We collect less than you might assume, and we'd rather explain that fully than write a short, vague policy that technically covers us but tells you nothing useful. This is the complete picture — not a summary with the real detail hidden elsewhere.
This Privacy Policy explains, in plain terms, what personal information NetL ("we," "us," "our") collects when you use the desktop application, the website at netl.online, and any related services (together, the "Platform") — why we collect it, who we share it with, and the choices and rights you have over it. This policy forms part of our Terms & Conditions, and the two documents should be read together.
This policy applies to anyone who visits the NetL website, downloads the NetL desktop application, purchases an access key, or otherwise interacts with the Platform. It does not cover third-party software you use alongside NetL (your video-calling app, your virtual camera driver, etc.) — those have their own privacy policies, and using them is your agreement with them, not with us.
The table below is a complete list — not a sample — of the personal data the Platform collects about you.
| Data | When it's collected | Why |
|---|---|---|
| Full name | When you create your account inside the app | Personalizing account and email communications |
| Email address | When you create your account inside the app | Your login identifier, and the only channel we use to deliver your access key and account notifications |
| Password | When you create your account inside the app | Signing in. Stored only in hashed form using industry-standard methods — we cannot see or recover your actual password, ever. |
| Country | When you create your account inside the app | Basic record-keeping and, where relevant, compliance obligations tied to your location |
| IP address | When your account is created, and on each login | Fraud prevention, security, and account/session record-keeping |
| Account status & access key | Account status is set at signup; the access key is generated once your payment is confirmed | Tracking whether your account is active, and your license validity once it is |
| Device identifier & device name | Each time you sign in | Enforcing the one-device-at-a-time licensing rule described in our Terms |
| Login/logout/session timestamps | Each time you sign in or out | Account security and support (e.g. diagnosing a sign-in issue you report) |
| General app activity (e.g. app launch, virtual camera start/stop) | While the app is in use | Support and abuse prevention — not used for advertising or profiling |
Being equally explicit about this, since it matters just as much as what we do collect:
Every category of data in Section 2 exists to do one of three things: (1) issue and deliver your access key, (2) enforce the licensing and security model described in our Terms (one device at a time, key expiry, fraud prevention), or (3) let us support you if something goes wrong. We do not collect data "just in case" or for undefined future use — if we can't point to one of these three reasons for a piece of data, we don't collect it.
For users in jurisdictions that require us to state a specific legal basis for processing personal data (such as the EU/UK under GDPR), here is how each category maps:
| Data | Legal basis |
|---|---|
| Name, email, country, purchase records | Performance of a contract — we can't issue you an access key or deliver it without this. |
| IP address, device ID, session logs | Legitimate interest — securing accounts and enforcing the licensing terms you agreed to, balanced against your privacy (we only use it for this, never for marketing). |
| Payment-related records retained after purchase | Legal obligation — Nigerian tax/accounting record-keeping requirements. |
We share data only with the specific third-party service providers necessary to run the Platform, each for a narrow, stated purpose:
| Provider | What they receive | Purpose |
|---|---|---|
| Payment processor | Your name, email, and the purchase amount, at the moment you pay | Processing payment. They never share your card/bank details back to us. |
| Email delivery provider | Your name and email address | Sending your access key, activation link, and account notifications |
| Database/cloud infrastructure provider | All account/session data listed in Section 2 | Secure database hosting for your account record |
We do not share your data with any other third party, advertiser, or data broker. We may disclose information if legally required to do so (for example, in response to a valid court order), or to investigate suspected fraud or violations of our Terms.
Because our infrastructure providers operate globally, your data may be processed on servers located outside your own country, including outside Nigeria. Where this involves transferring data out of a jurisdiction with its own data-transfer restrictions (such as the EU/UK), we rely on the safeguards those infrastructure providers themselves offer as part of their own compliance frameworks (such as Standard Contractual Clauses) — we do not independently transfer your data anywhere outside of what's needed to run the Platform through the providers listed in Section 6.
