Legal

Privacy Policy

Last updated: September 2, 2026

This policy covers the NoHub website at nohub.ai and the Enigma app, both operated by Garik Atain, IE (individual entrepreneur), the data controller for the information described here. It is written to be specific rather than reassuring: every item below names an actual field and why it exists.

Enigma is a client application. It imports a configuration you were given and connects to the servers that configuration describes. We do not operate those servers, we do not sell access to them, and no payment is taken inside the app — that is the concern of whoever provided your configuration, not of Enigma.

1. What we collect

1.1 Device

Each installation registers a device so an imported configuration can be tied to it: an identifier we generate, a hardware identifier reported by your operating system (so that reinstalling finds the same device rather than creating a new one), and the OS name, version and CPU architecture. That is the whole record.

1.2 Your configuration

The configuration you import is stored on your device, in the system keychain. It is what the app connects with; we do not need a copy and do not keep the contents of your traffic.

1.3 Diagnostics

The app emits operational logs — errors, connection outcomes and timings — which we use to keep it working. They are keyed by the device identifier, not by anything you browse.

1.4 Correspondence

If you write to us, we have whatever you put in the message, including your address, for as long as it takes to answer you.

2. What we do not collect

The app contains no analytics SDK, no advertising SDK and no third-party trackers; this website sets no cookies and runs no analytics. We do not log your browsing, we do not build a profile of you, and we do not sell or rent data to anyone — there is no arrangement under which that could happen.

3. Why we hold it

Each item in section 1 exists for one reason: to make the app work, to keep it working, or to answer you when you write. We do not repurpose it for anything else.

4. Your network activity

When you connect, your traffic goes to the servers named in the configuration you imported. Those servers are operated by whoever gave you that configuration, not by us. The app does not route your traffic through infrastructure of ours, and it does not keep a record of the destinations you visit.

5. Who else is involved

  • Your configuration provider — whoever issued the configuration you imported operates the servers you connect to and sets their own terms. What they can see and keep is governed by their policy, not this one.
  • Infrastructure providers — the hosts our backend and this website run on. They provide machines, not access to your data.
  • Legal requirements — we disclose data when a valid legal demand compels us to, and we can only ever hand over what section 1 says we hold.

6. Retention and deletion

Diagnostic logs are short-lived and rotate out. The device record is kept while the installation exists. Deleting the app's saved data from the settings screen clears the configuration and identifiers stored on your device; to have the device record removed from our side, write to us at the address below.

7. Security

Your configuration and identifiers are stored in your device's system keychain rather than in ordinary app storage. Traffic between the app and our backend is encrypted, as is traffic to this site. No system is perfectly secure, and we would rather say so than imply otherwise.

8. Children

The app is not directed at children under 13, and we do not knowingly collect their data.

9. Changes

We may update this policy. The date at the top changes when we do, and material changes will be announced in the app rather than only here.

10. Contact

Questions about this policy, or a request to delete your device record: