Official Legal Charterv2.4 (Statutory & Enterprise Edition)
Privacy Policy & Data Protection Charter
A transparent, legally binding declaration of how JyotishGyan collects, computes, safeguards, and respects your personal identity and sacred astrological birth details.
DPDP Act 2023Digital Personal Data Protection (India)
🇪🇺
EU & UK GDPRArticles 12–23 Compliant
🇺🇸
CCPA / CPRACalifornia Privacy Rights
⚖️
IT Act 2000 & SPDIIndian Cyber Law & Intermediary Rules
Guaranteed Protections
🛡️ Privacy at a Glance: Our 4 Non-Negotiable Pillars
Whether you are an anonymous visitor casting a single chart or a registered member saving life reports, these core guarantees govern every byte of data processed on JyotishGyan:
1. In-Memory Ephemeral Engine
For anonymous users, birth details (Date, Time, Place) are processed entirely in volatile server RAM to calculate planetary matrices via the Swiss Ephemeris. The raw inputs are never committed to disk or databases and are immediately erased once the chart is rendered.
⚡ Zero-Persistence for Guests
2. Zero-Password Architecture
We implement secure, passwordless Magic Link (Email OTP) authentication via Supabase. We never ask for, hash, or store passwords. There is no credential database that can be breached, credential-stuffed, or cracked.
🔐 No Passwords Stored
3. Absolute No-Sale Guarantee
We have never sold, rented, leased, or monetized user personal data or astrological profiles to data brokers, financial institutions, or ad exchanges. We reject cross-context behavioral tracking and user profiling resale.
🚫 100% No Data Brokerage
4. Ethical AI & Zero Public Training
AstroBot uses AI language models strictly to articulate pre-computed classical astrological interpretations. Your conversation prompts and astrological charts are never used to train public foundation AI modelsor commercial LLMs.
1. Preamble, Corporate Identity & Scope of Charter
Plain English Summary
This charter is a binding legal contract explaining what data JyotishGyan handles when you use our website, calculators, or chatbot. We act as the Data Fiduciary under Indian law and Data Controller under European law.
This Privacy Policy and Data Protection Charter ("Policy" or "Charter") sets forth the principles, technical safeguards, and legal covenants governing the collection, recording, processing, storage, and erasure of data by JyotishGyan ("Platform", "we", "us", or "our"), accessible via https://jyotishgyan.co.in and any associated sub-domains.
Statutory Entity & Fiduciary Role: For the purposes of India's Digital Personal Data Protection Act, 2023 (DPDP Act), JyotishGyan acts as the Data Fiduciary. For individuals residing within the European Economic Area (EEA), the United Kingdom, or Switzerland under the General Data Protection Regulation (GDPR / UK GDPR), JyotishGyan acts as the Data Controller. Under the California Consumer Privacy Act (CCPA as amended by CPRA), we operate as a "Business".
Material Scope:This Policy applies unconditionally to every user ("Data Principal", "User", or "you") interacting with any facet of the Platform, including:
Content & Editorial Repository: Classical Vedic commentaries, Lal Kitab insights, Swar Vigyan, planetary transit articles, festival calendars, and rituals.
By accessing, browsing, calculating, or creating an account on JyotishGyan, you explicitly confirm that you have read, understood, and agreed to be bound by this Policy. If you do not agree to these terms in their entirety, you must immediately discontinue access to the Platform.
Section 2
2. Vedic Astrological & Spiritual Data Classification
Plain English Summary
Astrology requires specific birth coordinates (date, exact minute of birth, city). Because your birth chart can reveal personal and spiritual beliefs, we classify birth details as Sensitive Personal Data and never use it for advertising or profiling.
Unlike standard consumer web services, an authentic Vedic astrology platform relies on precise temporal and geographic telemetry. Under the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 and the DPDP Act 2023, we recognize that astrological birth records occupy a sensitive nexus of personal, philosophical, and spiritual life:
What Constitutes Astrological Birth Data on JyotishGyan?
Date of Birth (DOB): Required to compute ephemeris solar, lunar, and planetary longitudes.
Exact Time of Birth (TOB): Required to calculate the Ascendant (Lagna) degree and cusps of the 12 Bhavas (houses), shifting every ~2 hours.
