End-to-End Encryption
All health data is encrypted in transit and at rest.
No Data Selling
We never sell your personal data to third parties.
Right to Deletion
Request complete deletion of your data at any time.
1.Who We Are
MindAlgo Care is operated by MindAlgo Innovations Private Limited, a company registered in India. Our platform provides AI-powered mental wellness tools including mood tracking, remote photoplethysmography (rPPG) vital-sign monitoring, breathing exercises, clinical assessments, and therapist-assisted care.
For privacy-related enquiries, contact us at fasil@mindalgo.ai.
2.Information We Collect
2.1 Account Information
When you create an account we collect your name, email address, phone number, date of birth, and gender. This information is required to provide personalized clinical experiences.
2.2 Health & Wellness Data
- Mood & Check-in Data — self-reported mood scores, thought journal entries, and daily check-in responses.
- Vitals Data (rPPG) — heart rate, heart-rate variability, respiratory rate, and stress index derived from your device camera. No video is stored; only computed biomarkers are retained.
- Assessment Scores — results from validated clinical instruments (PHQ-9, GAD-7, HAI) used to track your progress.
- Therapy Session Records — session timestamps, notes shared by your assigned care-team members, and session-level affective data.
- Breathing & Task Activity — exercise completion records and task progress data.
2.3 Usage Data
We automatically collect page-view durations, feature-usage patterns, and device information (browser, OS, screen size) to improve the platform. This data is pseudonymised and never includes health information.
2.4 Payment Data
Payment processing is handled by Razorpay. We do not store credit/debit card numbers. We retain only transaction IDs and payment status for subscription management.
3.How We Use Your Data
- Providing Care — personalizing breathing exercises, therapy tasks, and AI companion (MindAlgo Brain) responses based on your mood and vitals history.
- Clinical Continuity — sharing relevant health summaries with your assigned therapist or psychiatrist to support evidence-based treatment decisions.
- Progress Tracking — generating charts, streaks, and periodic reports so you can visualize your wellness journey.
- Platform Improvement — aggregated, de-identified usage analytics to improve features and fix bugs.
- Safety — detecting crisis signals in real time to provide immediate intervention resources.
4.Data Sharing & Third Parties
We share personal data only in the following circumstances:
- Your Care Team — assigned therapists and psychiatrists can access your clinical summaries to deliver effective care.
- Service Providers — Supabase (database hosting), Razorpay (payments), Anthropic (AI companion). Each processor operates under a Data Processing Agreement.
- Legal Requirements — if required by Indian law, court order, or to protect the safety of our users.
We never sell your personal or health data to advertisers, data brokers, or any other third party.
5.Data Security
All data is hosted on secure, ISO-certified cloud infrastructure. Communication between your device and our servers is encrypted using TLS 1.3.
- AES-256 encryption at rest for all health data.
- Role-based access control (RBAC) — staff members can only access patients assigned to them.
- Row-level security (RLS) enforced at the database layer for every patient record.
- Regular security audits and penetration testing.
6.Your Rights
Under applicable Indian and international privacy laws, you may:
- Access — request a copy of all personal data we hold about you.
- Correct — update inaccurate or incomplete information via your account settings.
- Delete — request complete erasure of your account and all associated data.
- Export — receive your data in a machine-readable format.
- Withdraw Consent — opt out of non-essential data processing at any time.
To exercise any of these rights, email us at fasil@mindalgo.ai. We will respond within 30 days.
7.Data Retention
We retain your health and account data for as long as your account is active. After account deletion:
- Personal and health data is permanently deleted within 30 days.
- Anonymised, aggregated analytics may be retained indefinitely for research and product improvement.
- Payment records are retained for 7 years as required by Indian financial regulations.
8.Cookies & Local Storage
MindAlgo Care uses essential cookies and local storage for authentication, theme preferences, and session management. We do not use third-party advertising or tracking cookies.
9.Children's Privacy
MindAlgo Care is not intended for children under 16 years of age. We do not knowingly collect personal data from minors. If you believe a child has created an account, please contact us immediately.
10.Changes to This Policy
We may update this policy periodically. Material changes will be communicated via in-app notification and email. Continued use of the platform after changes constitutes acceptance of the revised policy.