Nore beta policy
Privacy Policy
High-level privacy draft for the Nore Public Alpha in Mexico and the United States. English (United States) controls.
This text is an implementation draft and requires human and legal review before public launch.
Policy status
Effective date: 2026-07-27. Last updated: 2026-07-29. Version: alpha-public-v1. English (United States) controls.
This policy is an implementation draft, not lawyer-approved final legal advice.
Data Nore uses
- Account data such as email, authentication state, verification, password reset events, and date of birth. Date of birth is private, stored server-side, and is not included in public profiles or ordinary session responses.
- Profile data such as username, display name, biography, privacy settings, avatar, banner, wallpaper, gallery, and profile media.
- User-generated content including posts, Bits, blogs, clips, Watch videos, stories, comments, reactions, follows, saved items, collections, chats, messages, communities, and media uploads where applicable.
- Moderation and safety data including reports, cases, sanctions, appeals, block or mute state, and audit records.
- Technical logs, security events, cookies, session data, rate-limit events, and runtime diagnostics needed to operate the app.
- Watch history and playback progress when you use those features while signed in.
- Optional aggregated Watch retention telemetry only after separate, revocable consent. Nore stores a short-lived pseudonymous playback-session HMAC for up to seven days and long-lived aggregate counts while the video exists.
- Recommendation signals for signed-in accounts. Home For you uses followed Topics and inferred Topic affinity; that affinity can reflect reactions, comments, replies, saved items, reposts, and qualified or completed Clip and Watch viewing, while early skips reduce relevance. Read For you also uses followed authors, active community memberships, recency, and aggregate engagement. Seek and Watch use followed Topics, inferred Topic affinity, completed viewing and early skips, popularity and freshness, and target-level feedback from those feeds. These surfaces personalize only when the control is enabled and this Privacy Policy version has been acknowledged. “Not interested” is used only in Seek and Watch.
Privacy for people aged 13 to 17
Nore uses date of birth only on the server to enforce the minimum age and apply the initial privacy state. It is not included in public profiles, ordinary sessions, analytics, or public APIs.
An account under 18 starts private, so only approved followers can view the full profile. The user may later make the profile public; the general contact, reporting, and blocking rules continue to apply.
Turning 18 does not automatically change the account's privacy setting. Nore keeps the existing choice until the user changes it.
Service providers
Nore is built with Cloudflare Workers, R2, Stream, Hyperdrive, and Turnstile; Neon Postgres; Better Auth; Resend for transactional email; Sentry for technical error reporting; Ably and LiveKit for realtime and live features; Cloudflare Jobs for asynchronous work; and OpenAI's moderation API for public text and uploaded media. Private DM text is excluded from proactive third-party moderation. These services may process data needed for those features.
Watch retention analytics are opt-in and separate from acknowledging this policy. Playback and functional history continue to work when analytics are declined. Watch retention tables do not store account ids, IP addresses, user-agent strings, countries, or referrers, although infrastructure and security layers may process network information temporarily to deliver and protect requests.
Recommendation personalization is a separate signed-in product feature. It is enabled by default during the closed beta, only becomes effective after acknowledging the current Privacy Policy, and can be disabled at any time in Account Settings. The explicit Topics selected during onboarding also prioritize that onboarding's people and community suggestions. Explore is not reordered by these signals; it may participate in aggregate shadow evaluations that do not store a user identifier. Nore does not collect passive dwell from Posts, Bits, or Blogs, and anonymous visitors are not assigned recommendation profiles.
Any active Topic may contribute to an inferred interest and may appear in a recommendation explanation. Muted Topics stay out of general feeds and automatic recommendations even when personalization is off; explicit Topic pages and creator-filtered lists remain accessible. Blocked Topics are not used as recommendation signals or explanations. “Not interested” hides only the selected Clip or Watch video and is not converted into a negative interest in its Topics or author.
Retention, export, and deletion
After password confirmation, Nore immediately hides the account and revokes active access, but retains the account, profile, content, and media for exactly 30 days so the user can restore it from a restricted email/password session. After the UTC deadline, an irreversible finalizer anonymizes the account and removes eligible media.
Self-service data export is not available. Verified access and export requests use a manual support process backed by an encrypted internal collector. Archives omit third-party or restricted safety data and expire after seven days. This process is not operational until support and secure delivery channels are activated.
Some records may be retained when needed for safety, abuse prevention, legal compliance, dispute handling, or audit integrity. Moderation, report, sanction, security, and anti-abuse records may have different retention behavior than ordinary profile content.
Revoking Watch analytics consent stops future telemetry. Existing aggregate statistics cannot be linked back to or removed for one viewer. Hard-deleting a Watch video removes its progress and retention records by cascade.
Raw recommendation signals, observations, video-consumption sessions, personalized slates, and “Not interested” choices are retained for no more than 90 days; interests decay with a 30-day half-life. You can delete this history separately without removing followed or muted Topics. Deleting the account removes its recommendation data even when the account row is retained as an anonymized tombstone.
Retention and export details still require human and legal review before public launch.
Your choices
You can disable personalized recommendations, delete recommendation history, adjust profile privacy, manage Watch analytics consent, block or mute users, report content, request help, and begin deletion from Account Settings, Account & Safety, Safety Center / Delete Account.