Nativa Privacy Policy

Effective date: 5 September 2026 · Policy version: drp2

1. Who we are

Nativa is a product published and operated by BECOMING LABS LIMITED, a New Zealand company (company number 9436889, NZBN 9429053742971). Becoming Labs Limited is the controller responsible for the personal information described in this policy.

Privacy Officer, Nativa
BECOMING LABS LIMITED
193 Gillies Avenue, Epsom, Auckland 1023, New Zealand
info@becominglabs.app

2. What Nativa does

Nativa is a browser-based communication assistant. On supported web surfaces it helps you translate messages, draft and refine replies, and understand messages, images, audio and documents that you explicitly ask it to work on. Nativa's content-processing features run when you invoke them or when you enable a corresponding user-controlled setting.

3. Information we process

  • Account and authentication data — such as your email address and session, account and membership state, where you use those features.
  • Plan and billing administration data — your plan and subscription status, and limited Stripe identifiers and subscription metadata needed to administer a paid subscription for your account. Payments are processed by Stripe. Nativa does not receive or store your full payment card number or card security code; Stripe handles payment details under its own service and privacy terms.
  • Browser, device and service identifiers — together with structured operational usage metadata needed to run, secure, meter and troubleshoot the service.
  • User-requested content — the message, selected or composed text you ask Nativa to act on and, when you explicitly invoke those features, images, audio and documents.
  • Optional Communication Learning signals — structured behavioural signals, collected only while Communication Learning is switched on.

4. Processing user-requested content

When you use a content-processing feature, including a feature you have configured to run automatically, the content needed for that feature is sent to the Nativa backend and to our current AI provider so the requested result can be produced and returned to you. Our current runtime AI provider is Google, reached over Nativa's direct official transport. Some translation paths may instead use translation built into your browser, or Google Translate. Content is processed to deliver the result you asked for and to operate and secure the service.

5. Communication Learning firewall

Communication Learning is explicit opt-in and is OFF by default. When it is on, the learning layer records only structured metadata — enumerated values, coarse buckets and version identifiers.

The learning layer does not persist raw message text, translations, drafts or replies, document contents, images, audio or transcripts, contact names, handles, phone numbers or email addresses, thread or conversation identifiers, or any free-form content you wrote.

6. Data Use Permissions

  • Personalization is governed solely by your Communication Learning consent.
  • Aggregate improvement is a separate explicit opt-in, OFF by default. If you explicitly enable it, it is limited to improving and evaluating Nativa's disclosed communication-assistance purpose, and nothing else.

No optional commercial or model-development permission is offered as a launch feature in the Chrome extension. Chrome extension user data — including derived, aggregated, anonymized or de-identified data — is never used for advertising, data brokerage, unrelated commercial datasets, or generalized model-development training outside Nativa's disclosed communication-assistance purpose.

7. No sale of personal information

At launch Nativa does not sell personal information and does not deliver learning datasets to third-party commercial recipients.

8. Service providers and international processing

To operate Nativa we rely on service providers including cloud infrastructure, authentication and database infrastructure, and AI and translation providers. This means your information may be processed outside New Zealand, in the countries where those providers operate.

Our current providers are: Google, for AI processing and some translation processing; Supabase, for authentication and database infrastructure; Stripe, for payment and subscription processing; and Lovable, for application and backend hosting infrastructure. Raw user-requested content is not persisted in Nativa's learning layer, but that content can be transiently transmitted to and processed by Nativa's backend and these providers so the functionality you asked for can be performed. Provider and infrastructure systems may hold transient operational copies, logs or backups for their own limited operational periods.

9. Retention

Our currently configured retention for structured learning and operational data is:

  • core behavioural signals — up to 730 days;
  • derived behavioural signals — up to 730 days;
  • operational metadata — scheduled retention of up to 180 days.

If you withdraw a learning authorization, the affected learning data is scheduled for removal under our current 30-day withdrawal retention policy. Raw user-requested content is not persisted in the learning layer. Infrastructure and provider systems may hold transient copies, logs or backups for their own limited operational periods, so this policy does not claim zero retention everywhere.

10. Your controls and rights

You can turn Communication Learning off at any time, and you can independently withdraw the higher-risk Data Use Permissions without turning off other features. Where in-product export and delete paths are available, you can use them directly in Nativa's settings.

You can also request access, correction, deletion or export of your personal information by emailing info@becominglabs.app. Requests are handled subject to applicable law and reasonable verification of your identity.

11. Chrome Web Store Limited Use

Nativa's use of information received through the Chrome extension adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements.

Allowed use. We use user data only to provide or improve Nativa's disclosed single purpose — helping you understand and express communications on supported websites by translating, explaining, and drafting or refining content in context — and for related operational purposes such as maintaining, securing, metering, measuring the reliability of, and troubleshooting those features.

Transfer. We transfer user data only when necessary to provide or improve that disclosed single purpose, to comply with applicable law, to protect against security threats, fraud or abuse, or as part of a merger, acquisition or sale of assets — and in that last case only after obtaining any prior user consent that is required. We do not transfer user data to advertising platforms or data brokers.

Human access. Humans are not allowed to read your content, except: where you give explicit consent for specific data to be read (for example, when you send it to us for support); where it is necessary for security or abuse investigation; where required to comply with applicable law; or for aggregated and anonymized internal operations consistent with applicable law.

Prohibited uses. We do not use user data for personalized, retargeted or interest-based advertising; we do not use it to determine creditworthiness or for lending purposes; and we do not sell it to data brokers or information resellers.

Raw user-requested content is not persisted in Nativa's learning layer. Content you ask Nativa to work on can still be transiently transmitted to and processed by Nativa's backend and its service providers solely to perform the functionality you requested.

12. Security

We use HTTPS transport, access controls, and private backend and service-role controls that restrict privileged data paths. No online service can be guaranteed absolutely secure, and we do not claim otherwise.

13. Browser permissions

The Nativa browser extension needs access to the supported web services where it works so it can read the message you asked it to act on and place results back into the page. We do not use that access for advertising surveillance, ad targeting, or building profiles for advertisers.

14. Capacity and younger users

Nativa is a general-purpose product intended for people who have the legal capacity to agree to our Terms. If you are below the age at which you can agree on your own under the law that applies to you, you may use Nativa only with the permission and supervision of a parent or legal guardian.

15. Changes and contact

We may update this policy as Nativa changes. When we do, we will publish the updated version here with a new effective date and version identifier. Questions or privacy requests can be sent to the Privacy Officer, Nativa at info@becominglabs.app, or to our postal address above.

Nativa is available in all regions where it is distributed. Availability is not a claim of certification or compliance under every jurisdiction's law.

See also our Terms of Service.