. You agree that you have that person’s permission to provide us with that information and for us to use it for this limited purpose.
We may use information for which we have a legitimate interest, such as direct marketing, individual or market research, anti-fraud protection, ensuring the integrity and security of our services and systems, or any other purpose disclosed to you at the time you provide information or with your consent.
We use third-parties, including service providers and software solutions, including web hosting and other cloud based services, to provide you with the best possible experience. We may share your information with our third-party service providers or affiliates (e.g. cloud-based and hosting services, partners, technical service providers, consultants, mail carriers, communication agencies and customer support providers) in order to provide, improve, and promote the Services on our behalf.
For example, we may disclose information to our service providers in order to enable them to communicate with you on our behalf. We may also disclose information to platform providers, such as Facebook, in order to permit such providers to serve ads and promote the Services on our behalf on such platforms. To the extent possible, your personal information will be stored in hashed or obfuscated form.
We will not share your personal information with independent third parties other than in the circumstances discussed above without your consent.
We may share with third parties, including advertisers and service providers, anonymized, aggregated data we collect about you and other users, such as de-identified demographic information, de-identified Location Information, and information about the computer or device from which you access the Services, or the results of hashing your email address.
With respect to onward transfers to agents under Privacy Shield, Privacy Shield (as may other applicable laws) requires that we remain liable should its agents process information in a manner inconsistent with the Privacy Shield Principles.
We may use and process your information including Location Information to prevent fraud, misappropriation, infringements, identity theft, and other illegal activities and misuse of our Services.
Like other companies, we may disclose your information to government or law enforcement officials or private parties as we, in our sole discretion, believe is necessary to
In addition, if we are acquired by a third-party as a result of a transaction such as a merger, acquisition or asset sale or if our assets are acquired by a third-party, in the event we go out of business or enter bankruptcy, some or all of our assets - including any information collected from or about you - may be disclosed or transferred to a third-party acquirer in connection with the transaction.
You may also request that we provide access to and/or a copy of certain information we hold about you, seek rectification, or request erasure of certain personal information held about you by us.
Please include your full name, email address associated with your Account, and a detailed description of your data request. Such requests will be processed in line with local laws. Under Privacy Shield or other applicable laws, you may also inquire as to whether we are processing personal information about you, request access to personal information, and ask that we correct, amend or delete it where it is inaccurate or has been processed in violation of the Privacy Shield Principles.
Although we make good faith efforts to provide individuals with access to their personal information, there may be circumstances in which we are unable to provide access and are not legally obligated to do so, including (depending on applicable law) but not limited to: where the information contains legal privilege, would compromise others’ privacy or other legitimate rights, where the burden or expense of providing access would be disproportionate to the risks to the individual’s privacy in the case in question or where it is commercially proprietary. To protect your privacy, we will take commercially reasonable steps to verify your identity before granting access to or making any changes to your personal information.
If you want us to delete your account, please contact us at email@example.com with your request. We’ll take steps to delete your requested personal information as soon as we can, but some information may remain in archived/backup copies for our records or as otherwise required or permitted by law.
Please note, however, that if you delete your account or other personal information, the Location Information associated with any active device(s) may still be collected anonymously from other users who are running the app within Bluetooth range of your device. However, any new Location Information that is collected will no longer be associated with your account. You may dispose of your devices at a local e-waste facility or contact customer care at firstname.lastname@example.org for more information.
We may periodically send you promotional newsletters and emails. You have the opportunity to opt-out of these by following the unsubscribe instructions provided in the emails you receive. Certain communications, like billing information and Service updates are necessary for you to receive, so you will not be able to opt out of those communications.
You have the right to object to and opt out of certain uses of your information. Where you have consented to our Processing of your information, you may withdraw that consent at any time and opt out of certain Processing activities, such as targeted marketing communications, by contacting email@example.com. Even if you opt out, we may still collect and use information regarding your activities on our Sites and/or information from the advertisements on third-party websites for non-interest based advertising purposes, such as to determine the effectiveness of the advertisements.
We maintain telephone “do-not-call” and “do-not-mail” lists as mandated by law. We process requests to be placed on do-not-mail, do-not-phone and do-not-contact lists within 60 days after receipt, or such shorter time as may be required by law.
We may occasionally send you push notifications through our mobile applications with notices that may be of interest to you. You may at any time opt out from receiving these types of communications by changing the settings on your mobile device. We may also collect location-based information if you use our mobile applications. You may opt out of this collection by changing the settings on your mobile device.
With regard to information that we receive in connection with the employment relationship, we will use such information only for employment-related purposes as more fully described above. If we intend to use this information for any other purpose, we will notify the individual and provide an opportunity to opt out of such uses.
Do Not Track (“DNT”) is a privacy preference that users can set in certain web browsers. DNT is a way for users to inform websites and services that they do not want certain information about their webpage visits collected over time and across websites or online services. Please note that we do not respond to or honor DNT signals or similar mechanisms transmitted by web browsers.
You can also choose not to be included in Google Analytics at This link. This opt-out must be performed on each device and browser that you wish to have opted-out.
If you choose to submit your product usage story or comment on our blog (“Feedback”), you should know that any information you submit there can be read, collected, or used by other users of those blogs, and could be used to send you unsolicited messages.
We are not responsible for the information you choose to provide in your Feedback or for any content or communications you receive as a result of sharing such information.
