Privacy Policy
Effective Date: July 28, 2026
SECTION 1: DATA PROTECTION SCOPE
This Policy explains how we collect, process, manage, use, and protect your personal information. Operating out of Churu, Rajasthan, India, our data architecture is designed to align with applicable digital privacy standards, including the Digital Personal Data Protection (DPDP) Act 2023 of India and its associated operational rules. Under the DPDP Act 2023, MyWingman operates as the 'Data Fiduciary'.
SECTION 2: SPECIFIC DATA CATEGORIES COLLECTED AND PURPOSES
We process specific categories of data to deliver services, manage user credit wallets, and secure system infrastructure:
a) Identity & Profile Information: Your Google account email address, unique persistent OAuth subject identifier, and public profile name (if provided during authentication workflows).
b) Transactional & Billing Metadata: Paid checkout is currently disabled. If paid checkout is enabled in the future, we may process payment transaction identifiers, purchase amounts, currencies, payment statuses, and credit-purchase records needed to reconcile transactions. Payment credentials such as full card numbers or banking passwords should be handled by the applicable payment service provider rather than stored in our application database.
c) Conversational Transcripts & Inputs: User text submissions or extracted dialogue logs derived during session executions, processed strictly in real-time memory to generate AI communication suggestions.
d) Technical Logs & Identifiers: IP address and related security metadata, which we minimize or truncate where technically feasible, alongside browser types, session cookies, authentication tokens, and account status fields.
SECTION 3: SCREENSHOT HANDLING & DATA RETENTION POLICY
Chat screenshots uploaded to the Screenshot Analyzer are processed in browser memory and transmitted over secure TLS connections to our Third-Party AI processor (AICREDITS) for optical text extraction and conversational analysis. Uploaded screenshots are not stored in our application database or server-side persistent storage. They may remain temporarily in your browser session until cleared, replaced, or the session is reset.
SECTION 4: THIRD-PARTY AI DATA PROCESSORS & CONSENT FOR PROCESSING
To provide our real-time AI coaching, profile bio optimization, icebreaker generation, and chat screenshot analysis features, we transmit user-submitted data (including typed text prompts, conversation logs, and uploaded images/screenshots) to our third-party AI gateway provider, AICREDITS (aicredits.in), and its underlying AI infrastructure vendors. By explicitly completing the consent and 18+ verification flow, you consent to this processing. Data sent to AICREDITS and underlying model providers is subject to those providers' applicable processing and retention practices.
• Purpose & Consent: Data transmitted to AICREDITS is processed to generate real-time AI responses, OCR text extractions, and conversation analytics based on your explicit consent.
• Data Storage & Retention: Image payloads and raw text prompts are transmitted securely via encrypted HTTPS/TLS connections. Uploaded image files are never saved permanently to our application databases. Data sent to AICREDITS and underlying model providers is subject to those providers' applicable processing and retention practices.
• No Sale of Personal Data: We do not sell your personal data, uploaded screenshots, or chat history to third-party advertisers, ad networks, or data brokers.
SECTION 5: RETENTION SCHEDULE & CONSENT WITHDRAWAL
We retain personal data only for as long as necessary to fulfill specific processing purposes:
a) Account & Profile Data: Maintained for the duration of your active platform lifecycle until an explicit account deletion process is triggered in dashboard settings.
b) Consent Withdrawal Rights: You may withdraw consent at any time through the application's consent controls or by contacting us.
c) Security & System Logs: May be retained for a limited period reasonably necessary for security, abuse prevention, troubleshooting, and applicable legal obligations. Actual retention can also depend on infrastructure-provider settings.
d) Transactional Records: If paid transactions are enabled, relevant billing records may be retained for the period reasonably necessary for accounting, tax, fraud prevention, dispute resolution, and applicable legal obligations.
SECTION 6: PRIVACY AND GRIEVANCE OFFICER CONTACT
Any inquiries, privacy concerns, data rights requests, or grievances regarding the processing of your personal data may be directly addressed to our designated Grievance Officer:
• Designated Grievance Officer: Naresh Kumar (Operator & Data Fiduciary)
• Entity / Trade Name: MyWingman
• Location: Churu, Rajasthan, India
• Contact Email: support.mywingman@gmail.com
• Resolution Procedures: We will respond to privacy inquiries and grievances in a timely manner in accordance with applicable law and the requirements in force at the relevant time.