Privacy policy
Last updated: May 23, 2026
NoaNoa respects your privacy.
This Privacy Policy explains how we collect, use, store, protect, and share personal data when you visit our website, create an account, use our programs, interact with our AI-powered features, purchase a subscription, or contact us.
NoaNoa is a structured manifestation and self-development platform. Because the service may involve personal reflections, desires, notes, emotional states, program history, and AI-assisted guidance, we treat privacy as part of the product experience itself.
This Policy is written to be clear. It does not replace professional legal advice.
1. Who we are
The website and service are operated by:
Caromanel Technologies LLC
8 The Green, STE B, Dover, DE, 19901
United States
For privacy-related questions, requests, or complaints, you can contact us at:
If applicable, formal legal notices may be directed to the company’s registered agent listed in our Legal Notice.
2. What this Privacy Policy covers
This Privacy Policy applies to:
our public website;
our member area;
our Program Room;
our subscriptions and checkout flow;
our email communications;
our AI-assisted program, session, note, and reflection features;
any related service, page, form, or interaction controlled by NoaNoa.
This Policy does not apply to websites, platforms, payment providers, app stores, social media platforms, or services operated by third parties, even when they are linked from our website.
3. Personal data we collect
We collect only the data reasonably needed to provide, secure, improve, and administer NoaNoa.
Depending on how you use the service, we may collect the following categories of personal data.
4. Account data
This may include:
name or display name;
email address;
password or authentication credentials;
account status;
subscription status;
login information;
member ID or internal user identifier.
Account data is used to create and manage your account, authenticate access, provide member features, manage subscriptions, and secure the service.
5. Subscription and payment data
When you purchase a plan, trial, subscription, upgrade, renewal, or other paid service, payment processing may be handled by secure payment providers.
We may receive or store:
plan selected;
subscription status;
billing history;
payment confirmation;
transaction reference;
billing country;
limited payment metadata.
We do not intentionally store full payment card numbers on our own systems.
Payment providers may process payment information according to their own privacy and security policies.
6. Program and manifestation data
When you use NoaNoa, you may provide information about:
your desire or goal;
your current emotional state;
your desired state;
your manifestation practice;
your self-concept;
your reflections;
your notes;
your practices;
your program phase;
your progress;
your session summaries;
your interaction history with the service.
Some of this information may be personal or sensitive by nature, depending on what you choose to share.
Program and manifestation data is used to provide the NoaNoa experience, maintain continuity, personalize your program, support session flow, generate summaries, assign practices, and help the service respond with relevant context.
7. AI interaction data
When you interact with AI-powered features, we may process:
your messages;
AI-generated replies;
session context;
program context;
notes and summaries;
safety signals;
usage patterns;
technical metadata connected to the interaction.
This data is used to provide continuity, generate relevant responses, update your program, maintain safety boundaries, and improve the reliability of the service.
8. How NoaNoa separates identity from AI processing
NoaNoa is designed to reduce the amount of personally identifiable information shared with AI model suppliers.
Our platform may store account identity data, such as your name, email address, member ID, subscription status, and billing-related metadata.
When AI processing is needed, NoaNoa aims to send only the relevant interaction content, program context, note content, session context, or structured prompt information required to generate the requested service output.
NoaNoa does not intentionally send your email address, billing identity, payment information, account login credentials, or direct account identifiers to AI model suppliers as part of ordinary AI processing.
The matching between your account identity and your program content happens inside NoaNoa’s own platform environment, not inside the AI model supplier’s account identity layer.
This means that AI model suppliers may process text content needed to generate responses, summaries, programs, or practices, but they are not intended to receive a direct user profile containing your account identity, email address, billing profile, or payment details.
This separation is an important part of NoaNoa’s privacy architecture.
However, you are responsible for what you type into the service. If you include your own name, email address, phone number, address, social media handles, identity documents, medical records, legal documents, payment card numbers, or other identifying details inside a message or note, that content may be processed as part of the AI interaction.
