Privacy policy
Effective date: September 22, 2025
App / Website: novocards.ae — Dashboard / OAuth redirect domain: tracker.novocards.ae
Introduction
Novocards (operated by Novocards LLC, trading as novocards.ae) provides NFC & QR solutions and a web dashboard that helps businesses collect and manage Google Reviews. This Privacy Policy explains how we collect, use, disclose, and protect personal data when you use our website and connect your Google account to the Novocards dashboard.
Contact & Controller
Controller: Novocards LLC (trading as novocards.ae)
Address: Sharjah Media City, Sharjah, United Arab Emirates (official address on request)
Support: support@novocards.ae
What data we collect
- Account details — name, email, and profile information you choose to provide when you register with Novocards.
-
Google account data (when you connect Google) — limited Google account data required to access and manage your Business Profile(s), such as business locations, reviews, and permissions. Example API scope used:
https://www.googleapis.com/auth/business.manage. We only request the minimum scopes necessary to deliver functionality. - Usage data — logs, device and browser information, IP addresses, timestamps and activity within the Novocards dashboard (e.g. taps, scans, review replies you create through the dashboard).
- Optional data — files, logos or images you upload, and any customer lists you upload to send review requests via SMTP if you use that feature.
Why we collect it & lawful bases
We collect personal data to:
- Provide, operate and maintain the Novocards dashboard and related features (contractual necessity).
- Allow you to connect your Google Business Profile(s) so you can view locations, reply to reviews and track performance (consent by connecting Google and granting OAuth scopes).
- Send notifications, transactional messages and optionally review-request emails (with SMTP) at your direction.
- Improve our services, security and for fraud prevention (legitimate interests).
Data Accessed
With your consent, Novocards may access the following Google user data through the Google Business Profile API:
- Business Profile account information (locations, business name, place IDs)
- Google Business reviews (review text, rating, reviewer name, review ID)
- Review replies posted by the business account
No personal Gmail, Contacts, Calendar, or unrelated data is accessed.
Data Usage
The accessed data is used solely to provide services within the Novocards dashboard:
- Displaying Google Business reviews inside your dashboard
- Allowing you to reply to reviews directly from the dashboard
- Setting up AI Review Assistant
- Tracking review performance over time
We do not use your data for advertising, profiling, or any unrelated purpose.
Data Sharing
Novocards does not sell, rent, or share Google user data with third parties. Data may be shared only with trusted service providers (such as hosting or analytics) strictly to operate the Novocards platform, and they are bound by confidentiality and data protection agreements.
Data Storage & Protection
Google user data is stored securely in encrypted databases hosted in secure data centers. All communications with Google APIs use HTTPS/TLS encryption. Access to stored data is restricted to authorized personnel only.
Data Retention & Deletion
We retain Google user data only for as long as your Novocards account is active. If you disconnect your Google account, no new data is collected. Upon account deletion, all Google user data is permanently removed from our systems within 30 days.
You may request immediate deletion of your data at any time by contacting us at support@novocards.ae.
Security
We maintain appropriate technical and organizational measures to protect data (encryption in transit, access controls, regular security reviews). However, no system is 100% secure; please follow good security practices with your Google account and Novocards account credentials.
Your rights
Depending on your jurisdiction, you may have rights to access, correct, delete, restrict or port your personal data. To exercise these rights, contact us at support@novocards.ae. If you are a Google account holder you may also manage or revoke Novocards' access from your Google Account settings at any time.
OAuth & Google API disclosure (for verification)
This app uses Google OAuth to access Business Profile data. The domains used for OAuth redirection and app integration are:
novocards.aetracker.novocards.ae
We request only the minimum Google API scopes required to provide functionality (e.g., https://www.googleapis.com/auth/business.manage). We do not access Gmail, Drive, Contacts, or any unrelated Google services.
Cookies & tracking
We use cookies and similar technologies for session management, analytics and to improve the product. You can control cookie preferences in your browser. Third-party analytics providers may collect aggregated metrics about usage.
Changes to this Privacy Policy
We may update this policy from time to time. The effective date at the top will change when we publish material updates. Significant changes will be posted on our website and notified to registered users where appropriate.
Questions? Contact us at support@novocards.ae or visit novocards.ae.