NuuniHub · Google Play disclosure

Privacy Policy

This Privacy Policy explains how NuuniHub (“we”, “us”, “our”) collects, uses, stores, shares, and deletes information when you use the NuuniHub mobile application and related services.

App: NuuniHub Package: com.nuunihub.app Last updated: 19 August 2026

1. Introduction

NuuniHub is a digital services platform that provides:

This policy applies to the NuuniHub Android/iOS app identified as NuuniHub (Android application ID com.nuunihub.app) and to this public website. It is written from the current NuuniHub source code. It does not describe practices the app does not implement.

By creating an account or using NuuniHub, you agree to this Privacy Policy. If you do not agree, please do not use the app.

2. Information we collect

We collect information in three ways:

The current NuuniHub mobile app does not include advertising SDKs, Firebase Analytics, or Firebase Crashlytics. In-app notifications are stored in our database; the app does not currently include a Firebase Cloud Messaging (push notification) SDK.

3. Information you provide

Account registration and profile

When you create an account, NuuniHub uses Firebase Authentication (email and password) and stores a user profile in Cloud Firestore. The registration flow collects:

We also create and store:

You can later update phone, city, country, and profile photo from the Profile screen.

Wallet, deposits, and withdrawals

NuuniHub operates an in-app USD wallet. To add funds you send money using a selected payment method and then confirm the deposit in the app. We store:

Supported payment method types in the app currently include EVC Plus, Zaad, Sahal, eDahab, Jeeb, Waafi, Premier Bank, and Salam Bank. Deposits are completed by you sending funds to NuuniHub’s published receive numbers or bank details, then submitting a deposit request. NuuniHub does not collect or store card numbers, mobile-money PINs, bank passwords, or OTP codes.

Game top-ups and digital products

Depending on the product, we may collect:

Automatic catalogue top-ups are sent to our fulfilment partner FazerCards with the player ID and any required extra fields so the order can be delivered. Gift-card style products may not require a player ID.

Marketplace listings (selling accounts)

If you list a game or social-media account for sale, the app collects:

Listing login credentials are hidden from other users until a purchase is completed. Authorized NuuniHub operators can access them to review and deliver orders.

Buying marketplace accounts and player packs

When you buy a listed account or a player pack, we store the order, the buyer and seller identifiers, amount, status, and — after delivery — the account login details needed for you to receive the product. Some player-pack checkouts collect a Gmail address and password that you type in, so the pack can be applied to that account.

Customer support

If you use in-app support, we store your user ID, display name, subject, messages, replies, and timestamps in support tickets. If you contact us on WhatsApp or by phone, that conversation is handled on those services under their own policies. The in-app support number is 619556051 / +252619556051.

Photos, camera, and files

With your permission, the app accesses the camera and photo library to:

Images are uploaded to Cloudinary (and the app also contains Firebase Storage upload code for stored files). We do not use the camera or photos for advertising.

4. Automatically collected information

The NuuniHub app and its backends may process the following technical information:

We do not currently collect advertising IDs, contacts, SMS, microphone audio, or precise location in the background.

5. How we use your information

We use the information described above to:

We do not sell personal information. We do not use advertising SDKs in the current app.

6. Game top-up services

NuuniHub may offer digital game products such as:

There are two fulfilment paths in the current app:

  1. Automatic top-ups (FazerCards). After your wallet is charged, Firebase Cloud Functions send the order to FazerCards (api.fzr.cards), including the product identifiers and the Player ID / region fields required by that product. FazerCards may return a player nickname during ID validation. Order status is stored in Firestore (game_orders).
  2. Manual top-ups. Some products (notably eFootball / Konami coin packages) are submitted as wallet-paid requests stored in Firestore (topup_orders), including Player ID where relevant, or the game-account email and password you typed so staff can complete delivery.

Player IDs, regions, and any game-account credentials you submit are used solely to fulfil the requested service, to handle refunds or failed deliveries, and to keep a record of the order. Providing an incorrect Player ID or login may result in a failed or misdirected delivery.

7. Social media account marketplace

NuuniHub includes a marketplace for buying and selling digital accounts in categories such as eFootball, PUBG, Free Fire, TikTok, Instagram, Facebook, and others listed in the app.

Sellers must complete an identity step before a listing is sent for review. That step uploads ID images to Cloudinary (folder used in code: seller_ids) and saves location coordinates and document type in Firestore (seller_kyc). Listings stay inactive until an administrator publishes them.

Buyers receive the listed account’s login email, password, and recovery email after a successful purchase. Those secrets are operational data for the marketplace. Do not list an account you are not entitled to sell. NuuniHub may refuse, delay, or remove listings for fraud, policy, or safety reasons.

8. Payments and transactions

NuuniHub does not process card payments inside the app. You fund your wallet by sending money through the mobile-money or bank method you select, using the receive numbers or account details shown in the app, then confirming the deposit. Withdrawals send wallet value back to the mobile-money number or bank account you specify.