Place of Birth (POB / Geocoordinates): Required to calculate local sidereal time (LST), geographic latitude, and longitude for topocentric coordinate adjustments.
Gender / Biological Context: Optionally requested strictly for classical Ashtakoot Milan compatibility metrics.
Our Special Fiduciary Duty: We recognize that your Janam Kundali (birth chart) reflects personal life aspects, psychological tendencies, and spiritual values. We explicitly covenant that:
We do not synthesize psychological profiles to sell to third-party insurers, employers, or credit scorers.
We do not cross-reference your horoscope with consumer credit, shopping records, or behavioral tracking brokers.
Your astrological inputs are treated strictly as mathematical parameters for astronomical algorithms.
Section 3
3. Granular Categories of Information We Collect
Plain English Summary
We collect only what is strictly necessary: birth details to compute your chart, email if you choose to sign in, and anonymized metrics to keep the site fast and reliable.
We classify the data we collect into four distinct operational categories:
A. Data Provided Directly by You (Voluntary Submission)
Astrological Parameters: Date of birth, time of birth, birth city, state, country, and gender.
Numerology Data: Full legal name or baby name candidates entered for Chaldean/Pythagorean gematria calculations.
Account Identity Data: Your email address when choosing to authenticate via passwordless Magic Link.
Chatbot Queries: Text messages, questions, and astrological queries typed into AstroBot.
Contact & Feedback Submissions: Your name, email, subject, and message content when submitting our feedback or contact forms.
B. Data Generated & Inferred by Our Algorithms (Computed Data)
Interpretive Metrics: Dasha balances, Shadbala scores, Ashtakavarga bindus, Mangal Dosha status, and Kaal Sarp assessments.
C. Automatically Collected Technical & Telemetry Data
Network Telemetry: Anonymized IP addresses (processed in serverless RAM, never stored alongside user identity), HTTP request headers, and SSL/TLS cipher suites.
Device & Browser Diagnostics: Operating system, browser type and version, screen resolution, preferred language, and referring webpage.
Aggregated Usage Patterns: Page load times, calculation response durations, feature engagement, and navigation drop-offs collected via Google Analytics 4 with IP anonymization active.
D. Ephemeral Geolocation Lookup
When you access birth chart forms, we may perform an in-browser or client-side city-level lookup based on your IP address. This is used solely to pre-populate the city and timezone selectorfor your convenience. This geolocation is stored only in your device's localStorage (key: jg_ip_location) with a 7-day automatic expiry. We do not track real-time GPS locations or maintain geographic travel histories.
Section 4
4. Lawful Bases for Data Processing
Plain English Summary
Under DPDP Act 2023 and GDPR Art. 6, every action we take has a lawful justification: your consent when you run a chart, fulfilling our service when you create an account, and legitimate platform security.
In compliance with Section 4 & Section 6 of the DPDP Act 2023 and Article 6 of the EU/UK GDPR, we only process your data when a legitimate statutory ground exists:
Processing Activity
Data Handled
DPDP Act 2023 Basis
GDPR Basis (Art. 6)
Calculating Kundali & Vedic Reports
Birth Date, Time, Place
Section 6 (Explicit Consent via form submission)
Art. 6(1)(a) Consent
Syncing Saved Charts Across Devices
Email, User UUID, Saved Reports
Section 4(1) & Section 6 (Consent upon registration)
Art. 6(1)(b) Contractual Performance
AstroBot Conversational AI Responses
Query text, sanitized birth context
Section 6 (Affirmative action in chat interface)
Art. 6(1)(a) Consent
Platform Security & Anti-DDoS Defense
IP headers, request rate tokens
Section 7(b) (Certain Legitimate Uses / Security)
Art. 6(1)(f) Legitimate Interests
Anonymized Performance Analytics
Aggregated telemetry, bounce rates
Section 7(g) (Legitimate Operations)
Art. 6(1)(f) Legitimate Interests
Tax, Legal & Regulatory Audits
Grievance logs, consent audit trails
Section 7(a) (Legal Obligation compliance)
Art. 6(1)(c) Legal Obligation
Section 5
5. Ephemeris Engine & Data Flow Lifecycle
Plain English Summary
All our astronomical calculations are performed directly on our own serverless instances using Swiss Ephemeris. We do not send your birth data to any third-party astrological API.
