Data practices
Privacy Policy
This policy describes information handled when someone visits Niori, uses its interactive features, or submits a shade. It reflects the site’s current public features.
Last updated: August 3, 2026
Information handled automatically
Like most websites, Niori and its hosting infrastructure may process technical information needed to deliver and protect the site, such as IP address, request time, requested URL, browser or device information, referring page, and error or security events. The precise contents and retention of hosting logs depend on the production hosting configuration.
Niori uses Google Analytics in production to understand use of the site. Google Analytics may collect page and interaction events, approximate location derived from network information, browser and device information, session statistics, and a client identifier stored in a first-party _ga cookie. Niori’s code also sends events for actions such as search, opening shade tools, selecting a sample tone, and submitting a shade. Do not enter personal information into site search.
Browser storage
The sample-lip feature stores a selected sample color, name, and optional tone code in the visitor’s browser using local storage under niori.sampleLip. This keeps the selection available on later shade pages on that device. It is not the uploaded photograph from a shade submission. A visitor can remove it by clearing site data in the browser.
Shade submissions
When someone submits a shade, Niori collects the brand name, product name, shade name, an uploaded JPG, PNG, or WebP image, an optional submitted color value when supplied by the interface, a submission identifier, timestamps, and the browser user-agent. The database schema can also accommodate a hashed IP value, although the current public submission code does not create one.
This information is used to receive, review, moderate, and potentially incorporate a contribution into the shade library; maintain the associated record; prevent misuse; and diagnose submission problems. Submitted images are stored in Supabase Storage, and related records are stored in Supabase. A short-lived signed image URL may be generated to show the submitter a confirmation preview.
Do not include a face, name, contact information, location, documents, metadata you consider sensitive, or other personal information in a swatch image. Niori does not currently request an email address with a shade submission, so it may be unable to contact the submitter or reliably associate a later request with that person.
Contact messages
When someone uses the contact form, Niori collects the selected topic, email address, message, and any optional name or page URL they provide. This information is used to review the inquiry, respond when appropriate, keep a record of the communication, and address reported product, site, privacy, or accessibility issues.
Netlify processes and stores contact-form submissions and filters them for spam. Niori may configure Netlify to send a submission notification to a private email inbox. Contact messages should not include sensitive or confidential information.
Service providers
- Supabase provides the hosted database and file storage used by the shade library and submission workflow.
- Netlify provides web hosting, the server runtime, contact-form processing and storage, submission notifications, and spam filtering.
- Google Analytics provides production traffic and interaction measurement.
These providers process information under their own terms and privacy documentation. Niori does not currently use public-site accounts, comments, payment processing, advertising, affiliate tracking, or newsletter signup features.
Retention, disclosure, and choices
Submission records and files may be kept while they are needed to review, maintain, or document the shade library. Analytics and infrastructure data are retained according to the configured provider settings. Niori may disclose information to service providers supporting the site, when reasonably necessary to protect the site or others, or when legally required. Niori does not claim to sell visitor information.
Visitors can clear Niori cookies and local storage through browser controls and can use browser or device privacy controls that limit analytics. The production consent configuration and response to browser-based opt-out preference signals require confirmation from the site operator.
Children and privacy requests
Niori is a general-audience reference site and is not directed to children under 13. The shade submission and contact features should not be used by a child under 13 to provide personal information. Privacy questions, access or deletion requests, and other rights requests can be submitted through Contact.
Privacy rights vary by location. This policy does not yet identify the site operator or its jurisdiction, and it should receive legal review once those facts and Niori’s intended launch markets are confirmed.