Privacy Policy
Last updated: 27 August 2026
This page explains what NatNux collects and how we treat it. NatNux is a Linux workspace with a coding assistant. You talk in everyday language; we run that work on isolated computers.
Account
When you continue with Google we receive your name and email to create and sign you into your account. We do not use your Google login for Gmail, Drive, Calendar, or other Google products.
Work files (private, not encrypted at rest)
Your private workspace — the files the assistant and you edit under /work — is stored on NatNux’s servers. Those files are not published on the internet. They are not encrypted at rest. Platform operators with access to the host can read them. Other users cannot see them in the app.
Conversation history, plans, and similar product data are stored so you can come back to your sessions. Treat that history as private to your account, not as a vault for passwords.
Public folder (not encrypted, published)
Each account also has a public folder. That folder is not encrypted. It is always available and published on the internet under your username (and paths under it). Anyone who knows the URL can read those files. There is no separate “publish” step — what is in the folder is live.
Do not put secrets, API keys, private repositories, or personal data you are not willing to share in the public folder.
Keys and secrets
The coding assistant runs on NatNux’s own LLM provider. You buy prepaid nuxies on NatNux. We do not create a Google Cloud project or API key in your Google account, and we do not store a Google Cloud token for you.
Secrets you save for the assistant (for example MCP tokens) are stored encrypted. We show only a hint in the UI, never the full secret again.
Assistants and isolated guests
OpenCode runs in an isolated guest virtual machine for each turn and talks to NatNux’s LLM proxy. The provider API key never enters that guest. Grok and Codex, if you choose them, use their own logins saved in your workspace.
Prompts you send are processed by NatNux’s inference provider (and by Grok or Codex if you enable them) under those providers’ terms. We meter usage (for example CPU, network, disk, and assistant tokens) so the service stays fair.
Abuse checks
On create-account, forgot-password, and email login we run Cloudflare Turnstile so automated abuse cannot farm accounts or fill the mail queue. Turnstile looks at the browser, not the words you type. We send the check token and your IP address to Cloudflare only to verify that check.
Payments
If you subscribe after the trial, we send Stripe the email on your account so they can charge the monthly platform fee and send invoices. Nuxies top-ups are also paid through Stripe. Card details are entered on Stripe, not on NatNux. We store Stripe customer, subscription, and payment ids so we know whether your plan is active and how many nuxies you have.
Logs
We keep operational logs (errors, usage, security events) to run and protect the service. We redact tokens and keys from those logs when we can. We do not sell your personal information.
Google API Services User Data Policy (Limited Use)
NatNux's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. developers.google.com/terms/api-services-user-data-policy.
Google user data we receive is your name and email (Google Sign-In) so we can create your NatNux account and sign you in. We do not request Google Cloud access.
We do not sell Google user data, use it for advertising or credit decisions, or transfer it to data brokers. Humans do not read Google user data except for security, abuse investigation, or legal duty. We do not read your Gmail, Drive, Calendar, or other Google products.
The coding assistant runs on NatNux’s own LLM provider. Prompts are sent through NatNux; we do not store them in the application database longer than needed to run the turn.
Delete your data
You can delete your NatNux account and the data we hold, or revoke Google access, yourself:
- Delete your NatNux account — removes your NatNux login, secrets, conversation history, prepaid credit records, workspace and public files, running computers, and site bindings from NatNux. Stripe billing for this account stops.
- Revoke Google access — stops NatNux from using Google Sign-In.
A domain you registered stays at the registrar until you transfer it or it expires. Payment invoices, server logs, and backups may remain until they rotate.
Changes
We may update this notice as the product changes. The date above is the latest revision.