Payment credentials such as PINs, OTPs, and card numbers are entered only in your own mobile-money or banking app, not in NuuniHub, and are not stored by NuuniHub.

Wallet charges for catalogue purchases, marketplace orders, player packs, and blue-tick subscriptions are recorded in Firestore. Automatic top-up charges happen in a server-side Firebase transaction before FazerCards is called. Failed automatic deliveries may be refunded to the wallet.

Peer-to-peer transfers use the recipient’s public NuuniHub ID, display name, and optional photo to confirm the destination.

9. Third-party services

The following third-party services were identified in the NuuniHub application, package files, and configuration. Each processes data according to its own privacy policy as well as this one.

The repository also contains a NestJS API (with Redis, JWT, Helmet, and Prisma) intended for production top-up processing. If that API is deployed and used, it may additionally process authentication tokens, IP address, user-agent, and order records. The current Flutter client calls Firebase Cloud Functions for automatic top-ups.

Relevant provider policies include:

FazerCards is a fulfilment supplier. Review any privacy terms they publish for their API and dashboard when those are made available to you.

10. Data sharing and disclosure

We share personal information only as needed to operate NuuniHub:

We do not share data with advertising networks. There is no advertising SDK in the current app.

11. Data security

We use reasonable technical and organizational measures appropriate to a marketplace and wallet app, including:

No method of transmission or storage is completely secure. We cannot guarantee that unauthorized third parties will never defeat our measures. You should use a strong unique password for NuuniHub, and you should understand that game/social login details you submit for top-ups or listings are highly sensitive.

12. Data retention

We keep information for as long as needed to provide the service and for legitimate business, security, and legal reasons:

The current in-app admin deletion tool removes the Firestore user document and wallet document. It does not automatically erase every related order, KYC file, or the Firebase Authentication account. Deletion requests submitted through this website are processed manually as described below.

13. Your privacy rights

Depending on where you live, you may have rights to access, correct, or delete personal information, or to object to certain processing. You can:

We may need to verify that the request comes from the account holder.

14. Account and data deletion

Google Play requires apps that offer account creation to provide a way to delete the account and associated data.

The current NuuniHub app does not yet include a self-service “Delete account” button for users. Administrators can delete a user’s Firestore profile and wallet from the admin users screen. That in-app admin action is not a complete erasure of all related records.

To request deletion of your NuuniHub account and personal information:

  1. Open the public deletion page: Delete my NuuniHub account.
  2. Send the request via WhatsApp or in-app support, using the email address on the account.
  3. You may also call +252 619556051.

After we verify the request, we will delete or de-identify personal information associated with the account, including the Firebase Authentication user where technically possible, the Firestore user profile, wallet, support tickets we can locate, seller KYC images we can locate, and profile/listing images we control, subject to the retention limits below.

We may retain information when we have a legitimate need, including:

Temporary deactivation or “freezing” an account is not treated as deletion. When we complete a verified deletion request, the account is removed rather than merely disabled, except for the retained records described above.

We aim to complete verified deletion requests within a reasonable period, typically within 30 days, unless a lawful investigation requires more time.

15. Children’s privacy

NuuniHub is a digital marketplace and wallet for game top-ups and account trading. It is not directed at children and is not designed as a children’s app.

The current application source code does not define a numeric minimum age. You must be old enough under the laws of your country to use an online wallet and digital-goods marketplace, and you must not use NuuniHub if you are a child. We do not knowingly collect personal information from children. If you believe a child has created an account or given us personal information, contact us and we will take steps to delete that information.

16. Cookies and similar technologies

The NuuniHub mobile app does not use web cookies. It stores a small amount of data on your device with SharedPreferences (language, theme, and seen in-app notification IDs) so the app remembers your settings.

This Privacy Policy website does not set advertising cookies. If you load Google Fonts, Google may process technical data as described in Google’s privacy policy. Hosting providers (for example Firebase Hosting, Vercel, or Netlify, depending on where this page is deployed) may set strictly necessary cookies or logs for security and delivery.

17. International data transfers

NuuniHub is used primarily by customers in Somalia and nearby regions, but our processors operate globally. Firebase Cloud Functions for automatic top-ups are configured in us-central1 (United States). Google Firebase, Cloudinary, and FazerCards may store or process data in other countries. Where data is transferred internationally, it is transferred in order to provide the service you requested.

18. Changes to this Privacy Policy

We may update this policy when the app’s data practices change. The “Last updated” date at the top will change when we do. Continued use of NuuniHub after an update means you accept the revised policy. Material changes should be reviewed on this page before you keep using the app.

19. Contact us

For privacy questions, access requests, or deletion requests, contact NuuniHub using the channels that already exist in the app:

No official support email is stored in the NuuniHub source code. When you have one, add it in site-config.js (supportEmail) so it appears here and on the Contact page.

Please do not send game-account passwords or ID photos over untrusted public channels unless a NuuniHub operator has asked you to do so for a specific, verified request.