A core distinction of JyotishGyan is our self-hosted computing architecture. Rather than routing your birth details to opaque third-party astrology software or external SaaS APIs, all calculations are executed internally using the renowned Swiss Ephemeris (Moshier / JPL planetary algorithms) running on our Vercel Serverless environment.
JyotishGyan Computing & Data Lifecycle
Step 1
Client Input in Browser
You enter DOB, TOB, and City in our secure form. Data is packaged in an HTTPS POST payload with TLS 1.3 encryption.
↓ Transport Layer: Encrypted TLS 1.3 Payload ↓
Step 2
Vercel Edge & Serverless Function (Volatile RAM)
Node.js runtime loads Swiss Ephemeris astronomical tables into serverless RAM. Planetary positions, ascendant, house cusps, and dashas are computed in ~80 milliseconds.
↓ Computed Chart Payload (JSON / SVG) Sent Back ↓
Step 3
Immediate RAM Deallocation
Once the JSON response is delivered to your browser, the serverless instance terminates or frees memory. Anonymous calculation parameters are completely wiped from volatile memory.
↓ Client Display or Registered Persistence ↓
Guest / Anonymous Users
Chart renders in browser. Form input may be saved locally to your device's localStorage for your session. Server retains ZERO records.
Registered Account Users
If you click "Save Chart", the computed report is stored in our Neon.tech PostgreSQL database with AES-256 encryption at rest.
Section 6
6. AstroBot AI Assistant & LLM Transparency
Plain English Summary
AstroBot uses modern AI to help interpret astrological rules into readable text. We de-identify your messages, never send your email or identity to AI providers, and guarantee your chats are NOT used to train public AI foundation models.
JyotishGyan features AstroBot, an automated AI astrological counseling interface. To deliver intelligible Vedic interpretations, AstroBot uses modern Large Language Models (LLMs) orchestrated through secure API gateways (such as OpenRouter):
Core AI Privacy Safeguards:
Strict De-Identification:Prompts dispatched to AI endpoints contain only astrological placements (e.g., "Jupiter in 10th house in Sagittarius") and your general question. Your full name, email, IP address, and device identifiers are strictly scrubbed prior to dispatch.
No Model Training Covenant: We enforce enterprise API parameters ensuring that user queries and astrological charts are never utilized to train, retrain, or fine-tune public foundation AI models operated by OpenAI, Anthropic, Meta, Google, or open-source hosting providers.
Computational Pre-Verification: AstroBot does not allow the AI to fabricate planetary coordinates. All astronomical mathematics are pre-calculated by the Swiss Ephemeris engine before being passed as grounded context.
User Chat History Control: For registered users, chat history is stored in our Neon PostgreSQL database to maintain dialogue continuity. You can permanently wipe your chat history at any time from your Account Settings or by emailing us.
Section 7
7. Guest / Anonymous vs. Registered Account Architecture
Plain English Summary
You can use 100% of JyotishGyan's calculators without creating an account. Here is how the data footprint compares between guest usage and registered accounts.
We believe in privacy by default. Every astrological tool on JyotishGyan is fully accessible without mandatory registration. The table below provides an exact comparison:
Feature / Attribute
Anonymous / Guest User
Registered Member
Account Required?
No (100% anonymous access)
Yes (Email Magic Link verification)
Birth Data Stored on Server?
Never (RAM only)
Yes (Encrypted in Neon.tech PostgreSQL)
Cross-Device Chart Sync?
No
Yes (Accessible from any authenticated browser)
AstroBot History Persisted?
Session only (Cleared on tab close)
Yes (Stored until you delete it)
Browser Storage Used?
Yes (Temporary localStorage for convenience)
Yes (localStorage + Supabase auth session token)
How to Delete Data?
Clear browser cache / localStorage
Click "Delete Account" or email privacy desk
Section 8
8. Third-Party Sub-processors & Service Providers
Plain English Summary
We partner with top-tier cloud providers for hosting, authentication, and databases. Every sub-processor is vetted for strict security standards, SOC 2 compliance, and encryption.
