Privacy Policy
1. Who operates Ekav
Ekav is operated by Ekav Solutions (OPC) Private Limited ("Ekav", "we", "us"). This policy explains what we collect in the Ekav mobile app, why, who receives it, and the choices you have. It does not cover retailer sites you visit from the app. Section 17 covers this website.
2. Account, profile and onboarding data
To create an account you sign in with an email one-time code, or with Google or Apple Sign-In. We receive your email address and the identity information the sign-in provider shares with us, such as your name and, where the provider supplies one, a profile picture.
Onboarding asks for a display name, the gender you shop for (you can choose “Prefer not to say”), and your birth month and year. We do not ask for or store your full date of birth. A profile photo is optional and is stored privately. You can edit your name, gender and birthday, and add or remove your photo, from Profile.
We do not ask for your phone number, your address, or the state or city you live in.
3. Swipes, personalization and profiling
We record each card you like or dislike, the items you save, and derived signals such as a taste profile, category and brand affinities, price sensitivity, and recent in-session activity. We use these to rank your feed, search results, and “complete the look” suggestions.
This is automated profiling that ranks products inside Ekav only; it does not make legal or similarly significant decisions about you.
4. Search, including photo search and AI processing
We store your text searches with the price range and gender filter you used and the number of results, as search history linked to your account. The app does not display this history or include a control to delete individual entries; it is deleted with your account, and you can ask us to remove it earlier (section 14).
Search is AI-assisted. To interpret what you are looking for and match it to products, the text you type is processed by third-party AI service providers acting on our behalf. The search text is sent without your name, email address or account identifier, but anything you type into the search box is included, so please do not enter personal or sensitive information there.
For photo search you can take a picture or choose one from your library. The photo is uploaded to our servers and processed by the same kind of provider to find visually similar products. It is not added to your profile or search history and is not shown to other users; your search history records only that a photo search took place, with any text you typed alongside it. A copy of the photo is kept in private storage under a random name that is not linked to your account, and we do not state a fixed deletion period for that copy here. Please avoid searching with photos that show people or personal information.
5. Saved items and buy clicks
Products you save to your cart or wishlist are stored with the size, SKU, seller and price you selected, so we can show your saved items and send price-drop or stock alerts.
When you tap to buy, we record the click against your account: the product, the retailer link you were sent to, and the time.
6. Bags, friends and shared content
You can connect with friends through an invite link that expires after 7 days and can be revoked. Anyone who opens your invite link sees your display name and profile photo.
In a shared Bag, members see each other’s name and photo, the products each person added, and reactions. “Buy together” proposals, members’ responses, and the resulting record of items marked as bought, including who marked them and the listed price, are visible to that Bag’s members. Ekav does not process payments.
Leaving a Bag or unfriending someone stops new friendship-based sharing but does not retroactively delete shared activity others still rely on. You can report or block other users in-app. A report stores who reported, who was reported, the reason you picked, and any details you add, and is retained for moderation review.
7. Notifications
If you allow notifications, we store your device’s push token, the platform, the app version, and a device build or model identifier. The token is issued by your platform’s push service (Apple or Google), and alerts are delivered through that service; alert delivery may not be available on every platform. We do not collect an advertising identifier.
Alerts cover price drops and stock changes (out of stock, back in stock) on items you saved. We keep a record of the alerts sent to your account. Signing out or requesting account deletion marks your tokens inactive on our side; turning notifications off in your device settings stops them from being shown.
8. Analytics
We use a third-party product analytics service to understand how the app is used. Analytics is linked to your Ekav account identifier, not anonymous.
- Activity events: card swipes, expansions and undone swipes, including time spent on a card; product impressions; items saved or removed; buy clicks; searches, including the search text, filters and result count; “complete the look” suggestions shown; onboarding steps and completion; which profile fields you changed, not their values; notification taps; Bag creation, invites and joins; and session end, with duration and activity counts.
- Product details on those events: product ID and name, brand, category, price and discount, and the size, SKU and seller you selected.
- Profile attributes: sign-in method, the gender you chose, your birth month and year and the age derived from them, and onboarding status.
- Collected automatically: app lifecycle events (installed, updated, opened, became active, backgrounded); device model, manufacturer and type; operating system and version; and app name, version and build. The analytics provider also receives your IP address with each request and can use it to estimate approximate location, such as country or city.
