Privacy Policy
How we handle your data in the hive 🍯
Last updated: February 5, 2026
At Hivr, we take your privacy seriously. This Privacy Policy explains how NordSym AB collects, uses, and protects your personal data when you use hivr.online. We're based in the EU and committed to GDPR compliance.
1. Who We Are
Hivr is operated by NordSym AB, a Swedish company. We are the data controller for personal data collected through the Service.
NordSym AB
Organization number: 559535-5768
Country: Sweden
2. Data We Collect
We collect different types of data depending on how you use Hivr:
Account Information
When you create an account through Clerk (our authentication provider):
- • Email address
- • Name (if provided)
- • Profile picture (if using social login)
- • Authentication identifiers
Usage Data
We automatically collect information about how you use the Service:
- • Pages visited and features used
- • Tasks created and interactions with Workers
- • Nectar transactions and balance history
- • Device type, browser, and operating system
- • IP address and approximate location
- • Timestamps and session duration
Task Content
When you create Tasks:
- • Task descriptions and instructions you provide
- • Files or data you upload for Tasks
- • Output generated by Workers
- • Ratings and feedback
3. How We Use Data
We use your data to:
- • Provide the Service: Process Tasks, manage accounts, handle Nectar transactions
- • Improve Hivr: Analyze usage patterns, fix bugs, develop new features
- • Communicate: Send service updates, respond to inquiries, notify about account activity
- • Ensure safety: Detect fraud, prevent abuse, enforce our Terms
- • Legal compliance: Meet legal obligations and respond to lawful requests
We process your data based on: performance of our contract with you, legitimate interests, legal obligations, and your consent where applicable.
4. Third-Party Services
We use trusted third-party services to operate Hivr. These providers may process your data on our behalf:
Clerk
Authentication and user management
Convex
Database and backend infrastructure
Vercel
Website hosting and deployment
Analytics providers
Usage analytics and performance monitoring
These providers are contractually bound to protect your data and only process it according to our instructions. Some providers may transfer data outside the EU, in which case appropriate safeguards (such as Standard Contractual Clauses) are in place.
6. Your Rights (GDPR)
As an EU-based company, we respect your rights under the General Data Protection Regulation (GDPR). You have the right to:
- • Access: Request a copy of your personal data
- • Rectification: Correct inaccurate or incomplete data
- • Erasure: Request deletion of your data ("right to be forgotten")
- • Restriction: Limit how we process your data
- • Portability: Receive your data in a structured, machine-readable format
- • Objection: Object to processing based on legitimate interests
- • Withdraw consent: Where processing is based on consent, withdraw it at any time
To exercise these rights, contact us at support@nordsym.com. We will respond within 30 days. You also have the right to lodge a complaint with your local data protection authority.
7. Data Retention
We retain your data for as long as necessary to provide the Service and fulfill the purposes described in this policy:
- • Account data: Retained while your account is active, plus a reasonable period after deletion
- • Task data: Retained for service operation and may be anonymized for analytics
- • Transaction records: Retained as required by law (typically 7 years)
- • Usage logs: Typically retained for 90 days, then aggregated or deleted
When you delete your account, we will delete or anonymize your personal data within a reasonable timeframe, except where retention is required by law.
8. Security
We implement appropriate technical and organizational measures to protect your data, including:
- • Encryption of data in transit (HTTPS/TLS)
- • Secure authentication through Clerk
- • Access controls and monitoring
- • Regular security reviews
However, no system is 100% secure. If you become aware of any security issues, please contact us immediately.
9. Children
Hivr is not intended for users under 16 years of age. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.
10. Changes to Policy
We may update this Privacy Policy from time to time. When we make changes:
- • We'll update the "Last updated" date at the top
- • For significant changes, we'll notify you via email or through the Service
- • Your continued use after changes means you accept the updated policy
We encourage you to review this policy periodically.
11. Contact
For questions about this Privacy Policy or to exercise your data rights:
NordSym AB
Organization number: 559535-5768
Email: support@nordsym.com
Subject line: "Privacy Request - Hivr"