Privacy Policy
Last updated: 12 August 2026
This policy explains how we collect, use, and protect your information. We collect only what is needed to compute and deliver your kundli report.
What we collect
- • Birth details (date, time, place): to compute the chart.
- • Your WhatsApp number (E.164) and email: to deliver the report.
- • A record of your consent and its timestamp.
- • Source page / UTM data: to understand how you reached us.
Data controller
- • The data controller for this website and service is Aktai Ltd (registered in England & Wales, company number 17199439, ICO registration number ZC151787), the owner and operator of Nakshara. Registered address: 71-75 Shelton Street, Covent Garden, London WC2H 9JQ, United Kingdom.
Consent and lawful basis
- • We use your WhatsApp number for messages only with your explicit opt-in (India’s DPDP Act 2023).
- • Consent is unticked by default; you choose it yourself.
- • As the operator also works out of Germany, GDPR also applies to EU visitors. Our basis is your documented consent.
Opting out of WhatsApp
- • You can stop messages any time by sending “STOP” on WhatsApp.
- • We honour and record your request.
Sharing and processors
- • We do not sell your data. It is shared only with the service partners below, and only to deliver the service.
- • Payment processors: Razorpay (India) and Stripe. They handle your payment details directly; we never store your full card number.
- • Messaging provider: the report is delivered via the WhatsApp Business API; once the specific provider is finalized, it will be named here.
- • Hosting: our server runs on Hetzner, in Germany (EU).
- • Where data goes to a processor outside the EU/UK (for example, a US-based one), we rely on Standard Contractual Clauses or an equivalent safeguard.
Data retention
- • Birth details, consent records, and reports: until you request deletion, or after 24 months of inactivity, whichever comes first.
- • Payment and invoice records: for 6 years after the end of the financial year, as required of a England & Wales company under HMRC rules and the Companies Act 2006, kept separately from your birth-chart data.
- • Server logs: auto-deleted after 30 days.
Android app: account and sign-in
- • The Nakshara Android app lets you sign in with your email address using a one-time link, no password. The link is single-use and expires after 15 minutes.
- • Once you sign in, we issue a signed session token stored on your device. It expires automatically after 30 days; there is nothing further to revoke on our side beyond deleting your account.
- • We store your email address and the date your account was created. We never store a password, because there is not one to store.
- • This applies to the Android app only. The website has no accounts; see "What we collect" above for what it collects instead.
Android app: push notifications
- • Push notifications are planned but not live yet. Once shipped, enabling notifications in the app registers a Firebase Cloud Messaging (FCM) device token to your account.
- • We will use that token only to deliver the daily rashifal, panchang, and muhurat alerts you have opted into. It is not shared for advertising.
- • This section will be updated with retention detail once the feature ships. It does not apply to the website.
Android app: analytics
- • The app does not currently use analytics or crash reporting. If we add this, we will describe exactly what is collected here first.
Your rights
- • You may request access to, correction of, or deletion of your data.
- • Write to the contact below; we will respond within a reasonable time.
- • If you are not satisfied with our response, you may lodge a complaint with the UK's Information Commissioner's Office (ico.org.uk) or India's Data Protection Board.
Android app: account deletion
- • To delete your Nakshara account, email [email protected] from the address you signed in with and ask us to delete your account.
- • We delete your email address and account record. Deleting the account also ends any signed-in session immediately, since a session is only valid for an account that still exists.
- • This request is handled manually today, the same way as the data deletion requests described on our Data Deletion page; there is no in-app "delete account" button yet.
Contact
- • For privacy questions: [email protected]