To maintain high availability, global low-latency computing, and rock-solid cryptographic security, JyotishGyan engages vetted third-party data processors ("Sub-processors"). In accordance with Section 8(2) of the DPDP Act 2023 and Article 28 of the GDPR, we hold all sub-processors to rigorous technical and organizational standards:
Service & Entity
Purpose & Functional Scope
Data Processed
Hosting Region
Security Standard
Vercel Inc. vercel.com
Edge hosting, CDN caching, Serverless computing, API execution
HTTP request headers, transient IP address, routing telemetry
Global Edge Network / US East
SOC 2 Type II, ISO 27001, DDoS Mitigation
Supabase Inc. supabase.com
Passwordless Magic Link OTP authentication & session tokens
User email address, session tokens, user UUID
AWS EU (Frankfurt) / US East
SOC 2 Type II, ISO 27001, bcrypt, TLS 1.3
Neon Inc. neon.tech
Serverless PostgreSQL database for registered member profiles
Saved Kundali charts, user profiles, chat history, feedback
AWS Cloud Infrastructure
AES-256 encryption at rest, TLS 1.3 in transit, Daily Backups
Ad cookies, aggregated audience metrics (Publisher ID: pub-1773697079742397)
United States / Global
Google Publisher Policies, NAI Compliant
Amazon Seller Services Amazon Associates India
Vedic book and gemstone product recommendations
Server-side PA-API 5.0 product fetches; zero user PII
India / United States
AWS SigV4 cryptographic request signing
OpenRouter AI openrouter.ai
LLM gateway for AstroBot natural language articulation
De-identified astrological prompts; zero PII
United States
Zero-retention parameters, no foundation model training
Telegram FZ-LLC core.telegram.org
Real-time administrative crash & system health alerting
System error logs, stack traces, HTTP error codes; zero PII
Dubai, UAE
Encrypted Telegram Bot API token
Section 9
9. Amazon Associates Program & Affiliate Disclosure
Plain English Summary
We participate in the Amazon Associates program to recommend authentic Vedic literature and gemstones. If you click an Amazon link and make a purchase, we may earn a small commission at no additional cost to you. We never send your personal information to Amazon.
In compliance with the Amazon Associates Program Operating Agreement(specifically Section 5: "Identifying Yourself as an Associate") and guidelines established by the Advertising Standards Council of India (ASCI) and the US Federal Trade Commission (FTC), we provide the following mandatory disclosure:
Mandatory Affiliate Association Statement:
"JyotishGyan is a participant in the Amazon Services LLC Associates Program and Amazon Associates India, an affiliate advertising program designed to provide a means for websites to earn advertising fees by advertising and linking to Amazon.in."
Zero Personal Data Transmission: When you view affiliate widgets on JyotishGyan, all product metadata (titles, pricing, covers) is fetched on our server via Amazon PA-API 5.0 with AWS SigV4 signatures. No user data, birth charts, or IP addresses are passed to Amazon during this API call.
Direct Amazon Interaction: If you choose to click an affiliate link to purchase a recommended book or item, you are redirected directly to Amazon.in. Any transaction, payment data, address details, or orders are executed entirely on Amazon.in and are governed exclusively by Amazon's Privacy Notice.
Editorial Independence: Astrological charts, remedies, and gemstone suggestions are strictly calculated from classical Vedic treatises (Brihat Parashara Hora Shastra, Phaladeepika, Jataka Parijata). Commercial affiliate relationships never dictate, alter, or bias your astrological report findings.
Section 10
10. Advertising Networks & Google AdSense Disclosures
Plain English Summary
To keep 100% of our calculation tools free for everyone, we display advertisements via Google AdSense. Google may use cookies to show relevant ads. You can easily opt out of personalized ads at any time.
JyotishGyan utilizes Google AdSense (Publisher ID: pub-1773697079742397) to support the substantial computational infrastructure required for high-accuracy ephemeris computing. Google and its certified third-party ad networks may serve advertisements on the Platform:
Third-Party Vendor Cookies: Google uses cookies (such as the DoubleClick cookie or __gads) to serve ads based on prior visits to our Platform or other internet websites.
Personalized vs. Contextual Ads: Depending on your jurisdiction and browser privacy settings, ads may be personalized (tailored to your general interests) or non-personalized (contextually tied strictly to the astrology content on the current page).