We have not enabled session replay or automatic capture of touches and screens. The app contains no advertising SDK, does not access the advertising identifier (IDFA/AAID), and does not request location, contacts or microphone permissions. Analytics is used for first-party product improvement, not cross-company advertising tracking.
Signing out resets the analytics identity on your device. The app does not currently include an analytics opt-out switch; to object to analytics, contact founder@ekav.app.
9. Service providers and international transfers
We share personal data only with service providers that help us run Ekav, and only for that purpose:
- Authentication provider: sign-in, including sending the email one-time code, and session identity.
- Google and Apple: sign-in, if you choose it, and the platform push services described in section 7.
- Cloud hosting and storage providers: our database, private file storage, and application hosting.
- AI service providers: processing of search text and search photos (section 4).
- Analytics provider: product analytics (section 8).
Some of these providers process data on servers outside India under their own transfer safeguards. We do not sell personal data or share it with data brokers or advertising networks.
10. Retailer links and pricing accuracy
Ekav is a discovery and shopping-list app, not a retailer. Retailer links are ordinary third-party links. Ekav does not currently participate in affiliate programs, earn commission on these links, or use affiliate-network tracking. If that changes, we will disclose it here and in the app before it takes effect.
Prices, discounts, stock, and other product data are periodically refreshed and cached, so they may be delayed, stale, incomplete, or wrong. The retailer checkout page controls final price, availability, shipping, tax, and returns. The retailer, not Ekav, handles your order and payment and is responsible for its own privacy practices once you reach its site.
11. Data stored on your device
The app keeps your sign-in session in the device’s secure storage. It also stores, in app storage on the device, an unfinished onboarding draft, swipes waiting to be synced, a flag for a pending policy-acceptance sync, and the analytics identifier and unsent analytics events. The app does not use advertising cookies. Google sign-in opens your device’s browser, which applies Google’s own cookies and terms.
12. Security
Requests to our service are authenticated. Profile photos are stored privately and are not publicly accessible. We use encryption in transit and at rest through our cloud providers.
13. How long we keep data
Active-account data is retained to provide personalization and saved-item features.
After a deletion request there is a 48-hour window before processing starts. Scheduled processing then retries transient failures and targets completion within 30 days of your request. Processing deletes your sign-in identity, your profile photo, cached data, and your swipes, searches, saved items, push tokens, notification records, friend links, blocks, invite links, Bag membership and reactions, and asks our analytics provider to delete the analytics data linked to your account.
Your account record is kept only as a deleted-account identifier with name, gender, birthday, photo and personalization fields cleared, so that shared records stay valid for other users. Products you added to a shared Bag and buy-together records may remain linked to that identifier. Buy-click records are kept with the link to your account removed. Copies of search photos are not linked to an account (section 4), so they are not removed by account deletion.
Policy-acceptance, deletion, moderation, and security audit records are retained for 24 months after account closure or case resolution, and longer only where a legal hold, active dispute or security investigation, or binding law requires it. Copies in provider backups and infrastructure logs can persist after deletion until those cycle out under the provider’s settings; we do not state an exact period for them here.
14. Deletion, access and your choices
In the app you can edit your name, gender and birthday, add or remove your profile photo, remove saved items, and undo your most recent swipe, which deletes it. The app has no control for deleting older swipes or search history individually; they are deleted with your account, or you can ask us to remove them.
To request account deletion, open Profile → Settings → Delete account and confirm. The request is recorded immediately, push notifications stop, and you are signed out. The app does not currently have a cancel button. To ask us to cancel within the 48-hour window, or to request deletion when you cannot access the app, email founder@ekav.app from the email used to sign in so we can verify identity. See Account Deletion for details.
To ask for access to or correction of your data, removal of swipes or search history, or to object to analytics, contact founder@ekav.app.
15. Children
Ekav is not directed to children under 13. You must be at least 13 to use Ekav, and the app does not accept a birth year later than thirteen years before the current year. You must also meet any higher age or parental-authorization requirement that applies where you live. If you believe a child has an account, contact us and we will investigate and delete it where required.
16. Changes
Material changes update the version and effective date above and may require in-app review and re-acknowledgement.
17. This website
ekav.app does not run analytics or advertising scripts and does not set cookies of its own. Our website hosting provider receives your IP address and standard request data to serve pages. The home page loads fonts from Google Fonts, so Google receives your IP address when that page loads. If you email us, we receive what you send.
18. Grievance and privacy contact
For privacy questions, grievances, access, correction, deletion, or another choice described here, contact founder@ekav.app.