For that reason, you should not enter unnecessary identifying information or highly confidential information into NoaNoa.
9. Communications data
If you contact us, subscribe to updates, reply to an email, submit a support request, or communicate with us, we may process:
your email address;
your message;
support history;
communication preferences;
metadata related to the communication.
This data is used to respond to you, manage support, resolve issues, provide account help, process requests, and maintain records where needed.
10. Technical and usage data
When you use the website or service, technical data may be collected automatically, including:
IP address;
device type;
browser type;
operating system;
approximate location based on IP address;
pages visited;
session duration;
referral source;
interaction events;
cookies and similar technologies;
security logs.
This helps us operate the service, detect abuse, maintain security, analyze performance, improve user experience, and protect NoaNoa from unauthorized access or misuse.
11. Sensitive information
NoaNoa is not designed to collect medical records, psychiatric diagnoses, legal documents, biometric data, government identification documents, full payment card numbers, or other highly sensitive records.
However, users may voluntarily share personal reflections that reveal sensitive aspects of their life, emotional state, relationships, beliefs, health, sexuality, finances, or personal circumstances.
Please do not share information that you do not want processed by NoaNoa.
NoaNoa is not a medical, therapeutic, legal, emergency, or crisis service. If you are in immediate danger, experiencing a medical emergency, or at risk of harming yourself or someone else, you should contact local emergency services or a qualified professional immediately.
12. How we use personal data
We use personal data for the following purposes:
to create and manage your account;
to provide access to NoaNoa programs and features;
to process subscriptions, trials, upgrades, renewals, and cancellations;
to operate the Program Room;
to generate or update personalized program content;
to store notes, practices, summaries, and progress;
to provide AI-assisted guidance and continuity;
to maintain safety boundaries inside the service;
to respond to support requests;
to send service-related emails;
to send marketing communications where permitted;
to improve the website, product, user experience, and technical performance;
to detect fraud, abuse, unauthorized access, or misuse;
to comply with legal, accounting, tax, regulatory, and security obligations;
to enforce our Terms of Service.
13. Legal bases for processing
Where applicable data protection law requires a legal basis, we process personal data on one or more of the following grounds.
14. Contract
We process data when necessary to create your account, provide the service, manage your subscription, deliver program features, process payments, and respond to requests connected to your use of NoaNoa.
15. Consent
We may rely on consent for certain optional features, marketing communications, cookies, analytics, or other processing where consent is legally required.
You may withdraw consent where applicable.
16. Legitimate interests
We may process data where we have a legitimate interest in operating, securing, improving, and protecting NoaNoa, provided this does not override your rights and freedoms where applicable.
This may include product improvement, fraud prevention, safety monitoring, technical diagnostics, usage analysis, customer support, abuse prevention, and service protection.
17. Legal obligation
We may process or retain data when required to comply with tax, accounting, regulatory, security, consumer protection, corporate, or legal obligations.
18. AI processing
NoaNoa uses artificial intelligence to support structured manifestation programs, session interaction, notes, practices, summaries, and continuity.
AI processing may involve sending relevant user inputs, program context, notes, session data, or structured prompt information to technical AI service providers so that a response, summary, program, practice, or structured output can be generated.
We aim to limit AI processing to what is necessary for the service to function.
As explained above, NoaNoa does not intentionally send account identity data, billing identity, payment details, email addresses, login credentials, or direct account identifiers to AI model suppliers as part of ordinary AI processing.
AI outputs may be inaccurate, incomplete, or inappropriate for your circumstances.
NoaNoa does not provide medical, psychological, legal, financial, emergency, or crisis advice.
You should not enter confidential information, legal strategy, medical records, passwords, payment card numbers, identity documents, or information about third parties that you are not authorized to share.
19. Safety-related processing
NoaNoa may process certain signals to maintain product safety and reduce harmful use.
