Nexora White Logo
Back

Privacy Policy

Last updated: September 6, 2026

Nexora respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how Nexora collects, uses, stores, shares, and protects personal data when you access or use the Nexora website, create an account, register for a conference or scientific event, submit an abstract or other content, make a payment, communicate with us, or use any related service.

Nexora is based in Germany and processes personal data in accordance with applicable European Union data protection law, including the General Data Protection Regulation (GDPR), Regulation (EU) 2016/679, where applicable. Because Nexora serves an international community of researchers, academics, healthcare professionals, engineers, technology specialists, students, speakers, authors, and other participants, personal data may also be processed in connection with conferences and events taking place in different countries.

1Data Controller

The entity responsible for processing your personal data through the Nexora platform is:

Legal entity name: Nexora

Registered office: Roermonder Street 305, 52072 Aachen, Germany

Country: Germany

Privacy contact: info@nexoraconference.com

Nexora operates under the responsibility of Dr. Amir Azmi.

For certain conferences or services, the relevant Event Organizer may independently act as a data controller or joint controller for specific processing activities. Where this applies, additional privacy information may be provided on the relevant conference or event page.

2Personal Data We Collect

Depending on how you interact with Nexora, we may process the following categories of personal data:

2.1 Identity and Contact Information

  • First and last name
  • Email address
  • Telephone or mobile number
  • Country of residence
  • Postal or billing address where required
  • Professional title or position
  • Institution, university, company, hospital, or other affiliation

2.2 Account Information

  • Account credentials and authentication information
  • User role and account status
  • Profile information voluntarily provided by the user
  • Profile photograph or avatar where provided

Passwords are not intended to be stored in plain text and should be protected using appropriate security measures.

2.3 Conference and Event Information

  • Conference and event registrations
  • Registration type and selected services
  • Attendance information
  • Abstracts, papers, presentations, and related submissions
  • Author and co-author information
  • Speaker, reviewer, or committee information
  • Certificates, badges, QR codes, and attendance records

2.4 Payment, Pricing, Tax and Transaction Information

  • Transaction and payment status
  • Registration and payment identifiers
  • Billing information where required
  • Base registration price
  • Applicable VAT or other tax information
  • Invoice and receipt information
  • Refund and payment dispute information

Where German standard VAT applies, the applicable VAT may be calculated at 19% of the relevant taxable base price. The applicable tax treatment depends on the transaction and applicable tax rules.

Payment card details may be processed directly by authorized payment service providers. Nexora does not intentionally store complete payment card numbers unless explicitly required and lawfully permitted.

2.5 Technical and Usage Information

  • IP address
  • Browser type and version
  • Device type and operating system
  • Language and general technical settings
  • Access dates and timestamps
  • Pages and services accessed
  • Security and diagnostic logs

2.6 Communications

  • Messages and inquiries submitted to Nexora
  • Support requests
  • Email correspondence
  • Feedback and other communications with our team

3Purposes of Processing

We process personal data only for specific, explicit, and legitimate purposes. Depending on the service used, these purposes may include:

  • Creating and managing user accounts
  • Processing conference and event registrations
  • Calculating and processing applicable VAT and other taxes
  • Managing participant attendance and event access
  • Processing abstract, paper, and presentation submissions
  • Supporting scientific review and evaluation processes
  • Communicating registration confirmations and important event updates
  • Issuing tickets, badges, QR codes, certificates, invoices, and receipts
  • Processing payments through authorized payment providers
  • Providing customer support and responding to inquiries
  • Maintaining the security and integrity of the platform
  • Detecting and preventing fraud, abuse, and unauthorized access
  • Improving the functionality, performance, and usability of the Website
  • Complying with applicable legal, regulatory, accounting, tax, and administrative obligations

4Legal Bases for Processing

Where the GDPR applies, Nexora processes personal data on one or more legal bases under Article 6 GDPR, depending on the specific processing activity.

  • Performance of a contract: for account services, event registration, participation, payments, pricing and other services requested by you.
  • Compliance with legal obligations: where processing is required by applicable law, including accounting, tax, regulatory, or legal requirements.
  • Consent: where processing requires your consent, such as certain optional communications or non-essential cookies.
  • Legitimate interests: where necessary for purposes such as platform security, fraud prevention, service improvement, and administration, provided that our interests do not override your fundamental rights and freedoms.

Where processing is based on consent, you may withdraw your consent at any time. Withdrawal does not affect the lawfulness of processing carried out before withdrawal.

5Data Minimisation and Accuracy

Nexora seeks to collect and process only personal data that is adequate, relevant, and necessary for the purposes for which it is processed. We also take reasonable steps to keep personal data accurate and up to date and may request users to correct information when necessary.

6Data Sharing and Recipients

Nexora does not sell personal data. Personal data may be disclosed only where necessary for legitimate and specified purposes, including to:

  • Authorized personnel and teams responsible for operating Nexora
  • Relevant conference organizers and scientific committees
  • Reviewers where necessary for scientific evaluation and review
  • Payment processors and financial service providers
  • Hosting, cloud infrastructure, security, and technical service providers
  • Email and communication service providers
  • Professional advisers, auditors, or legal authorities where legally required
  • Competent public authorities where disclosure is required by law

Where third parties process personal data on behalf of Nexora, we seek to ensure that appropriate contractual and technical safeguards are in place as required by applicable data protection law.