Opt-Out of Personalized Advertising: You have the absolute right to opt out of personalized Google advertising at any time by visiting Google Ads Settings . Alternatively, you can opt out of third-party vendor cookies for personalized advertising by visiting aboutads.info .
California CCPA Notice: JyotishGyan does NOT sell personal data. We do not exchange personal identifiers, birth charts, or email addresses with advertisers for financial consideration.
Section 11
11. Cookies & Browser Storage (localStorage) Audit
Plain English Summary
We store minimal data on your device: essential session cookies if you log in, preference cookies (like language and sign), and temporary form data so you do not have to retype your birth details.
To provide seamless calculations and retain your preferences, JyotishGyan uses HTTP cookies and browser Web Storage APIs (localStorage and sessionStorage). Below is an audited, transparent disclosure of all client-side storage keys:
A. Browser LocalStorage & SessionStorage Keys
Storage Key
Type
Purpose & Data Stored
Lifespan
jyotishgyan_user_data
localStorage
Stores birth details (DOB, TOB, City) to auto-fill forms for repeated tool use
Persistent (User cleared)
jyotishgyan_horoscope_sign
localStorage
Remembers your selected Rashi / zodiac sign for daily horoscope quick view
Persistent
kundali_lang
localStorage
Preferred chart language (English, Hindi, Sanskrit)
Persistent
jg_astrobot_lang
localStorage
Preferred conversational language in the AstroBot interface
Persistent
jg_ip_location
localStorage
Cached city and timezone from IP lookup to avoid redundant network calls
7 Days (Auto-refresh)
guest_kundali / guest_numerology
localStorage
Caches last calculated chart for quick reload without re-running calculation
30 Days
jg_widget_seen
localStorage
Remembers if you have dismissed floating help banners or tooltips
Persistent
pending_auth_form
sessionStorage
Temporarily holds form fields during Magic Link email redirect flow
Session (Closed on tab exit)
B. HTTP Cookies Audit
Cookie Name
Provider
Classification
Function
Expiry
sb-*-auth-token
Supabase
Strictly Essential
Maintains encrypted session state for authenticated member sign-in
Session / 30 Days
_ga, _ga_*
Google Analytics
Analytics (Consent)
Distinguishes unique users anonymously to compile aggregate traffic statistics
14 Months
__gads, __gpi
Google AdSense
Advertising
Measures ad impressions, limits repeat ad exposure, and prevents ad fraud
13 Months
How to Clear Local Data on Your Device:
Because localStorage resides exclusively on your hardware, you retain 100% control over it. You can purge all saved charts and form history anytime:
Chrome / Brave: Settings → Privacy & Security → Delete Browsing DataSafari (iOS / Mac): Settings → Safari → Advanced → Website Data → Remove AllFirefox: Settings → Privacy & Security → Cookies and Site Data → Clear DataEdge: Settings → Privacy, Search, and Services → Clear Browsing Data
Section 12
12. Data Retention, Archival & Automatic Purge Schedules
Plain English Summary
We keep data only as long as needed. Guest inputs vanish immediately. Account data stays until you delete it. Error logs and analytics are routinely purged.
In strict adherence to the Principle of Storage Limitation (DPDP Act 2023 Section 8(7) and GDPR Article 5(1)(e)), personal data is never retained for longer than is strictly necessary for the purpose it was gathered:
Data Category
Storage Location
Retention Period
Automated Purge / Erasure Mechanism
Anonymous Calculation Inputs
Serverless RAM
0 Seconds (Ephemeral)
Instantly deallocated upon HTTP response return
Guest Client-Side Cache
User Device (localStorage)
7 to 30 Days
Client-side timestamp check or user manual cache purge
Registered User Profile & Saved Kundalis
Neon PostgreSQL (Encrypted)
Duration of Active Account
Permanent deletion within 30 days of user account deletion request
AstroBot Chat History (Registered)
Neon PostgreSQL
Duration of Active Account
Wiped upon user-initiated chat clear or account deletion
Contact & Grievance Inquiries
Encrypted Database / Email
12 Months
Archived for legal proof, then permanently overwritten
Vercel Serverless Function Logs
Vercel Edge Cloud
24 to 72 Hours
Overwritten automatically on rolling cloud schedule
Google Analytics Telemetry
Google Cloud
14 Months
Standard GA4 automated retention limit with automatic purge
We employ military-grade AES-256 encryption at rest, TLS 1.3 in transit, strict database isolation, and passwordless authentication to protect your data from breaches.
