Nestpact
FeaturesAlgorithmsPricingFAQBlogDocsContact
Open App
Open App
← Back to Home

Privacy Policy

Last updated: 2026-05-30

1. Introduction

Nestpact ("we", "us", "our") operates the nestpact.app website and web application, including the DXF Health Checker and the nesting optimizer. This Privacy Policy explains how we collect, use, and protect your information when you use either tool.

2. Data We Collect

2.1 Files You Upload

When you use the DXF Health Checker or the nesting optimizer, you upload DXF files containing geometry. These files are sent to our servers to be parsed, validated, and (for nesting) used to compute a layout. Retention depends on whether you are signed in:

  • Anonymous and incognito jobs. If you use the Service without signing in, or mark a job as incognito, the uploaded files and the resulting layout are deleted automatically as soon as the job ends (success, failure, or cancellation). Nothing about the job is retained afterwards.
  • Account-owned jobs. If you are signed in and have not marked the job as incognito, the uploaded files and the job record are stored in our database so you can revisit the layout from your job history. They remain until you delete them (per-job or all-at-once) from your account page, or close the account.
  • We do not inspect, analyze, or use your files for any purpose other than providing the requested service.

2.2 Technical Data (Server Logs)

Our web server records standard request logs. These contain:

  • IP address — for rate limiting and abuse prevention.
  • Browser type and operating system (User-Agent header) — for compatibility and debugging.
  • Request path and timestamp — to diagnose errors.

We do not use third-party analytics, tracking pixels, advertising networks, or behavioural tracking. There is no Google Analytics, no Meta Pixel, no session-replay tool. The site does not build a profile of your visit.

2.3 Account Data (when sign-in is available)

The full nesting tool will require an account. If you create one, we store your email address and a hashed password (never the password itself). Account data is used only for authentication and to associate saved sheets and history with you. Sign-in is currently gated while the nesting engine is in beta.

2.4 Bug Reports / Feedback

If you submit feedback through the app, we store your message and optionally your email address so we can follow up. Feedback is stored in our database and is not shared with third parties.

2.5 Browser Storage (localStorage)

Nestpact stores a small amount of data in your browser's localStorage so the app remembers your work between visits. This data lives on your device, never touches our servers (except auth verification), and you can clear it any time via your browser's site-data controls. The full list:

  • Auth token + user record — only when signed in. Used to keep you logged in across page reloads. Cleared on sign-out.
  • Material library — sheets you explicitly chose to save for reuse.
  • Nesting history — a log of nesting jobs you ran, kept locally so you can revisit them.
  • Unit preference — your choice of millimetres or inches.

All of these are strictly necessary or user-initiated functional storage and do not require consent under GDPR / ePrivacy. None of them are used for tracking, advertising, or analytics.

2.6 Payment Data

If you subscribe to a paid plan, payment is handled by our payment processor, Lemon Squeezy, which acts as merchant of record. You enter your card details on their secure checkout, not on our servers, so we never receive or store your full card number. We receive only what we need to manage your subscription, such as your subscription status, plan, billing country and the last four digits of the card. Lemon Squeezy processes your payment data under its own privacy policy.

3. How We Use Your Data

  • To validate, fix or nest the DXF files you submit.
  • To generate downloadable result files.
  • To authenticate you (if you have an account).
  • To respond to feedback or support requests.
  • To maintain, debug and improve the service.
  • To process payments and manage your subscription (paid plans only).

We do not sell or rent your personal data, and we do not share it with anyone for their own marketing. We use a small number of trusted service providers (processors) that handle data only on our instructions and only as needed to run the Service:

  • Lemon Squeezy (payment processing and subscription billing, paid plans only).
  • Resend (sending account verification and transactional emails: your email address and the message only).
  • Our hosting provider (running the servers and database that store your account and saved jobs).

4. Data Storage and Security

  • Uploaded files are stored on servers located in the EU / EEA.
  • All data transmission uses HTTPS encryption.
  • Live nesting state (progress events, partial layouts during a run) is held in server memory and is lost on server restart.
  • Persistent storage of finished job records and their source files follows the retention rules described in Sections 2.1 and 5: anonymous/incognito jobs are auto-deleted on completion; account-owned jobs are kept until the user deletes them.

5. Data Retention

Data TypeRetention
Uploaded DXF files (anonymous or incognito job)Deleted automatically when the job ends
Uploaded DXF files (account-owned job)Retained until you delete the job, or close the account
Nesting job records (account-owned)Retained until you delete the job, or close the account
Live nesting state (in-flight progress / partial layouts)In-memory only; lost on server restart
Account email + hashed passwordUntil you delete your account
Feedback / bug reportsRetained until resolved, then deleted
Server logs (IP, user agent)30 days
Browser localStorage (token, history, library, units)On your device until you clear it or sign out

6. Your Rights (GDPR)

If you are located in the European Economic Area, you have the right to:

  • Access — Request a copy of data we hold about you.
  • Rectification — Correct inaccurate data.
  • Erasure — Request deletion of your data ("right to be forgotten").
  • Restriction — Limit how we process your data.
  • Portability — Receive your data in a machine-readable format.
  • Objection — Object to processing based on legitimate interests.

To exercise any of these rights, contact us at nestpact@gmail.com.

7. Cookies and Local Storage

Nestpact does not set any HTTP cookies. We do not use advertising, analytics, or tracking cookies of any kind.

The application does store a small amount of data in your browser's localStorage — see Section 2.5 for the complete list. Because all of it is strictly necessary or user-initiated functional storage, no consent banner is required under GDPR or the ePrivacy Directive. You can clear it any time through your browser's site-data controls.

8. Children's Privacy

Nestpact is not directed at children under 16. We do not knowingly collect data from children. If you believe a child has provided data to us, contact us and we will delete it.

9. Changes to This Policy

We may update this policy from time to time. Changes will be posted on this page with an updated "Last updated" date. Continued use of the service after changes constitutes acceptance.

10. Contact

For privacy-related questions or requests, contact us at nestpact@gmail.com.

Nestpact

DXF nesting optimizer for CNC cutting.

Open AppFeaturesAlgorithmsPricingFAQBlog & ChangelogDocsAPI
Plasma nestingLaser cutting nestingWaterjet nestingSheet metal nestingDXF to G-code
© 2026 Nestpact
Privacy PolicyTerms of Service