Privacy Policy

Last updated: 28 May 2026

1. Who we are

PariksaPath ("we", "us") operates the mock test platform at pariksapath.vercel.app and provides exam preparation services. This policy explains how we collect, use, and protect your personal data in line with India's Digital Personal Data Protection Act 2023 (DPDP) and global best practice.

2. Data we collect

  • Account data — name, email, phone number (when you sign up via Clerk).
  • Profile data — target exam, preferred language, class/year, optional state.
  • Usage data — tests attempted, answers, time per question, scores. We need this to give you analytics.
  • Payment data — handled entirely by Razorpay; we only store order/payment IDs and status. We do not store card numbers.
  • Technical data — IP address (for security), browser user-agent, device type, tab-switch events during tests (anti-cheat only).

3. How we use it

  • Run tests, score them, and show you analytics.
  • Show you a national/cohort percentile, and recommend topics to practice.
  • Send transactional emails (results, receipts, security alerts).
  • Prevent fraud and cheating (tab-switch detection, single-session enforcement).
  • Improve the product — aggregate, anonymised metrics only.

We do not sell your data. We do not share your data with third-party advertisers.

4. Who sees your data

  • Clerk— authentication. Subject to Clerk's privacy policy.
  • Neon — encrypted database (AWS Mumbai region planned).
  • Razorpay — payment processing. RBI-regulated.
  • Cloudflare R2 — file storage (PYQ PDFs you upload as a teacher).
  • Anthropic — AI question generation. We send syllabus prompts, not your personal data.

5. Your rights (DPDP)

  • Access — request a copy of your data.
  • Correction — edit your profile any time, or email us.
  • Erasure — delete your account; we erase personal identifiers within 30 days. Aggregated test analytics remain.
  • Withdraw consent — opt out of marketing emails any time (transactional remain).
  • Grievance — contact our grievance officer at the email below.

6. Data retention

Account data: retained while your account is active. Test attempts: retained for 5 years for your reference. Payment records: 8 years (Indian tax law). Anonymised analytics: indefinite.

7. Children

Users under 18 must have parental consent. For competitive exam takers aged 18+, no special restrictions apply.

8. Security

All connections are encrypted (HTTPS). Passwords are handled by Clerk (bcrypt). Payment data never touches our servers. Database uses encryption at rest. We follow OWASP top-10 hardening.

9. Changes

We will email you at least 14 days before any material change to this policy.

10. Contact / Grievance Officer

Email: privacy@pariksapath.in

Grievance Officer (DPDP Act): we respond within 7 working days.