In compliance with Section 8(5) of the DPDP Act 2023 and Article 32 of the GDPR, JyotishGyan implements comprehensive, multi-layered technical and organizational safeguards:
End-to-End Cryptography
All data in transit is protected using TLS 1.3 with Perfect Forward Secrecy and enforced HSTS. Database tables in Neon PostgreSQL are encrypted at rest using industry-standard AES-256.
Passwordless Magic Link Security
By eliminating traditional passwords, we remove exposure to brute-force attacks, dictionary attacks, and credential stuffing leaks. All logins use cryptographic, time-expiring email tokens.
Row Level Security (RLS) Isolation
Our PostgreSQL database enforces granular Row-Level Security (RLS) policies. An authenticated user can never query, inspect, or modify another member's saved horoscope reports.
Hardened HTTP Headers & CSP
Every server response enforces strict security headers: Content-Security-Policy, X-Frame-Options: DENY, X-Content-Type-Options: nosniff, and Referrer-Policy: strict-origin-when-cross-origin.
Section 14
14. Statutory Rights under the India DPDP Act, 2023
Plain English Summary
Indian law guarantees you the right to see your data, fix errors, have it completely erased, nominate someone in case of death/incapacity, and seek grievance redressal.
As a resident of India and a Data Principal under the Digital Personal Data Protection Act, 2023, you enjoy clear, enforceable statutory rights:
Section 11
Right to Access Information
You have the right to obtain a summary of the personal data we hold about you, the specific processing activities undertaken, and the identities of all third parties with whom data was shared.
Section 12
Right to Correction & Erasure
You have the right to demand the correction of inaccurate birth data, completion of incomplete profiles, and the total erasure of all saved Kundalis, chat logs, and account records.
Section 13
Right of Grievance Redressal
You have the right to a readily accessible redressal mechanism through our designated Grievance Officer, with formal acknowledgment within 48 hours and resolution within 15 days.
Section 14
Right to Nominate
You have the right to nominate any individual who, in the event of your death or incapacity, shall exercise all Data Principal rights on your behalf.
Section 15
15. Statutory Rights for International Users (GDPR & CCPA/CPRA)
Plain English Summary
If you reside in the EU, UK, or California, you have full GDPR & CCPA rights: right to portability, restriction, objection, deletion, and non-discrimination.
European Union & United Kingdom (GDPR / UK GDPR)
Right to be Informed (Articles 13 & 14): Transparent disclosure via this Charter.
Right of Access & Portability (Articles 15 & 20): Receive your saved reports in a machine-readable JSON format.
Right to Rectification (Article 16): Update any incorrect birth details.
Right to Erasure / "Right to be Forgotten" (Article 17): Complete destruction of your user record.
Right to Restrict or Object (Articles 18 & 21): Object to processing based on legitimate interests.
Lodge a Complaint: You have the right to complain to your national Data Protection Authority (e.g., ICO in the UK, CNIL in France, BfDI in Germany).
California Consumers (CCPA / CPRA)
Right to Know & Access: Request disclosure of personal information categories collected during the preceding 12 months.
Right to Delete: Request deletion of personal information subject to legal recordkeeping exemptions.
Right to Non-Discrimination: We will never deny services, charge different prices, or degrade quality if you exercise your privacy rights.
Right to Opt-Out of Sale / Sharing: We do NOT sell or share personal information for cross-context behavioral advertising.
Section 16
16. How to Exercise Your Privacy Rights
Plain English Summary
Exercising your rights is straightforward. Unregistered users can simply clear their browser storage. Registered users can click "Delete Account" or send a quick email to our privacy desk.
We provide both automated self-service tools and direct human assistance:
Option A
Self-Service In-Browser Controls
To wipe anonymous search histories, form auto-fill inputs, and cached charts, clear your browser's localStorage or use our in-app reset controls.
Option B
Direct Privacy Desk Request (Email)
Send an email to privacy@jyotishgyan.co.in using our pre-formatted template below. We verify your identity via the registered email to prevent unauthorized data tampering.
