🔒 Privacy Policy — Charaka

Last Updated: October 2025

Your mind is private — and we're here to keep it that way. Charaka is built on privacy by design, ensuring your emotions never leave your device without your consent.

🧭 1. Our Core Principle

We never sell, share, or store your emotional data on our servers. Charaka is designed to keep your reflections, moods, and assessments under your control at all times.

🧠 2. What We Collect

We collect only what's necessary for secure access and core functionality.

TypeWhat's CollectedWhere It's StoredWhy We Collect It
CredentialsEmail & password hash (bcrypt)MongoDB Atlas (encrypted at rest)Account access, recovery, and session security
Emotional DataMood logs, chats, assessmentsYour browser's localStorage onlyPersonalize your local AI experience
AnalyticsNoneWe don't run Google Analytics or tracking pixels

💬 3. How We Protect You

  • Credentials are bcrypt-encrypted before they ever touch our database.
  • Your emotional data lives in localStorage, sandboxed to your browser — we have zero access.
  • All connections run through HTTPS with TLS encryption end-to-end.
  • No advertisers, no trackers, no cookies that follow you.

🧰 4. Your Control

You remain in charge of every piece of data tied to your account.

  • Clear mood logs or assessment history anytime by deleting your localStorage data.
  • Email privacy@charakan.online to delete your account.
  • When you delete your account, we permanently wipe credentials from MongoDB.

⚙️ 5. Future Improvements

If we ever introduce cloud storage or enhanced AI personalization, we will:

  • Ask for explicit consent before enabling the feature.
  • Use end-to-end AES-256 encryption for any synced data.
  • Offer a one-click opt-out that keeps your experience local-only.

🤝 6. Third-Party Access

  • Gemini API (Google AI) powers natural language responses via HTTPS. We never send names, emails, or identifying data — only the text you enter for that session. Google may temporarily store anonymized snippets per their privacy policy to improve the model.
  • MongoDB Atlas stores credentials with encryption at rest. No emotional or behavioral data is ever written to MongoDB.

We do not share emotional data with advertisers, data brokers, or external partners.

📜 7. Your Rights

Depending on your region (GDPR, DPDP Act 2023, CCPA), you can request:

  • Access to the personal data we hold (credentials only).
  • Deletion or export of your account information.
  • Clarification on how your data is processed or safeguarded.

🧩 8. Contact

For privacy questions, deletion requests, or data clarifications, reach us at:

📧 privacy@charakan.online

Response time: within 48 hours.

💬 Our Promise

“Your thoughts stay with you — not with us.” Charaka exists to enhance mental wellness without compromising privacy. When you chat with our AI or take assessments, we keep it local whenever possible. For responses powered by Google Gemini, your text is sent securely for processing and is not stored on our servers. You can delete your account and its credentials at any time.

Charaka is not a substitute for professional therapy or medical advice. If you are in crisis, contact local emergency services or a certified mental health professional immediately.