Privacy Policy

Last Updated: December 4, 2025

1. Introduction

Welcome to Vaidra ("we," "our," or "us"), accessible at vaidra.in. We are committed to protecting your personal information and your right to privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform, in accordance with the Information Technology Act, 2000 and the Digital Personal Data Protection Act, 2023 (DPDP Act).

2. Information We Collect

2.1 Information You Provide

  • Account information (name, email address, profile picture)
  • Authentication data when you sign up or log in via Google or Facebook
  • Study progress and performance data
  • User-generated content (notes, bookmarks, test responses)

2.2 Automatically Collected Information

  • Device information (IP address, browser type, operating system)
  • Usage data (pages visited, features used, time spent)
  • Cookies and similar tracking technologies

3. How We Use Your Information

  • To provide and maintain our service
  • To personalize your learning experience
  • To track your study progress and performance
  • To send you updates, notifications, and educational content
  • To improve our platform and develop new features
  • To ensure security and prevent fraud
  • To comply with legal obligations

4. Third-Party Services

We use the following third-party services:

  • Google OAuth: For authentication and account creation
  • Facebook Login: For authentication and account creation
  • Supabase: For database and authentication services (data stored in India region)
  • Vercel: For hosting and deployment
  • Razorpay: For secure payment processing
  • Google Gemini AI: For AI-powered study assistance features

These services have their own privacy policies governing their collection and use of your information. Please note that some services (Google, Facebook, Vercel) may transfer data outside India for processing.

5. Data Sharing and Disclosure

We do not sell your personal information. We may share your information only in the following circumstances:

  • With your consent
  • With service providers who assist in operating our platform
  • To comply with legal obligations or respond to lawful requests
  • To protect our rights, privacy, safety, or property

6. Data Security

We implement appropriate technical and organizational security measures to protect your personal information. However, no method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.

7. Your Rights

You have the right to:

  • Access your personal information
  • Correct inaccurate or incomplete information
  • Request deletion of your information (see Data Deletion)
  • Object to or restrict certain processing of your information
  • Data portability
  • Withdraw consent at any time

8. Data Retention

We retain your personal information only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law. When you request account deletion, we will delete or anonymize your information within 30 days.

9. Children's Privacy

Our service is intended for users aged 18 and above. We do not knowingly collect personal information from individuals under 18. If you are under 18, please obtain parental or guardian consent before using our services. If you believe we have collected information from someone under 18 without proper consent, please contact us immediately.

10. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience on our platform:

  • Essential Cookies: Required for authentication and core functionality
  • Analytics Cookies: To understand how users interact with our platform
  • Preference Cookies: To remember your settings and preferences

You can control cookies through your browser settings. However, disabling certain cookies may affect the functionality of our services.

11. Data Localization and Cross-Border Transfer

Your data storage and processing:

  • Primary Data Storage: Your personal data and study progress are stored on Supabase servers located in India
  • Cross-Border Transfers: Some data may be processed by third-party services (Google OAuth, Facebook Login, Vercel hosting) which may transfer data outside India. We ensure such transfers comply with applicable data protection laws
  • Payment Data: Payment information is processed by Razorpay (India-based) and is subject to PCI-DSS compliance standards

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, operational, or regulatory reasons. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. Your continued use of our services after such changes constitutes your acceptance of the updated Privacy Policy.

13. Governing Law and Compliance

This Privacy Policy is governed by and construed in accordance with the laws of India, including but not limited to the Information Technology Act, 2000, the Digital Personal Data Protection Act, 2023, and the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011.

14. Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us at:

Email: support@vaidra.in

Website: vaidra.in

Data Deletion Requests: Click here

Facebook Data Policy

When you use Facebook Login, we receive the following information from Facebook:

  • Your public profile (name, profile picture)
  • Your email address

We use this information solely for authentication and account creation purposes. You can manage your Facebook data sharing settings in your Facebook account settings. To request deletion of your data, please visit our Data Deletion page.