Legal
Privacy policy.
NOMOI Labs. Last updated 2026-08-13.
What we collect
If you sign in, we collect your email address through Google Sign-In. We process the tasks and evidence you submit to produce verdicts and save job results for up to 24 hours. If you email a participant-pilot application, we receive the contact email, country or territory, primary testing language, device availability, age confirmation, required roster consent, and your separate optional choice about invitations to test TwoThumbs itself. API-key developer tools also collect content-free product telemetry by default: fixed tool and event names, job identifiers and counts, latency buckets, outcome or error classes, and metered units. Optional feedback is limited to fixed outcomes, reason codes, and a 1–5 score.
What we do not collect for product learning
Developer-learning tables do not store your prompt, URL, verdict output, free-text feedback, or a content-derived hash. External developer data does not enter customer continuity or the founder corpus. Raw-content collection would require a separate, explicit, versioned, and revocable consent flow.
Why we collect it
We use account and submitted task data to authenticate you, isolate your workspace, run the service, prevent abuse, and provide your results. We use participant-pilot application details only to assess basic eligibility, match possible studies, and send invitations covered by the choices you made. Content-free telemetry and optional structured feedback help us measure reliability, speed, cost, and verdict usefulness.
Service providers and sale
We do not sell personal data. We use service providers to authenticate accounts, store service data, process payments where applicable, and run the AI models needed to answer a request. Their processing is limited to operating those parts of the service and is governed by their terms and privacy policies.
Retention and your controls
Verdict jobs expire after 24 hours. Content-free product telemetry expires after 90 days, and structured feedback after 365 days. Participant-pilot application details are retained for up to 90 days unless you ask us to remove you sooner. Roster consent does not authorize AI training, and the optional TwoThumbs invitation choice is independent from eligibility for other studies. API-key users can use developer_data to opt out of telemetry, export their developer-learning rows, or delete telemetry, feedback, and preferences. Billing and abuse-prevention meter rows remain as accounting records and contain no developer input or verdict output. You can request roster removal or account deletion at [email protected].
Security
Data is encrypted in transit. Sessions use short-lived tokens, and developer records are isolated by the server-resolved API-key identity.
Children
The service is not directed to children under 18.
Contact
Questions or deletion requests: [email protected].