Legal

Privacy Policy

Last updated August 3, 2026 · Applies to the Omicsboard Lab desktop application and this website

1. Who we are

Omicsboard Lab is built and operated by Genomac Holdings ("Genomac Holdings," "we," "us," or "our"), based in Nigeria. This policy explains what personal data we collect through the Omicsboard Lab desktop application and this website (together, the "Service"), why we collect it, and what happens to it — including, importantly, what we deliberately do not collect.

If you have any question this policy doesn't answer, you can reach us directly at info@genomacholdings.com.

2. What we collect

When you create an account and use the Service, we collect and store the following on our servers (Firebase/Google Cloud):

  • Account information — your email address, used for sign-in and account communication.
  • Onboarding profile — what you tell us when setting up (e.g. your role, country, and what you mainly want to do with the app), used to calibrate how Omi teaches and works with you.
  • Subscription & billing state — your plan, billing period, trial status, and a running total of your metered usage for the current period. We use this to determine what you have access to.
  • Transaction records — the amount, currency, and timestamp of each payment, tied to a reference from our payment processor. We never see or store your card number — that is handled entirely by Paystack (see Section 5).
  • Support messages — if you contact us through the app's Contact form, we store your email, the message itself, and which channel you used (a typed message, or a logged WhatsApp click), so we can respond to you.
  • Basic activity signals — a timestamp of your last billed activity, and short-lived rate-limit counters used to keep the Service running smoothly and securely for everyone.

3. What passes through our servers, but isn't stored by us

Some things you do in the app are relayed, in real time, through our servers to a third-party provider so a response can be generated — but the content itself is not something we intentionally keep afterward:

  • Chat & conversation content. Your messages to Omi, and the code Omi writes in response, are sent through our own server-side proxy to the AI model that generates the response (currently DeepSeek; Anthropic's Claude may also be used). This exists so that no third-party AI API key ever has to live inside the app itself.
  • Voice. If you use voice, text you want spoken is sent to Google Cloud Text-to-Speech to generate audio; audio you record is sent to Google Cloud Speech-to-Text to transcribe it into text. Both are processed per-request.
  • Images. If you ask Omi to analyze an image you've attached, that image is sent to our vision AI provider (Google Gemini) for that one analysis.

Important nuance: because Omi has to "see" what it's working on to reason about it and teach effectively, this can include excerpts, previews, or outputs related to your work — not just your literal typed words. Your own raw data files, however, are never part of this traffic (see Section 4).

4. What never leaves your machine

This is the core privacy design of Omicsboard Lab: code execution happens in a Python/R notebook running locally on your own computer.

  • Your own uploaded files — sequencing reads, spreadsheets, genome files, or anything else you point Omi at — are read directly from disk by your local path. They are never uploaded to our servers, and we have no copy of them.
  • Data Omi fetches on your behalf (a public genome, a paper, a public dataset) is fetched directly by your own machine from the real public source it names — NCBI, ENA, Europe PMC, Galaxy, and similar — not routed through us or stored by us.

One disclosed, opt-in exception: we're also developing an experimental cloud R execution feature, available to a limited set of accounts. It never uploads any of your own files silently or by default — each time it would need to, Omi shows a real in-app dialog naming the exact file and asking your permission first. Only if you agree is a copy of that one file sent to your own private workspace on our cloud server, so a remote R engine can read it; nothing else about your session is copied, and your decision only applies for that session. One honest gap, stated plainly: there is currently no automatic deletion of a file after it's used — it stays in your private cloud workspace until removed. If you decline, Omi continues with local Python tools or another route (such as Galaxy) instead.

5. Third-party services we use

We rely on a small number of specialized providers to run the Service. Each only receives what's needed for its specific job, and each is bound by its own privacy terms:

  • Firebase / Google Cloud Platform — accounts, database, hosting, and serverless backend functions.
  • DeepSeek (and, where used, Anthropic) — the AI models that power Omi.
  • Google Cloud (Text-to-Speech, Speech-to-Text, and Gemini Vision) — voice and image analysis.
  • Paystack — payment processing. Paystack handles your card details directly; we never see or store your full card number.
  • Resend — delivery of transactional emails (account verification, password resets, and support replies).
  • GitHub — hosting the installer file itself, and its own public, aggregate download counts (no personal information is attached to those counts).

6. Cookies & tracking

This website does not use third-party advertising or analytics trackers. We don't run ad pixels, and we don't sell or share your data with data brokers or advertisers.

7. How long we keep data

We keep account, subscription, and transaction records for as long as your account is active, plus a reasonable additional period where needed for accounting or legal reasons. Support messages are kept to maintain a record of what was asked and how it was resolved. We do not intentionally retain the content of your AI conversations beyond what's needed to generate a response.

8. Your rights

You can ask us to access, correct, or delete the personal data we hold about you at any time by emailing info@genomacholdings.com. We'll respond within a reasonable time. Deleting your account removes your stored profile and billing state; it does not (and cannot) delete anything, since nothing of yours was ever uploaded there in the first place — your own data on your own machine stays entirely in your control.

9. Children's privacy

Omicsboard Lab is not directed at children, and we don't knowingly collect personal data from anyone under the age required by applicable law to consent to data processing on their own behalf. If you believe a child has provided us with personal data, please contact us and we'll remove it.

10. Changes to this policy

We may update this policy as the Service changes. We'll update the "Last updated" date above when we do, and if a change is material, we'll make a reasonable effort to let you know directly.

11. Governing law

This policy is governed by the laws of the Federal Republic of Nigeria, including the Nigeria Data Protection Act and its regulations (NDPR).

12. Contact

Genomac Holdings
Email: info@genomacholdings.com