Plain English Summary: We collect only what's needed to run the app. We don't sell your data. AI conversations are processed by Google Gemini. You can delete your account and data at any time.
01
Who We Are
GritIQ ("we," "our," or "us") is an AI-powered study platform built for competitive exam aspirants. We operate the GritIQ Android application. Our website is gritiq.in and our registered contact is support.gritiq@gmail.com.
This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application. Please read it carefully.
02
Data We Collect
👤
Account Data
Email address, display name, profile photo (optional), and account creation timestamp.
📚
Study Content
Planner imports, missions, notes, and progress data you create inside the app.
💬
AI Conversations
Messages you send to the AI chat assistant and the responses generated.
📊
Usage Analytics
App events, session duration, feature interactions, and diagnostic crash reports. Crash reports may include your device model, OS version, app version, and a pseudonymous user identifier to assist debugging.
🔔
Device Tokens
Firebase Cloud Messaging token for push notifications (if permission granted).
💳
Payment Records
Subscription status, payment date, and order reference. For Android purchases, this comes from Google Play Billing — we never store card numbers, and Google handles your payment details directly.
🌙
Night Audit Data
Daily reflection entries, mood/energy ratings, study hour logs, and self-assessment notes you record in the Night Audit feature. This data is stored in your account and is never shared with third parties.
🎯
Subject Confidence
Self-rated confidence levels you set per subject/topic, used to personalize your Morning Mission and revision suggestions. Visible only to you.
⏱️
Study Sessions
Session start/end timestamps, duration, and subject tags for study sessions you log in the app. Used to calculate your study streaks and progress metrics. Stored in your account and never shared with third parties.
⚙️
Study Preferences
Your exam track, target exam date, study-hour goals, and notification preferences, used to personalize the app experience.
👥
Community Pulse
Aggregate study-activity statistics used to generate Community Pulse metrics (e.g. total study hours across the community, overall session counts). These are aggregated and anonymous — your individual data is not displayed publicly, and no user-generated posts, comments, or replies are collected.
Data Safety summary: We do not sell your data to anyone. Data we collect is used only to provide and improve the GritIQ service. You can permanently delete your account and all associated data at any time, directly inside the app — no email required (Profile → Delete Account).
03
Authentication
We use Supabase Authentication to manage sign-in and account security. You may sign in via:
- Email and password (credentials stored encrypted in Supabase)
- Google OAuth (we receive only your public Google profile: name, email, profile picture)
We do not store raw passwords. All authentication tokens are encrypted in transit (TLS 1.2+) and at rest.
Session management: Auth sessions expire automatically. You can sign out from all devices via account settings, which invalidates all active tokens immediately.
04
Planner Uploads
You may import study planners (PDF, images, or structured data) into the app. When you do:
- Files are uploaded securely to Supabase Storage using your authenticated session.
- Files are associated only with your account and are not shared with other users.
- When you use the AI-assisted planner parsing feature, your uploaded file is sent to Google's Gemini API for text extraction and structuring. Files are only transmitted when you explicitly trigger this feature; passive uploads are not automatically sent to any AI service.
- Planner files are selected using Android's built-in system file picker. The app does not request camera or photo library (media) permissions — file selection works without any app-level media permission grant.
- Files are stored only for as long as your account exists, or until you delete them manually.
Important: Do not upload documents containing sensitive personal information (Aadhaar, PAN, bank details) as planner content. Upload study-related materials only.
05
AI Mentor (AI Chat) Usage
The AI Mentor feature (our in-app AI chat assistant) is powered by Google Gemini, accessed via Supabase Edge Functions. Here is exactly what happens when you send a message:
- Your message is transmitted over TLS to our Supabase Edge Function.
- The Edge Function forwards it to Google's Gemini API for inference.
- The AI response is returned and stored in your chat history in Supabase.
- Your conversation history is tied to your account and not shared publicly.
