Last Updated: August 24, 2026
Nymble Payments respects your privacy and is committed to protecting your personal information. This Privacy Policy explains what information we collect, how we use it, who we share it with, how long we keep it, and the choices and rights you have.
This policy applies to our websites and to the landlord, tenant, and administrative applications operated by Nymble Payments.
Nymble Payments is a rent collection and property management platform operated by Noe Reit Inc. Landlords use the platform to collect rent, track property income and expenses, and manage maintenance requests. Tenants use it to pay rent and submit maintenance requests.
We do not hold customer funds. All money movement is performed by our payment processor.
Landlords may choose to connect a bank account so that property income and expenses import automatically instead of being entered by hand. This feature is optional and is off unless a landlord enables it.
When a landlord connects a bank account:
A landlord can disconnect a bank account at any time. On disconnection we immediately destroy the credential that allows us to read the account. Records the landlord has already confirmed remain in their account as their own business records.
When you accept our Terms of Service, Privacy Policy, or electronic signature consent, we record the version and content hash of the document you accepted, the time of acceptance, your IP address, and your browser user agent. This creates a verifiable record of what you agreed to and when.
Some maintenance features use a third-party AI provider to help landlords work faster. Where these features are used, the relevant text is sent to that provider to generate a suggestion. This includes maintenance request descriptions, the property street and unit, tenant-provided access or availability notes, message drafts written by a landlord, and recent messages in a maintenance conversation.
These suggestions are advisory. A landlord reviews and decides whether to use them, and tenants are not shown AI output directly.
We do not send bank transaction data to an AI provider. Prompts and AI responses are not retained in our application logs. Our AI provider does not use this data to train its models.
We do not sell your personal information, and we do not share it for cross-context behavioral advertising.
We share information with the following categories of service providers, each of which is limited to the purpose described:
| Provider | Purpose | Information shared |
|---|---|---|
| Stripe | Payment processing | Payment amounts, customer and payment method records, connected account details, charges, disputes, payouts |
| Clerk | Authentication and identity | Name, email address, sessions, invitations, role |
| Plaid | Bank connectivity, where a landlord enables it | Institution and account metadata, transaction records |
| Amazon Web Services | Email delivery, file storage, encryption key management | Email recipients and content, uploaded images and maintenance photographs |
| Anthropic | AI maintenance features | Maintenance text as described above |
| Sentry | Error monitoring | Error and diagnostic data, user identifier and role, with personal information collection disabled |
| PostHog | Product analytics | User identifier and role. Session recording is disabled. |
| Slack | Internal operational alerts | Error notifications and related metadata |
We also share information:
We use technical and organizational measures appropriate to the sensitivity of the information we hold. These include encryption of data in transit using TLS, encryption of data at rest, application-layer encryption of bank connectivity credentials using AES-256-GCM with keys held in a managed key service, server-side authorization on every request, isolation between accounts, and cryptographic verification of every incoming integration webhook.
Multi-factor authentication is available on all accounts and we recommend enabling it, particularly if you connect a bank account.
No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
We keep information for as long as your account is active and afterwards as needed to meet legal, tax, accounting, and financial record-keeping obligations, to resolve disputes, and to enforce our agreements.
Specific practices include:
We are in the process of publishing a complete retention schedule by data category. If you would like to know how long a particular category of information is kept, contact us and we will tell you.
Depending on where you live, you may have the right to request access to your personal information, correction of inaccurate information, deletion of your information, restriction of processing, a portable copy of your information, or to object to processing or withdraw consent.
To exercise any of these, contact us using the details below. We will respond within the period required by applicable law. We may need to verify your identity before acting on a request.
Where information must be retained to meet a legal or financial record-keeping obligation, we will tell you what we are keeping and why.
If you are a California resident, you have rights under the California Consumer Privacy Act, as amended, including the right to know what personal information we collect and how it is used and disclosed, the right to delete personal information subject to legal exceptions, the right to correct inaccurate personal information, and the right not to be discriminated against for exercising these rights.
The categories of personal information we collect are described in the Information We Collect section above, which also identifies the sources, our purposes, and the categories of third parties who receive it.
We do not sell personal information and we do not share personal information for cross-context behavioral advertising.
To make a request, contact us using the details below.
The platform is not directed to anyone under 18, and we do not knowingly collect personal information from children. If you believe a child has provided us information, contact us and we will delete it.
We operate in the United States and our service providers may process information in other countries. Where information is transferred internationally, we take steps to ensure it remains protected in a manner consistent with this policy.
We may update this policy. Material changes will be reflected in the Last Updated date above, and where required we will notify you directly. We encourage you to review this policy periodically.
Questions, concerns, or requests regarding this policy or our data practices:
Email: j@nymblepayments.com
You can also reach us through the Contact Support option inside your Nymble Payments account.
A mailing address is available on request.
Book a 15-minute discovery call. No pressure. We'll show you how Nymble Pay routes payments across your entities, handles tenants, and builds toward AI-powered automation.
Nymble Pay is rent collection built for landlords with real portfolios. Entity-aware, transparent pricing, white-glove onboarding. AI agents in development. Built on Stripe, AWS, and Clerk.