Security and local data handling
How Nimbus Shield manages data, what local-first means and what users should understand about device security.
What local-first means
Local-first means Nimbus Shield stores and processes your health records on your device. Your information is not sent to a remote server as part of normal operation. Recording, reviewing and analysing your data all happen locally.
Where information is processed
All processing of health records, including pattern analysis, frequency calculations and report generation, occurs on your device using its processor and memory. No cloud computing resources are used for these operations.
What 'no account' means
Nimbus Shield does not require you to create an account, register an email address or provide personal identifiers to use its core features. There is no user database, no authentication system and no password to manage for basic functionality.
What happens during export
When you choose to export records, Nimbus Shield creates a file on your device or passes information to the operating system's sharing mechanism. From that point, the information is handled by whatever app or service you select (such as email, messaging or cloud storage). Zymric does not receive or store exported information.
Device security responsibilities
Because health records are stored on your device, the security of those records depends partly on your device's own protections. Using a screen lock, keeping your operating system updated and installing applications from trusted sources are recommended practices. Nimbus Shield relies on the security of the underlying operating system for file-level protection.
Risks if a device is lost or shared
If your device is lost, stolen or shared with others, the health records stored in Nimbus Shield may be accessible to whoever has access to the device. Using device-level security features, such as a strong screen lock, reduces this risk. Nimbus Shield does not provide remote wipe capability.
What Nimbus Shield cannot protect against
Nimbus Shield cannot protect health records if: the device operating system is compromised, the user installs malicious software, the user shares their device without restrictions, or the user voluntarily exports and shares records through insecure channels.
Security updates and responsible reporting
Nimbus Shield will receive security updates as part of normal development. If you believe you have identified a security concern, please report it to [email protected].
Contact for security concerns
Security concerns may be reported to [email protected].