Privacy Policy

Code: Pol-Privacidad-002 · Last updated: July 2026

This is a courtesy translation of our privacy policy. In the event of any discrepancy, the Spanish version prevails.

1. Introduction

This Privacy Policy establishes how the novia application collects, uses, stores (temporarily) and protects the personal data provided by its users, in compliance with the laws in force in the Dominican Republic, in particular Law No. 172-13 on the Protection of Personal Data, Law No. 358-05 on Consumer Protection, Law No. 53-07 on High Technology Crimes and Offenses, and other applicable regulations.

Our priority is to provide users with transparency, security and control over their personal data at all times.

2. Information We Collect

In order to provide the financial analysis service, the novia application (hereinafter "the APP") receives:

  • PDF files containing bank statements provided directly by the user at the time of upload.
  • Minimal contact data for registration and authentication (for example, email address).
  • Technical data and operational metadata (date and time of use, access and activity logs, excluding sensitive financial information).
  • Strictly financial emails, only when the user has expressly authorized the integration with their email account. These emails are limited to those related to purchases, transactions, bank movements, account statements or credit/debit cards. Under no circumstances is the content of personal emails, or of emails unrelated to financial information, accessed, collected or processed.

We do not collect financial information directly through banking connections, nor do we take part in monetary transactions.

3. Automated Processing of Emails

Where the user voluntarily activates the email integration feature, the APP may analyze, in an automated manner, certain emails with financial content, for the sole purpose of identifying and recording expenses.

This processing:

  • Is carried out automatically, without human intervention.
  • Is limited solely to emails related to financial transactions.
  • Does not entail general access to the content of the email account.
  • Does not allow the reading or processing of personal emails.

NOVIA, S.A.S. does not access, review or use emails other than those strictly necessary for the purpose described.

4. Temporary Processing of Information

The information that is uploaded is processed solely to process and extract the information required to generate personalized analyses and reports. Such documents:

  • Are processed in memory or in secure temporary environments.
  • Are not stored or archived in any database or server after the analysis is completed.
  • Are deleted immediately and automatically as soon as processing ends.
  • Irrelevant or confidential data is not retained.

In the case of emails processed through an integration authorized by the user, NOVIA, S.A.S. does not store, retain or keep copies of those emails. Processing is carried out temporarily and automatically, extracting only the information required to record expenses within the APP.

The results of the analysis, which may include summaries and financial goals, may be stored under strict security measures and only with the explicit consent of the user.

5. Information Security

We implement technical and organizational measures to protect the confidentiality, integrity and availability of the data, such as:

  • Encryption of information in transit using secure TLS protocols for all communications.
  • Secure processing on trusted servers with in-memory encryption systems and restricted access.
  • Access management with multi-factor authentication (MFA) for users and administrators.
  • Activity logging and continuous monitoring to detect unauthorized access or incidents.
  • Immediate response protocols for any security incident or breach, including notification of affected users.

These measures comply with the obligations set out in Law No. 53-07 on technology crimes and Law No. 172-13 on data protection.

6. Data Sharing

The APP does not share personal data or PDF files with external third parties, except in the following circumstances:

  • Where there is a valid legal, judicial or administrative obligation.
  • To cooperate in investigations related to computer crimes that affect the confidentiality of information.
  • Where necessary to provide the service through technological integrations with third parties, provided that the USER has given their prior, express and informed consent.

Under no circumstances is specific or personal data sold, rented or commercialized.

7. Data Retention

Since the files are not stored, the APP does not retain this information beyond the time necessary for the analysis.

Data derived from the analysis that the user chooses to keep will be subject to strict internal retention policies, which the user may review and modify.

8. ARCO Rights (Access, Rectification, Cancellation and Objection)

The user has the right to:

  • Request access to the personal data held by the APP.
  • Rectify any incorrect or erroneous information.
  • Cancel or request the permanent deletion of their personal data, including generated results.
  • Object to the processing of their data for specific purposes by means of a formal request.

To exercise these rights, the user must send a clear and complete request to the following email address: soporte@novia.com.do

We will respond within no more than 15 business days in accordance with applicable law.

9. User Consent

Use of the application implies:

  • Acceptance of this Privacy Policy.
  • Explicit consent to the temporary processing of PDF files and the analysis of the information contained in them.
  • Authorization for the secure and confidential use of the data for the purposes strictly defined in this policy.
  • The email integration feature requires additional, specific and separate consent from the user, which may be revoked at any time.

The user is free to withdraw their consent at any time and to request the deletion of their data through the established mechanisms.

10. User Responsibility

The USER is responsible for:

  • Uploading authentic, correct and complete documents and data.
  • Keeping their password, access credentials and any authentication method associated with their account secure.
  • Knowing and accepting the limitations of the service, understanding that the APP provides analysis for guidance purposes only and does not constitute certified financial, legal or professional advice.

In relation to the automatic expense recording feature through email integration, the USER is responsible for:

  • Guaranteeing that they are the holder of the email account linked to the APP, or that they have legitimate authorization to use it.
  • Granting the consent necessary for the access to and automated processing of the emails in accordance with these Terms and Conditions and with the Privacy Policy.
  • Ensuring that the processed emails do not infringe the rights of third parties or, where applicable, holding the consent necessary for the processing of third-party personal data that may be contained in them.
  • Reviewing and verifying the information generated by the APP, given that the automated processing of emails may be subject to errors of interpretation, classification or reading.

The USER shall be solely responsible before NOVIA, S.A.S. and before third parties for any improper use of the feature, for any lack of legitimacy in accessing the email account, or for the unauthorized processing of third-party personal data.

11. Changes to the Policy

Any change that substantially affects this policy will be communicated through the application and official channels.

Users are advised to review this policy periodically in order to stay informed about updates.

12. Applicable Law and Jurisdiction

This policy is governed by the laws of the Dominican Republic. Any dispute relating to its interpretation or application will be resolved by the competent courts of the country.

13. Google API Services — Limited Use Disclosure

novia's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

novia requests the https://www.googleapis.com/auth/gmail.readonly scope for the sole purpose of identifying and reading emails sent by banking institutions (transaction alerts, purchase notifications and account statements) in order to record the corresponding expenses inside the app. Data obtained through this scope is processed in memory, is never sold or transferred for advertising purposes, is not used to train generalized artificial intelligence or machine learning models, and is not read by humans except where required for security purposes, to comply with applicable law, or with the user's explicit consent.

The user may revoke novia's access at any time from within the app or from their Google Account permissions page.