Privacy Policy
Last updated: March 2026
The Right Gift ("we", "our", "us") is committed to protecting your privacy. This policy explains what data we collect, why we collect it, and how you can control it.
What We Collect
- Email address — used only for login (OTP) and transactional emails (reminders, feedback prompts). Never used for marketing without explicit consent.
- Name — optional, used to personalise the app experience.
- Recipient profiles — names, relationships, ages, interests of people you add as gift recipients. Stored securely and never shared.
- Occasion dates — birthdays, anniversaries, and other dates you add for reminder purposes.
- Gift records — titles, URLs, prices, and feedback of gifts you record. Used to build your personalised gifting intelligence.
- Search queries — generated by our AI and sent to Google Custom Search. Not linked to your identity in logs.
- Push notification token — to deliver occasion reminders. Cleared if you disable notifications or delete the app.
- Country and currency preference — to serve region-appropriate recommendations.
What We Do NOT Collect
- Bank account or payment card information (the app is free — no payments are processed)
- SMS messages, contacts, or call logs
- Location data
- Device photos or camera access
- Browsing history outside our app
How We Use Your Data
- To generate personalised gift recommendations via Gemini AI and Google Search
- To send occasion reminders and feedback prompts via push notifications and email
- To enable family group gift coordination
- To improve our AI recommendation quality based on your feedback
- To send product updates and new features (you can unsubscribe any time)
Data Sharing
We do not sell your data. We share minimal, necessary information with:
- Google (Gemini API + Custom Search) — search queries and gift context (no personal email or name sent)
- Postmark — your email address, for OTP delivery and reminders
- Firebase (Google) — push notification tokens for FCM delivery
- Sentry — anonymised error reports for debugging
Data Storage and Security
All data is stored on Google Cloud Platform (GCP), region asia-south1 (Mumbai, India) for Indian users. Data is encrypted at rest and in transit. We use industry-standard security practices.
Your Rights
- Access — request a copy of all data we hold about you
- Correction — update any incorrect information from within the app
- Deletion — delete your account and all associated data from Settings → Delete Account. Deletion is permanent and takes effect immediately.
- Opt-out — disable push notifications or marketing emails at any time
India — Digital Personal Data Protection Act (DPDP) 2023
We process your personal data based on consent. You can withdraw consent and delete your data at any time via the app. We do not transfer your data outside India for storage (GCP Mumbai region).
United States — CCPA
We do not sell personal information. California residents have the right to know, delete, and opt out of sale of personal information. Contact hello@therightgift.app to exercise these rights.
Canada — PIPEDA
We collect only what's necessary for the stated purposes. You can access and correct your information or withdraw consent by contacting us.
UAE — PDPL
Data processing is performed with your consent for the described purposes. You have the right to access, correct, and request deletion of your personal data.
Children's Privacy
The Right Gift is not directed at children under 13. We do not knowingly collect data from children.
Changes to This Policy
We'll notify you of material changes via email or in-app notification. Continued use after notification constitutes acceptance.
Contact
For privacy questions: hello@therightgift.app
The Right Gift · therightgift.app