Google processes your messages via the Gemini API solely to generate responses. Per Google's API usage policies, data submitted through the Gemini API is not used to train Google's models by default. However, Google's own data handling is governed by their Privacy Policy and Gemini API Terms, which we recommend reviewing. We do not recommend sharing personally identifying information in AI chat.
AI Limitations Disclosure
AI responses are generated automatically and may be inaccurate, incomplete, or outdated. Do not rely solely on AI output for critical exam preparation decisions. Always cross-verify with authoritative study materials.
06
Analytics
We collect usage analytics to improve the app. This includes:
- Feature usage frequency and session length
- Diagnostic crash and error reports
- Device type, OS version, and app version
- General geographic region (country/state level only)
Analytics data is collected at the account level and linked to your user ID for crash diagnosis and support purposes. While we do not use this data for advertising or profiling, it is pseudonymous rather than fully anonymous — it can be associated with your account if required for technical support or debugging. We do not sell this data or share it with ad networks.
07
Push Notifications
We use Firebase Cloud Messaging (FCM) to send study reminders, mission alerts, Night Audit check-in prompts, and transactional notifications such as subscription renewal reminders and payment status updates.
- Notifications are only sent after you grant permission on your device.
- Your FCM token is stored in our database and linked to your account.
- You can disable notifications at any time in your device settings or in-app settings.
- Disabling notifications does not affect app functionality.
08
Data Retention
Account Data
Retained while your account is active. Deleting your account is a hard delete — it is processed immediately and is not recoverable.
AI Chat History
Stored until you delete individual conversations or your account. Removed immediately on account deletion.
Night Audit Entries
Stored until you delete individual entries or your account. Not retained after account deletion.
Planner Files
Deleted when you remove them or delete your account.
Subject Confidence & Tasks
Stored until you delete individual entries or your account. Removed immediately on account deletion.
Payment Records
Retained for 7 years as required by Indian tax regulations (IT Act), even after account deletion, where legally required.
Analytics
Pseudonymised analytics data (device/session identifiers with no direct name or email) may be retained for up to 3 years for product improvement. Account-linked diagnostics are deleted immediately on account deletion.
FCM Tokens
Deleted when you disable notifications or delete your account.
Deleting Your Account
You can permanently delete your account at any time inside the app: Profile → Delete Account → type DELETE to confirm. This immediately and irreversibly removes your Supabase user record, profile, planner uploads, study/task data, AI chat history, Night Audit entries, and Subject Confidence data, and signs you out of all devices. We do not require an email request to process account deletion. Payment records are retained separately where required by Indian tax law (see above).
09
Third-Party Services
We integrate with the following third-party services, each governed by their own privacy policies:
- Supabase — Database, authentication, and file storage (EU/US data centers)
- Google Gemini — AI inference for chat and planner parsing
- Firebase / Google — Push notification delivery and Google Sign-In
- Google Play Billing — Primary payment processor for Android in-app subscriptions. Google handles your payment details directly; we only receive subscription status and an order reference, never your card or UPI details.
- Mixpanel — Product analytics (pseudonymous event tracking)
We do not share your data with advertisers, data brokers, or any third party not listed above.
10
Your Rights
You have the following rights regarding your personal data:
- Access — Request a copy of all data we hold about you.
- Correction — Request correction of inaccurate data.
- Deletion — Request deletion of your account and associated personal data.
- Portability — Request your data in a machine-readable format.
- Objection — Object to processing of your data for analytics.
To exercise any right, email us at support.gritiq@gmail.com. We respond within 30 days.
11
Children's Privacy
Our app is designed for competitive exam aspirants, many of whom may be under 18. We do not knowingly collect data from children under 13 without parental consent. If you are under 13, please do not use this app without a parent or guardian's involvement.
If we learn that we have inadvertently collected personal data from a child under 13 without consent, we will delete it promptly. Contact us at support.gritiq@gmail.com.
12
Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the "Last Updated" date at the top and notify you via in-app notification for material changes. Continued use of the app after changes constitutes acceptance of the updated policy.