7International Data Transfers

Nexora operates internationally and may use service providers or work with conference organizers located outside the European Economic Area (EEA). Where personal data is transferred to a country outside the EEA, Nexora will apply the transfer mechanisms and safeguards required by applicable data protection law.

Depending on the circumstances, such safeguards may include an applicable European Commission adequacy decision, Standard Contractual Clauses (SCCs), or another lawful transfer mechanism recognized under the GDPR.

The GDPR requires appropriate safeguards when personal data is transferred to third countries in circumstances where an adequacy decision does not apply.

8Data Retention

Nexora retains personal data only for as long as reasonably necessary to fulfil the purposes for which it was collected, provide the requested services, meet contractual obligations, resolve disputes, maintain appropriate business records, or comply with legal, tax and regulatory obligations.

Different categories of data may therefore be retained for different periods. When personal data is no longer required, it will be deleted, anonymized, or otherwise securely disposed of where appropriate.

9Cookies and Similar Technologies

Nexora may use cookies and similar technologies to operate the Website, maintain secure sessions, remember user preferences, improve functionality, and, where permitted, analyze website usage.

Non-essential cookies or similar technologies may require user consent depending on their purpose and the applicable legal requirements.

  • Strictly necessary cookies for essential website functionality
  • Preference cookies used to remember selected settings
  • Analytics or measurement technologies where applicable
  • Security-related technologies used to protect accounts and services

You may manage cookie preferences through the cookie controls provided by the Website and, where applicable, through your browser settings.

10Data Security

Nexora implements appropriate technical and organizational measures designed to protect personal data against unauthorized access, accidental loss, destruction, alteration, disclosure, or other unlawful processing.

  • Encrypted connections using appropriate transport security
  • Authentication and access control mechanisms
  • Role-based access restrictions where appropriate
  • Security monitoring and logging
  • Secure handling of user and event data
  • Backup and recovery procedures where appropriate
  • Technical and organizational measures designed according to the risks involved

No method of transmitting or storing information can be guaranteed to be completely secure. Nexora therefore continuously evaluates and improves its security measures according to applicable requirements and identified risks.

11Your Rights Under the GDPR

Where the GDPR applies, you may have the following rights, subject to the conditions and limitations established by applicable law:

  • Right to information: to receive clear information about how your personal data is processed.
  • Right of access: to request access to personal data held about you.
  • Right to rectification: to request correction of inaccurate or incomplete data.
  • Right to erasure: to request deletion of personal data in circumstances provided by law.
  • Right to restriction: to request restriction of processing in certain circumstances.
  • Right to data portability: to receive certain personal data in a structured, commonly used, and machine-readable format.
  • Right to object: to object to certain processing, including processing based on legitimate interests and direct marketing where applicable.
  • Right to withdraw consent: where processing is based on consent.
  • Rights regarding automated decision-making: where applicable, you may have rights concerning decisions based solely on automated processing that produce legal or similarly significant effects.

The availability and scope of these rights depend on the circumstances and applicable law.

12How to Exercise Your Rights

You may exercise your applicable data protection rights by contacting Nexora using the privacy contact details provided in this Privacy Policy.

To protect personal data from unauthorized disclosure, we may need to verify your identity before processing certain requests.

Under the GDPR, requests should generally be handled without undue delay and, in principle, within one month, subject to the conditions and extensions permitted by law.

13Right to Lodge a Complaint

If you believe that your personal data has been processed in violation of applicable data protection law, you have the right to lodge a complaint with a competent data protection supervisory authority.

As Nexora is established in Germany, the competent German supervisory authority may depend on the location of the relevant establishment and the circumstances of the processing.

14International Conferences and Event Organizers

Nexora supports conferences and scientific events across different countries and disciplines, including medicine, healthcare, engineering, artificial intelligence, computer science, technology, and other scientific fields.

A specific conference may involve an independent Organizer, scientific committee, venue, payment provider, or other service provider. Where these parties independently determine the purposes and means of processing, they may have separate data protection responsibilities and may provide additional privacy information.

15Children's Data

Nexora's services are primarily intended for adults and professional or academic participants. We do not knowingly seek to collect personal data from children where such collection is not appropriate or legally permitted. If you believe that a child has provided personal data to Nexora without appropriate authorization, please contact us so that the matter can be reviewed.

16Third-Party Websites and Services

The Nexora Website may contain links to third-party websites, payment services, accommodation providers, conference venues, scientific resources, or other external services. These third parties operate under their own privacy policies and terms. Nexora is not responsible for the privacy practices of third-party services that it does not control.

17Changes to This Privacy Policy

Nexora may update this Privacy Policy from time to time to reflect changes in our services, processing activities, applicable legal requirements, or data protection practices. The latest version will be published on this page together with the applicable revision date.

18Contact and Data Protection Requests

If you have questions about this Privacy Policy, wish to exercise your data protection rights, or have concerns regarding the processing of your personal data, please contact Nexora using the following details:

Privacy Email: info@nexoraconference.com

Legal Entity: Nexora

Address: Roermonder Street 305, 52072 Aachen, Germany

Nexora is committed to applying the principles of lawful, fair, and transparent processing, purpose limitation, data minimisation, accuracy, storage limitation, integrity, confidentiality, and accountability when processing personal data, as applicable under European data protection law.