To request removal of your information from our blog or user story, please contact us at firstname.lastname@example.org.
You agree that all information collected via or by us may be transferred, processed, and stored anywhere in the world, including but not limited to, China, the United States, the European Union, in the cloud, on our servers, on the servers of our affiliates or the servers of our service providers. Your information may be accessible to law enforcement or other authorities pursuant to a lawful request. By providing information to us, you explicitly consent to the storage of your information in these locations.
Except in some cases where we may rely on an exception under the Australian Privacy Act 1988 (Cth), we will take reasonable steps to ensure that such overseas recipients do not breach the Australian Privacy Principles in the Privacy Act 1988 (Cth) in relation to such information.
We complies with the requirements of the EU-U.S. Privacy Shield Framework and the Swiss-U.S. Privacy Shield Framework (collectively “Privacy Shield”), as set forth by the U.S. Department of Commerce and the Federal Trade Commission (“FTC”), regarding the collection, use, and retention of personal information transferred from the European Economic Area and Switzerland to the United States. To the extent that the Privacy Shield applies to your information, if there is any conflict between the terms in this Policy and the Privacy Shield Principles, the Privacy Shield Principles shall govern. To learn more about the Privacy Shield program, please visit This link. Additionally, we may protect information through other legally valid methods, including international data transfer agreements.
“Privacy Shield” means the seven (7) principles of the Privacy Shield Framework:
Additionally, it includes the sixteen (16) supplemental principles described in the Privacy Shield:
If you are an EU or Swiss citizen and feel that we are not abiding by the terms of this Policy, or are not in compliance with the Privacy Shield Principles, please contact us at the contact information provided below.
In addition, we have agreed to refer unresolved complaints related to personal information to JAMS Privacy Shield Dispute Resolution Program and, with respect to employee and human resources data, has committed to cooperate with the panel established by local data protection authorities and comply with the advice given by the panel for EU citizens and with the Swiss Federal Data Protection and Information Commissioner’s authority and advice for such data of Swiss citizens. For more information and to submit a complaint regarding individual data to JAMS, a dispute resolution provider which has locations in the United States and EU, visit This link.
Such independent dispute resolution mechanisms are available to citizens free of charge. If any request remains unresolved, you may contact the national data protection authority for your EU Member State.
You may also have a right, under certain conditions, to invoke binding arbitration under Privacy Shield; for additional information, see This link.
We implement various systems, applications and procedures to secure your personal information, in order to reduce the risks of theft, damage, loss of information, or unauthorized access, disclosure, modification or use of information. Please be aware, however, that these measures cannot absolutely guarantee the security of your Personal Information. Therefore, although we take great efforts to protect your personal information, we cannot guarantee and you cannot reasonably expect that our databases will be immune from any wrongdoings, malfunctions, unlawful interceptions or access, or other kinds of abuse and misuse.
California law permits users who are California residents to request and obtain from us once a year, free of charge, a list of the third parties to whom we have disclosed their personal information (if any) for their direct marketing purposes in the prior calendar year, as well as the type of personal information disclosed to those parties. However, we do not share personal information with third parties for their own marketing purposes without your prior consent.
California residents can make certain requests about their personal information under the CCPA. Specifically, if you are a California resident, you may request that we:
Certain information may be exempt from such requests under applicable law. For example, we may retain certain information for legal compliance and to secure our Services. We may need certain information in order to provide the Services to you; if you ask us to delete it, you will no longer be able to use the Services.
The CCPA further provides you with the right to not be discriminated against (as provided for in applicable law) for exercising your rights under the CCPA.
The CCPA also sets forth certain obligations for businesses that “sell” personal information. We do not engage in such activity based on our understanding of the definition of sale under the CCPA and current guidance, and have not engaged in such activity in the past twelve months. We do share information as outlined in this Policy, including with other businesses through the use of website cookies, pixels, or other technologies in order to provide services including analytics and advertising and marketing our services on other sites or apps. You can control certain of these cookies through browser settings and other controls and as outlined in this Policy.
If you would like information regarding your rights under applicable law or would like to exercise any of them, please contact us at email@example.com. We will take reasonable steps such as verifying your email address and specific information to verify your identity and request.
You are responsible for keeping the secrecy of your password at all times. We recommend using a strong password that you do not share with other services.
If you believe the security of your account has been compromised, please change your password immediately through your app. You can also contact us at firstname.lastname@example.org for assistance.
You are responsible for ensuring the email address associated with your account is accurate. We use that email to contact you about service updates, changes to our policies, and account activities such as requests for your information or locate attempts on your device. We are not responsible for information or data transmitted to a third party as a result of a user providing an incorrect email address.
We may update this policy from time to time, so please review it frequently. We’ll notify you of material changes via a notice on our home page thirty days before they go into effect. If we are required by applicable data protection laws to give you enhanced notice or seek out consent to any such changes, we will do so. Otherwise, changes to this policy will be effective twenty days after their initial posting. We will make any immediate changes in order to comply with legal requirements.
Our Services are not directed to children under 13 and we do not knowingly collect personal information from children under 13. If we learn that we have collected personal information of a child under 13, we will take steps to delete such information from our files as soon as possible.
If you have a concern about how we collect and use information, please contact us as noted above. You also have the right to contact your local Data Protection Authority if you prefer. Contact details for Data Protection Authorities in the EU are available at This link.