Privacy policy

numiVeda · Last updated 5 October 2026

This policy describes what numiVeda collects, why, where it goes, how long it is kept, and how to get rid of it. It describes the app as it is actually built today — not a product we intend to build. If something below stops being true, this page is wrong and it is a defect.

Who we are

numiVeda, operated by WishReiki Services (sole proprietor: Arunav Talukdar). Questions about this policy, or about the data we hold on you, go to support@numiveda.com.

What we collect

Most of it you give us: you type it in, or Google hands it over if you choose to sign in with Google. Some of it the app writes for you — charts, cards and answers. And some it records about how you use the app, such as how many questions you asked today. We do not buy data, we do not go looking for it anywhere else, and we do not track you across apps or websites.

Birth data can be about other people. If you add a profile for your spouse, your child or anyone else, you are giving us their name and their date, time and place of birth. Only add someone else's details if you are entitled to — for a child in your care, or with the person's agreement. Deleting your account deletes their data with it.

Health. The app does not ask about your health. If you describe a symptom in a question that is kept — in myAstrologer, or at a myApps door where the question is kept — it is kept with that question, like any other words you type.

What we do not collect

Notifications

The Android app can send you one notification each morning, at the hour you choose: the date and one line about the day from your day card. It never shows anything more personal than that — nothing about your health, your money or anyone you added. It is off until you allow notifications on your device, and you can turn it off in the app at any time. To send it, the notification's title and that one line go to Firebase Cloud Messaging with your device's token.

Where your data goes

Producing a reading means sending some of what you gave us to services that do the calculating and the writing. Here is every one of them, and what each receives. Every connection between them is encrypted (HTTPS).

1. Our astrology calculation service

Charts, planetary periods and the daily timings are calculated by numiVeda's own astrology engine, which runs on a server operated by the same business that operates numiVeda. It is not another company, but it is a separate machine on the internet, so your data does leave the app's database to reach it. For the profile being read, it receives the date, time, latitude, longitude and time zone of birth; the latitude, longitude and time zone of where the profile lives; and, for one calculation, the name on the profile. It does not receive your email address. We are still checking what that server keeps in its logs, and for how long.

2. Google (Gemini API)

The words the app writes — day cards, myAstrologer readings and myApps answers — are written by Google's Gemini model, which also checks each question before it is answered — including a question that suggests you are in danger. That one is sent to Google to be checked, and then we show you where to get help and keep nothing of it ourselves. For all of this, Google receives:

Google does not receive your email address or your password.

Google handles this as a service provider for us. The app uses the paid Gemini API: each of the two keys it uses belongs to a Google Cloud account with active billing of its own. Under Google's terms for paid use, Google does not use what is sent to improve its products, and keeps it only for a limited period to detect abuse. If the first key fails and the second is used, the same terms apply. Google's terms are at ai.google.dev/gemini-api/terms.

3. Google (Sign-In) — only if you choose it

This is a different Google service from the one above. It does not receive anything from us: if you tap "Continue with Google", Google tells us who you are — the email address on that Google account, the name on it and a link to your profile picture if you have one, and an identifier for your account with this app. We ask for the standard sign-in permissions (email, profile and openid) and nothing else. None of your birth data goes to Google Sign-In, and you never have to use it: email and password work exactly as well.

The app asks for no advertising identifier. The library that provides Google sign-in on Android tried to add advertising and attribution permissions to the app; they were removed, and an automated check fails the build if they come back. The installed app holds exactly one permission — internet access.

4. Our infrastructure providers

What we never do

How long we keep it

Different things are true of different information. For myApps readings it also depends on the app you asked in, because each version of the app told you, on the screen where you typed, what it would do with your reading — and we keep to what it told you, for as long as that version is in use.

Transaction records. When you buy credits, we retain transaction records as required by law. Google Play and Razorpay also keep their own records of each payment.

Deleting your readings, without deleting your account

You can delete any myApps reading or myAstrologer conversation yourself, or all of them at once, without deleting your account: under the reading, or in Account → Your readings. Deleted means removed from our database, not hidden. The short record the myApps daily limit counts stays until it is deleted automatically, as described above, so deleting a reading does not give the day's reading back.

Deleting your account and everything in it

You can delete your account from inside the app, at any time, without asking us: Account → Delete my account. You will be asked to type the word DELETE, and then it happens immediately. There is no grace period.

It removes from our live systems, straight away:

It also removes your sign-in — your email address, your password hash if you have one, and the link to your Google account if you used one.

What deletion does not reach straight away. A copy of your data can remain in our encrypted backups until their rolling cycle of seven days completes and they are overwritten. Operational logs at Vercel and Google are not deleted by this: they expire on those providers' own schedules. The deletion itself is checked: every time someone deletes an account, the app counts what was removed and reports an error if anything in the database survived.

Full instructions, including how to do it without installing the app.

Two things deletion does not do, said plainly: it does not refund anything you have paid for, and it does not cancel a subscription bought through Google Play or the App Store — those are cancelled in that store.

Your rights

Depending on where you live, you may have the right to access the data we hold on you, to correct it, to have it erased, and to receive a copy of it. In practice:

Children

numiVeda is not intended for children under 13, and we do not knowingly create accounts for them. An adult may add a profile for a child in their care; that profile is the adult's data to manage and to delete.

Security

Everything travels encrypted between your device, our servers and the services above. Data is held in a database with row-level security enabled on every table, so one account's queries cannot reach another account's rows. The keys that could bypass that live only on the server and are never shipped in the app.

Changes to this policy

If what we collect or where it goes changes, this page changes before that release does, and the date at the top moves. We will not quietly widen it, and that rests on a check, not only an intention: every proposed change to the app is checked automatically. Each kind of information the app stores is compared against our internal record of what we collect, and this page is compared against that record. A change that leaves either one missing something fails that check, and is flagged before it is merged.

Contact

support@numiveda.com

Terms of service · Delete your account