Account data is stored in an access-restricted cloud database, so that only our own server infrastructure can read or write to it — it is never directly exposed to the public internet, the website, or the desktop app itself. Your access key is generated server-side and delivered only by email; it is never returned in any API response the app receives, and it is never visible in your browser or in the app's own interface after issuance. No method of transmission or storage is 100% secure, and we cannot guarantee absolute security — but these are genuine, real technical measures, not boilerplate reassurance.
We retain account data for as long as your access key remains active, plus a reasonable period afterward for legitimate business purposes such as tax/accounting record-keeping, fraud investigation, and resolving disputes. Because NetL accounts cannot currently be self-deleted (see Section 5 of our Terms), if you would like your data deleted after your key has expired and you no longer intend to use NetL, contact us using the details in Section 19 and we will review and action deletion requests consistent with our legal obligations (for example, we may need to retain payment-related records for a period required by Nigerian tax law even after deleting other account fields).
The NetL website does not use tracking or advertising cookies. It does load two third-party resources worth disclosing plainly:
Neither is used by us to track you, and neither sets a cookie tied to your NetL account.
Depending on where you're located, you may have some or all of the following rights over your personal data. We've explained what each one actually means in practice, not just named it:
You can ask us what data we hold about you. We'll send you a plain summary of the fields listed in Section 2 that apply to your account.
If something's wrong — a misspelled name, an outdated email — tell us and we'll fix it.
You can ask us to delete your data. We'll do this, subject to the retention exceptions explained plainly in Section 9 (mainly: tax record-keeping obligations that outlast your account).
In some jurisdictions, you can object to certain processing or ask us to pause/restrict it while a dispute is resolved.
In some jurisdictions, you can ask for a copy of your data in a portable, machine-readable format to move elsewhere.
Email support@netl.online with your request and the email address associated with your access key. We will respond within a reasonable time, and may need to verify your identity first (typically by confirming control of that email address) before actioning a request — this step exists to stop someone else from requesting deletion of your data by pretending to be you.
We do not use automated decision-making or profiling that produces legal or similarly significant effects on you. Access key validity, expiry, and single-device enforcement are rule-based checks (is this key valid, is it expired, is this the currently registered device) — not algorithmic profiling of you as a person.
NetL is operated from Nigeria, and your data is processed and stored on infrastructure that may be located outside your own country. If you are located in the European Union, United Kingdom, or another jurisdiction with its own data protection law (such as the GDPR or UK GDPR), the rights in Section 11 are intended to reflect the substance of what those laws typically require, and we will honor a request made under your local law to the extent applicable to us. If you believe we have not met an obligation that applies to you under your local law, contact us first using Section 19 so we can address it directly.
NetL is not directed at, and is not intended for use by, anyone under 18 years old (see Section 3 of our Terms). We do not knowingly collect personal data from anyone under 18. If we become aware that we have, we will delete it.
If a breach occurs that we reasonably believe poses a risk to your rights or personal data, we will notify affected users by email without undue delay, and notify the relevant regulator where we are legally required to do so.
Our website and app may link to third-party resources (for example, driver download pages for virtual camera/audio software). We are not responsible for the privacy practices of those third-party sites — once you leave our Platform, their own privacy policy applies, not this one.
We may update this policy from time to time. If we make material changes, we will update the "Last updated" date above and, where appropriate, notify you by email or an in-app notice. Continued use of the Platform after changes take effect constitutes acceptance of the revised policy.
Questions, requests, or complaints about this Privacy Policy or how your data is handled can be sent to support@netl.online. If you are not satisfied with our response, you may have the right to lodge a complaint with your local data protection authority (for example, the Nigeria Data Protection Commission, if you are in Nigeria).
| Term | What it means |
|---|---|
| Personal data | Any information that relates to an identified or identifiable person — your name and email are the clearest examples in this policy. |
| Data controller | The party that decides why and how personal data is processed — for the data described here, that's us. |
| Legal basis | The specific legal justification a data-protection law requires for collecting a category of data — see Section 5. |
| Processing | Essentially anything done with data — collecting, storing, using, sharing, or deleting it. |
| Data portability | The right to receive your data in a format you can take and use somewhere else. |
| Standard Contractual Clauses (SCCs) | A standard legal mechanism used to make an international data transfer compliant with data-protection law. |