Privacy Policy
Last updated: Effective May 14, 2026
This Privacy Policy describes how Nexus Laboratory (“we,” “us,” or “our”) collects, uses, shares, and protects information about you when you visit nexuslaboratory.org or place an order.
The Nexus Laboratory data-handling principle is minimal collection: we collect only what is needed to fulfill orders, deliver Certificates of Analysis, and respond to support inquiries. We do not sell personal information, we do not run third-party advertising trackers, and we do not create profiles of individual visitors for marketing purposes.
Information we collect
Information you provide directly. Name, shipping address, email address, order details, Certificate of Analysis inquiries, batch verification inquiries, and any messages you send to support. Payment-card details are entered at checkout into our payment processor (MoonPay) and are not stored on Nexus Laboratory systems.
Information collected automatically. Device information (browser type, operating system, approximate screen size), referrer URL, pages requested, and approximate geographic location derived from IP address. We do not store full IP addresses long-term; analytics is processed via Cloudflare Web Analytics, which uses privacy-preserving aggregation rather than per-visitor tracking cookies.
Information from third parties. Fraud-prevention signals from MoonPay (our payment processor); fulfillment status from USPS (our shipping carrier); and aggregated, de-identified site analytics from Cloudflare Web Analytics.
How we use information
We use the information we collect to:
- Process and fulfill orders, including payment processing via MoonPay and shipping via USPS.
- Deliver Certificates of Analysis and respond to batch-verification inquiries.
- Provide customer support and respond to inquiries about products, COAs, batches, or order status.
- Detect, prevent, and investigate fraud or abuse.
- Comply with applicable laws and respond to lawful requests from authorities (subpoenas, court orders, etc.).
- Improve the site and product offerings using aggregated, de-identified analytics.
- Send transactional emails (order confirmations, shipping notifications, support replies). Nexus Laboratory does not send marketing or promotional emails — every message we send is in response to a transaction or a support inquiry you initiated.
Retention and security
We retain personal information only as long as needed to fulfill the purposes described in this policy, then delete or de-identify it. Order records and tax-and- regulatory records may be retained for up to seven years to meet legal and accounting requirements. Support correspondence is retained while active and archived for up to two years afterward.
We protect information using a combination of encryption in transit (HTTPS site-wide), access controls, and the security practices of our infrastructure providers (Cloudflare, MoonPay, USPS). No system is perfectly secure; we cannot guarantee absolute security and you transmit information at your own risk.
Your rights
Nexus Laboratory ships exclusively within the United States, so most users will be U.S. residents. Depending on where you live, you may have rights under applicable privacy laws to:
- Access the personal information we hold about you.
- Request correction of inaccurate personal information.
- Request deletion of personal information (subject to legal retention requirements).
- Object to or restrict certain processing of your personal information.
- Withdraw consent where processing relies on consent (note: most of our processing is necessary to fulfill the contract you initiated by ordering).
- For California residents under the CCPA/CPRA: opt out of any sale or sharing of personal information (we do not sell or share).
- For EU/UK residents under GDPR/UK-GDPR (relevant for EU/UK researchers who inquire even though we do not ship there): lodge a complaint with the relevant supervisory authority.
Submit privacy requests to [email protected]. We will respond within the time required by applicable law (typically 30-45 days).
Children
Nexus Laboratory products and services are not directed to anyone under 21 years of age. We do not knowingly collect personal information from anyone under 21. If you believe someone under 21 has provided us with personal information, contact us at [email protected] and we will delete it.
International users
Nexus Laboratory operates from the United States and ships exclusively within the United States. The site is accessible from outside the U.S., but if you access the site from outside the U.S. you do so on your own initiative and are responsible for compliance with local laws. Information processed in connection with your visit may be processed in the United States. By using the site, you consent to the transfer of information to the United States.
Changes to this policy and contact
We may update this Privacy Policy from time to time. We will post the new version on this page and update the “Effective” date above. For privacy questions, contact us at [email protected] or via the contact page.