This may include detecting or responding to:
emotional escalation;
self-harm language;
threats;
harassment intent;
coercive or manipulative requests;
legal conflict indicators;
abuse or violence indicators;
misuse of the service.
This processing exists to preserve the integrity of the service, protect users, and prevent NoaNoa from being used for harmful, manipulative, or unsafe purposes.
NoaNoa is not an emergency monitoring service and does not guarantee human intervention.
20. Cookies and similar technologies
We may use cookies, pixels, local storage, and similar technologies to:
operate the website;
keep users logged in;
remember preferences;
secure the service;
analyze traffic and performance;
improve user experience;
measure marketing effectiveness;
support advertising or retargeting, if enabled.
Some cookies are necessary for the website to function. Others may be optional and subject to your consent, depending on your location and applicable law.
You can manage cookies through your browser settings and, where available, through our cookie consent tools.
For more information, see our Cookie Policy.
21. Email communications
We may send you service-related emails, including:
account confirmations;
subscription notices;
payment confirmations;
security notices;
program or session notifications;
support replies;
updates to legal terms or policies.
Where permitted, we may also send marketing or educational emails about NoaNoa, programs, features, or related content.
You can unsubscribe from marketing emails at any time by using the unsubscribe link in the email or contacting us at: https://www.noanoa.ai/contact
You may still receive essential service-related emails.
22. Who we share data with
We do not sell your personal data.
We may share personal data with trusted service providers who help us operate NoaNoa, including providers for:
secure hosting and infrastructure;
database storage;
authentication;
payment processing;
subscription management;
AI processing;
email delivery;
analytics;
security monitoring;
customer support;
legal, accounting, tax, or administrative services.
These providers may process data only as needed to provide their services to us, subject to contractual, technical, and organizational safeguards.
As part of our privacy architecture, AI model suppliers are not intended to receive your account identity data, billing identity, payment information, email address, or direct account identifiers during ordinary AI processing. They may receive the minimum content and context needed to generate AI-assisted service outputs.
We may also disclose data if required by law, regulation, court order, subpoena, legal process, government request, or to protect the rights, safety, security, or integrity of NoaNoa, our users, or others.
23. No sale of personal information
NoaNoa does not sell personal information in the ordinary meaning of selling user data for money.
If applicable privacy laws define “sale,” “sharing,” or “targeted advertising” more broadly, certain analytics or advertising technologies may be considered a sale or sharing under those laws.
Where required, we will provide applicable notices, consent options, or opt-out mechanisms.
24. International data transfers
NoaNoa is operated by Caromanel Technologies LLC, a US company.
Your personal data may be processed in the United States or in other countries where our technical and operational providers are located.
Depending on our service providers, data may also be processed in jurisdictions such as the European Economic Area, the United Kingdom, Israel, Switzerland, Canada, or other countries.
Where personal data is transferred internationally, we aim to use appropriate safeguards, such as contractual protections, data processing agreements, standard contractual clauses, adequacy decisions, or other mechanisms recognized by applicable data protection law.
25. Security
We use technical and organizational measures designed to protect personal data against unauthorized access, loss, misuse, alteration, disclosure, or destruction.
These measures may include:
encrypted connections;
secure hosting infrastructure;
access controls;
authentication systems;
permission management;
system monitoring;
backup and recovery mechanisms;
firewall and network protections;
security testing;
provider-level security controls;
limited internal access based on operational need.
No system is perfectly secure.
You are responsible for keeping your login credentials confidential and for using a secure device and connection when accessing NoaNoa.
If you believe your account has been compromised, contact us immediately at: https://www.noanoa.ai/contact
26. Data retention
We retain personal data only for as long as reasonably necessary for the purposes described in this Policy, unless a longer retention period is required or permitted by law.
Retention periods may depend on:
your account status;
your subscription status;
legal, tax, accounting, or corporate obligations;
support history;
security needs;
dispute resolution;
technical backup cycles;
product safety requirements;
whether you ask us to delete your data.