Copy-and-Paste Privacy Request Template
To: privacy@jyotishgyan.co.in
Subject: Statutory Privacy Request — [Data Access / Erasure / Correction]
Dear JyotishGyan Privacy Desk & Grievance Officer,
I am writing to exercise my statutory rights under the DPDP Act 2023 / GDPR / CCPA.
1. My Registered Email Address: [Enter your email]
2. Type of Request: (Select one: Full Account Deletion / Data Export / Correction)
3. Specific Details: [e.g., Please permanently delete my account, saved charts, and chat history]
4. Jurisdiction of Residence: [India / EU / US / Other]
I confirm that I am the authorized owner of this email account.
Sincerely,
[Your Full Name]
Section 17
17. Protection of Children's Personal Data (Under 18)
Plain English Summary
In accordance with the DPDP Act 2023, anyone under 18 is classified as a child. We do not allow minors to open accounts and we never target ads to children. Parents may generate charts for their children under parental discretion.
In strict compliance with Section 9 of the DPDP Act 2023 (which defines a child as an individual under 18 years of age) and the US Children's Online Privacy Protection Act (COPPA):
No Independent Child Accounts: JyotishGyan does not knowingly permit children under the age of 18 to create accounts or register profiles.
Parental & Guardian Kundali Inquiries: Parents, guardians, or grandparents frequently generate Janam Kundali reports for newborns and minors. Such charts must be generated strictly under the active oversight and consent of the lawful guardian. The adult accepts full responsibility as the lawful custodian of that child's birth data.
No Behavioral Tracking or Profiling of Minors: We strictly prohibit behavioral tracking, psychological profiling, or targeted advertising directed at children.
Immediate Deletion Protocol: If we discover that personal data belonging to an unsupervised child under 18 has been submitted without verifiable parental consent, we will permanently purge it immediately. Please alert our privacy desk at privacy@jyotishgyan.co.in.
Section 18
18. International Cross-Border Data Transfers
Plain English Summary
Our primary audience is in India, but our cloud servers and CDN operate worldwide. We use European Commission Standard Contractual Clauses (SCCs) to ensure your data is safeguarded everywhere.
While JyotishGyan is developed and operated from India, our enterprise cloud providers (Vercel, Supabase, Neon, Google) maintain edge servers, distributed clusters, and data centers globally:
Transfer Mechanisms: Whenever data originating in the EEA, UK, or Switzerland is transferred outside those borders, we ensure that appropriate safeguards are implemented in compliance with GDPR Chapter V, primarily the European Commission's Standard Contractual Clauses (SCCs).
Compliance with Indian DPDP Act: We comply with all notifications issued by the Central Government of India regarding permissible jurisdictions and cross-border data transfer limitations.
Section 19
19. Security Incident & Data Breach Notification Protocol
Plain English Summary
If a security breach ever threatens your personal data, we commit to notifying both India's Data Protection Board and affected users within 72 hours with clear next steps.
In compliance with Section 8(6) of the DPDP Act 2023 and Article 33 of the GDPR, JyotishGyan maintains an active Incident Response Plan:
1
72-Hour Regulatory Notification
In the event of a confirmed personal data breach, we will notify the Data Protection Board of India (DPBI) and relevant supervisory authorities within 72 hours of becoming aware.
2
User Communication
We will immediately inform affected registered users via email and prominent site banners, detailing the nature of the event, categories of data affected, likely consequences, and remediation steps.
3
Forensic Remediation
Immediate rotation of database credentials, invalidation of active session tokens, and deployment of security patches to eliminate the vulnerability vector.
By law, we have a designated Grievance Officer to handle all privacy disputes. We acknowledge issues within 48 hours and resolve them within 15 days.
In strict compliance with Section 8(9) of the DPDP Act, 2023 and Rule 3(2) of the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021, JyotishGyan has designated a dedicated Grievance Officer:
Regulatory Appeals:Data Protection Board of India (DPBI)
Section 21
21. Revision History & Policy Version Control
Plain English Summary
We review this policy regularly to stay ahead of new data protection laws. Any material changes will be prominently announced on the website and emailed to registered users.
We review this Policy at least bi-annually and whenever new administrative rules are promulgated under the DPDP Act 2023 or global data protection jurisprudence. Any material revisions will be reflected in our audit history: