Legal
Privacy policy
What Pathayam collects, why, how long it is kept, and how to get it back or have it deleted.
The short version.
- This website has no analytics, no tracking and no third-party requests. It sets no cookies.
- The waitlist stores an email address and nothing that identifies a device.
- The demo holds invented data. Do not put anything real into it.
- If you self-host, none of this applies: no data reaches us at all.
- On a hosted plan your data sits in its own database, not a shared table, and one endpoint returns all of it at any time.
- Five days after a plan ends, everything is deleted — backups included, and not recoverable.
Who is responsible
Pathayam is operated by Flaxvin Technologies (flaxvin.tech) (“we”, “us”). For the purposes of the Digital Personal Data Protection Act, 2023, we are the Data Fiduciary for the personal data described below.
Questions, requests and complaints: privacy@pathayam.app.
If you run Pathayam yourself
This policy does not apply to a self-hosted installation. The software makes no outbound request to us, sends no telemetry and reports no errors. Your database is a file on your own machine. Where that installation connects to Google or to a price provider, it does so with credentials you supply, under those parties' terms, and we are not involved. You are the controller of that data.
The website
pathayam.app is static. It runs no analytics, sets no cookies, embeds no social widgets and loads no third-party resource: fonts and images are served from this origin, so no request about you reaches anyone else while you read it.
Our hosting provider, Fly.io, records ordinary server logs — IP address, timestamp, page requested, user agent — which are used for security and to keep the site up, and are retained for 30 days. We do not combine those logs with anything else or use them to build a profile.
The waitlist
When you join the waitlist we store:
| What | Why |
|---|---|
| Your email address | To tell you once, when hosting opens. |
| Which plan you were looking at | To know what to build first. |
| The page you submitted from | Same. |
| A timestamp | To keep the list in order. |
Nothing else: no IP address, no device identifier, no cookie. The list lives in a Google Sheet in our own Google account, and is processed by Google as described in their terms. We send one email when hosting opens. There is no newsletter, and the list is never sold, shared or used for anything else.
Your address is kept until hosting opens and we have written to you, or until you ask us to remove it, whichever comes first. To be removed, write to privacy@pathayam.app — no account or verification is needed, since the address itself is the whole record.
The demo
demo.pathayam.app is a shared, public instance filled with invented data. It resets periodically, and anything you type into it is visible to anyone else using it and is discarded at the next reset.
Do not enter real account numbers, real balances, a real PAN, or any other real personal or financial information into the demo.
Entering the demo sets one session cookie so the app knows which invented member you are viewing as. It is strictly necessary for the demo to function, expires with the session, and is not used for analytics. The demo's request log records method, path, status and duration — never query strings, form contents or amounts.
The hosted service
Hosting is not open yet. When it opens, this section governs it, and we will write to anyone on the waitlist before anything is charged.
What we hold
| Category | Detail | Why |
|---|---|---|
| Account identity | The email address, name and profile picture on the Google account you sign in with. | To sign you in and to attribute each change to a person. |
| Household financial data | Everything you enter or import: accounts, balances, transactions, payees, envelopes, loans, holdings, attachments such as receipts. | It is the product. We process it to show it back to you. |
| Statement identity | Optional. Name, date of birth, PAN, mobile or card last-four, used to derive the password a bank sets on a statement PDF. | So a statement opens without you typing a password every month. |
| Billing | Plan, billing cycle, invoices, and a payment token. We never receive or store your full card number, CVV or UPI credentials. | To take payment and issue invoices. |
| Operational logs | Method, path, status, duration, and errors. Never query strings, form bodies, amounts or financial values. | To keep the service working and to investigate faults. |
Where it lives
Each customer gets their own SQLite database and their own container. Your data is not a row in a shared table alongside other customers'.
Hosting is not open yet, and the provider and region are not settled. We will name both here, and tell everyone on the waitlist, before anyone's data is stored anywhere.
Statement identity is never exported or logged
Statement identity and any connected-mailbox tokens are excluded from every export and from every log, by a test that asserts it. Statement passwords are derived, used to open the file, and discarded; only a description of which candidate worked is retained.
Backups
While your plan is active, backups are taken on a schedule and a restore is verified. They are retained for 30 days on Solo, 90 days on Household and one year on Power, so a point in the past can be restored.
When a plan ends — you cancel, it expires, or payment fails — everything is deleted five days later: the live database, every backup, and the attachments. Nothing is archived, nothing is held back, and after those five days we cannot recover it for you even if you ask. Export before the five days are up.
Gmail
The hosted plans do not read your mailbox and never ask for access to it. Gmail ingestion exists only in the self-hosted version, where you supply your own Google project and consent to your own application.
The mail-forwarding add-on
If you take the forwarding add-on, you get an address like
u-7f3a@in.pathayam.app and set a filter in your own mail
client. What arrives at that address is parsed into a review row and the
original message is then deleted — within 90 days at the outside,
whatever else happens. Only messages you forward reach us; we hold no
access to your mailbox and cannot fetch anything ourselves.
Who else processes your data
| Processor | What for | What they see |
|---|---|---|
| Hosting provider — not yet chosen | Running the service | Everything stored, as our infrastructure provider. Named here before hosting opens. |
| Razorpay | Taking payment | Your name, email, and the payment instrument. They hold the card details; we do not. |
| Sign-in | That you signed in to Pathayam | |
| The waitlist sheet | Waitlist email addresses only |
We do not sell personal data, do not share it for advertising, and do not use it to train models. Where a processor is outside India, the transfer is made under the terms permitted by the DPDP Act.
Your rights
Under the Digital Personal Data Protection Act, 2023, you may:
- Get a copy. Every plan has an export endpoint returning everything in an open format, at any time, without asking us.
- Correct it. Every figure in the app is editable by you directly.
- Erase it. Ask, and it goes immediately. Otherwise ending a plan erases everything five days later, backups included.
- Nominate someone to exercise these rights if you die or become incapacitated.
- Complain to us first, and then to the Data Protection Board of India if we have not resolved it.
Security
Traffic is served over HTTPS. Sign-in is Google OAuth with PKCE and no password is stored. Session tokens are held as hashes. Writes require a same-origin check. API tokens are scoped, revocable, stored hashed, and cannot reach token management or member administration.
The database is not encrypted at rest beyond the disk encryption our hosting provider applies. Anyone with the database file has its contents; we restrict that access to what running the service requires.
If a personal data breach occurs, we will notify the Data Protection Board and every affected user, as the Act requires.
Children
The hosted service is not offered to anyone under 18. We do not knowingly collect a child's personal data. If you believe a child's data has reached us, write and we will delete it.
Changes
If this policy changes, the date at the top changes with it. A change that materially affects what we hold or who processes it will be sent to the email address on your account before it takes effect.
Contact and grievances
Write to privacy@pathayam.app. Grievances reach the same address and are answered within 30 days.
See also the terms of service.