When data is no longer needed, we delete it, anonymize it, or restrict it according to our internal retention practices.
27. Account deletion and data deletion
You may request deletion of your account or personal data by contacting us at: https://www.noanoa.ai/contact
Some data may need to be retained for legal, security, accounting, fraud prevention, dispute resolution, tax, corporate, or legitimate business reasons.
If your account is deleted, access to your program history, notes, sessions, messages, practices, and subscription-related features may no longer be available.
28. Your privacy rights
Depending on your location and applicable law, you may have the right to:
request access to your personal data;
request correction of inaccurate data;
request deletion of your data;
request restriction of processing;
object to certain processing;
withdraw consent where processing is based on consent;
request data portability;
object to direct marketing;
ask for information about international transfers;
opt out of certain uses of personal information;
lodge a complaint with a competent data protection authority.
To exercise your rights, contact us at: https://www.noanoa.ai/contact
We may need to verify your identity before responding to your request.
29. U.S. state privacy rights
Depending on your state of residence, you may have additional rights under U.S. state privacy laws.
These may include the right to:
know what categories of personal information we collect;
access personal information;
correct inaccurate personal information;
delete personal information;
obtain a copy of personal information;
opt out of certain sales, sharing, profiling, or targeted advertising;
limit the use of certain sensitive personal information where applicable;
appeal a privacy request decision where applicable.
NoaNoa will respond to applicable privacy requests as required by law.
30. California users
If you are a California resident, you may have additional rights under California privacy law.
NoaNoa does not sell personal information for money.
If we use advertising or analytics technologies that qualify as “sharing” or “sale” under California law, we will provide appropriate notice and opt-out mechanisms where required.
You may contact us through: https://www.noanoa.ai/contact
31. European, United Kingdom, and Swiss users
If you are located in the European Economic Area, the United Kingdom, or Switzerland, you may have additional rights under applicable data protection laws.
These may include rights to access, rectification, erasure, restriction, portability, objection, withdrawal of consent, and complaint to a supervisory authority.
Where required, we process personal data according to applicable legal bases and transfer safeguards.
You may contact us through: https://www.noanoa.ai/contact
32. Children and minors
NoaNoa is not intended for children.
You must be at least 18 years old to use NoaNoa.
We do not knowingly collect personal data from children.
If we become aware that a child has provided personal data without valid parental or legal authorization, we will take steps to delete the data where required.
33. Third-party links
Our website may contain links to third-party websites, platforms, payment pages, app stores, social media profiles, or external resources.
We are not responsible for the privacy practices, security, content, or policies of third-party services.
You should review the privacy policies of any external service before using it.
34. Automated decisions
NoaNoa may use automated systems to support personalization, program structure, session flow, safety checks, access control, product experience, and AI-assisted features.
We do not intend to make decisions based solely on automated processing that produce legal effects or similarly significant effects on users without appropriate human review where required by law.
AI-generated guidance, program content, notes, summaries, or safety-related responses are part of the service experience and should not be treated as professional advice or guaranteed outcomes.
35. Changes to this Privacy Policy
We may update this Privacy Policy from time to time.
When we make material changes, we may notify users by email, account notice, website notice, or another appropriate method.
The updated version will be indicated by the “Last updated” date at the top of this page.
Your continued use of NoaNoa after an updated Privacy Policy becomes effective means that you have read and understood the updated Policy.
36. Account security concerns
If you believe your NoaNoa account has been compromised, inform us immediately using this form:
Please include the account email address, what happened, when you noticed it, and any suspicious activity you observed so we can review the issue and help secure the account.
When we receive a credible account security report, we may temporarily freeze, block, restrict, or suspend the account while we review the issue.
You should also secure your email account, change reused passwords, review your payment method, and contact your bank, card issuer, or payment provider if you believe financial information may be affected.
37. Contact
For privacy questions, requests, complaints, or concerns, contact:
Caromanel Technologies LLC
8 The Green, STE B, Dover, DE, 19901
United States