Skip to content
thinnai← Home

Privacy Policy

Version 2026-08-25. Thinnai is the data fiduciary for the purposes of the Digital Personal Data Protection Act, 2023.

1. What we collect

2. Selective disclosure — how sharing actually works

Every sensitive field carries its own audience: public, shared with hosts you apply to, shared once you're confirmed, or no one.

When you apply to an event, we record an explicit, revocable consent grant that names the fields shared and expires seven days after the event ends. Fields you have not permitted are not returned by our systems at all — not hidden in the interface, but absent from the data.

Door staff who scan tickets see names only, never your profession or contact details.

3. Counting how the app is used

We count how many times an event page is opened — a number per night per day, with nothing in it that could identify who opened it. No cookie is set to do this and no record of you is kept.

Once you tap Apply, we record the steps you take through signing up and applying, so we can tell where the process is failing people. Before you have an account those steps are tied only to a random key for that browsing session, which means nothing outside that table and is not joined to you unless and until you sign in. We delete all of it after 90 days.

4. What we never do

5. Why we can use your data

We process your data to provide the service you asked for, on the basis of the consent you give at signup and at each application. You can withdraw consent by revoking a grant, changing a field's audience, or deleting your profile.

6. Keeping it

We keep your personal data while your account is open. When you delete your profile we erase your name, bio, contact details and profile fields, and revoke every outstanding disclosure grant.

Attendance records are retained in a form that is no longer linked to your personal profile. They are what makes the reliability record meaningful, and retaining them stops deletion being used to erase a no-show history.

7. Your rights

You can, at any time:

8. Security

Data is encrypted in transit. Sensitive profile fields pass through a single access-controlled path that enforces your audience settings. Sign-in codes are stored hashed and expire in ten minutes.

9. Contact

Grievance Officer: Yagnesh

Email: support@thinnai.app

Phone: —

Address: Chennai, Tamil Nadu, India

We respond to rights requests within 30 days.