Security & fair play
Built to besafe to use
What NexusWatch does — and will never do — with your games, your data and your account.
- No memory reading or injection
- No input automation
- Opt-in reports you can delete
Fair play commitments
What NexusWatch never does
- Never
No reading or writing of game memory.
- Never
No code injection, DLL loading or hooking into game processes.
- Never
No automation of aim, movement or any input.
- Never
No interaction with, or bypass of, anti-cheat systems.
- By design
Game detection uses running process names only.
- By design
Insights are informational: they never play for you.
Data protection
How NexusWatch protects your data
Community match reports are opt-in and anonymous: the contributor token is stored only as a SHA-256 hash.
On the website the token lives in an httpOnly cookie; in the desktop app, in the operating system's secure credential store — never in localStorage.
You can export or delete every report at any time; deletion is immediate and cascades.
Admin endpoints require a secret token compared in constant time.
Reporting a vulnerability
A dedicated security contact will be published before the public launch. Until then, please do not publicly disclose suspected vulnerabilities.