Privacy Policy

Effective Date: May 1, 2026

1. Introduction

This Privacy Policy describes how Madrecha Solutions Pvt Ltd ("we", "us", "our") operates law1app, a legal search platform for Indian tax law judgments. This policy complies with the Information Technology Act, 2000 and the Personal Data Protection Act, 2023 (India). This policy does not apply to users in the European Union (GDPR does not apply).

2. Information We Collect

We collect the following information when you use law1app:

  • Account Data: Full name, email address (required for registration).
  • Authentication Data: 6-digit OTP for passwordless login, session cookies.
  • API Key Data: Key name, expiration period, and metadata for user-generated API keys.
  • Usage Data: Search queries, rate-limit logs (operation type, timestamp) to enforce service tiers.
  • Analytics Data: We use Google Analytics (to be implemented) to improve our service. This may collect device information, browsing behavior, and usage patterns.

3. How We Use Your Data

  • Authenticate users via email OTP and manage sessions.
  • Deliver OTP and service emails via AWS SES (Amazon Simple Email Service).
  • Enforce rate limits and manage service tiers.
  • Improve our service via Google Analytics (once implemented).
  • Prevent fraudulent trial account creation (permanent email retention, see Section 5).

4. Data Sharing

We do not sell or share your personal data with third parties except:

  • AWS SES: To deliver OTP and service emails (email addresses are shared solely for this purpose).
  • API Access: User-generated API keys are for individual use. Third-party developers use the same individual API keys tied to their accounts; we do not share user data with these developers beyond what is accessible via the API.

5. Data Retention

  • Email Address: Retained permanently to prevent fraudulent trial account creation.
  • Other Account Data: Deleted upon verified account deletion request.
  • Backups and Logs: All data is retained for a maximum of 90 days in backups and system logs after account deletion.

6. Your Rights

  • You can view all your personal data (name, email, API keys, usage) in the Profile section of the app.
  • We do not offer data export; all your data is already visible in the Profile section.
  • To delete your account, email hi@law1.in. We will respond to deletion requests within 10 working days.

7. Children's Policy

law1app is not intended for use by individuals under 18 years of age. We do not knowingly collect data from children.

8. Cookies and Tracking

  • Session Cookies: We use better-auth session cookies to maintain your login state.
  • Google Analytics: Once implemented, Google Analytics will set cookies to track usage patterns. You can opt out via browser settings or Google's opt-out tools.

9. Compliance

This Privacy Policy is governed by Indian law, including the Information Technology Act, 2000 and the Personal Data Protection Act, 2023. It does not apply to users in the European Union (GDPR is not applicable).

10. Contact Us

For privacy concerns, data deletion requests, or questions about this policy, email us at hi@law1.in.