Privacy Policy

Last updated: November 2025

Our Privacy Commitment

Political Accountability Platform is an open-source, citizen-driven initiative. We prioritize transparency and privacy. This policy explains what data we collect, why we collect it, and how we protect it.

What We DO NOT Do

We DO NOT Sell Your Data

We will never sell, rent, trade, or share your personal information with third parties for monetary gain. Your data is yours.

We DO NOT Show Ads

This platform is completely ad-free. No display ads, no tracking pixels, no ad networks, no behavioral advertising.

We DO NOT Track You Across Sites

We do not use cookies for cross-site tracking, fingerprinting, or surveillance. No Google Analytics, no Facebook Pixel, no third-party trackers.

We DO NOT Build Behavioral Profiles

We don't create psychological profiles, predict your political leanings, or manipulate what you see based on inferred preferences.

Data We Collect

Account Information

  • Email address (for authentication and password reset only)
  • Username (publicly visible on all your contributions)
  • Password (encrypted with bcrypt, never stored in plain text)
  • Account creation date

User-Generated Content (Publicly Visible)

  • Political promises you submit
  • Verifications and evidence you provide
  • Votes you cast on verifications (upvotes/downvotes)
  • Images and documents you upload
  • Your citizen reputation score and trust level

Technical Data (Security Only)

  • IP address (logged for fraud detection and rate limiting)
  • Browser type and version (for compatibility)
  • Device type (mobile/desktop for responsive design)
  • Access timestamps (for security monitoring)

How We Use Your Data

  • Core Platform Functionality: Tracking promises, verifications, voting, reputation scoring
  • Anti-Gaming Protection: Detecting vote brigades, self-verification, sybil attacks, coordinated manipulation
  • Trust Level Assignment: Automatically assigning Untrusted/Community/Trusted levels based on reputation and activity
  • Fraud Prevention: Identifying suspicious patterns, fake accounts, coordinated voting
  • Security: Preventing spam, abuse, and unauthorized access
  • Essential Notifications: Account security alerts, moderation notices (if you opt-in)
  • Legal Compliance: Responding to valid legal requests only when required by Indian law

Data Storage & Security

Database: PostgreSQL hosted on Supabase with encrypted connections (SSL/TLS)

Authentication: Supabase Auth with bcrypt password hashing and JWT session tokens

File Storage: Images and documents stored on Supabase Storage with automatic virus scanning

Hosting: Frontend hosted on Vercel with HTTPS/SSL encryption for all traffic

Backups: Automated daily backups with 30-day retention

Access Control: Row-Level Security (RLS) policies ensure users can only access authorized data

Public vs. Private Data

Publicly Visible:

Username, promises, verifications, votes, reputation score, trust level, activity timestamps, uploaded evidence

Private (Never Shared):

Email address, password (encrypted), IP address, browser details, internal fraud detection scores

Open Source & Transparency

This platform is fully open-source. Every line of code is publicly auditable at our GitHub repository.

You can verify our privacy practices, review our data handling, inspect our security measures, and even run your own instance of the platform.

All admin actions are logged in our public Transparency Log (no login required).

Your Privacy Rights

  • Access: Request a copy of all your data at any time
  • Correction: Update your email or username through account settings
  • Deletion: Request account deletion (public contributions may remain for platform integrity)
  • Data Export: Download all your contributions in JSON format
  • Opt-Out: Disable optional email notifications

Third-Party Services

Supabase: Database, authentication, and file storage (read their privacy policy)

Vercel: Frontend hosting (read their privacy policy)

We do not share your data with any other third parties. No analytics platforms, no ad networks, no data brokers.

Changes to This Policy

We may update this Privacy Policy to reflect changes in our practices or legal requirements. Significant changes will be announced on the platform. Continued use after changes constitutes acceptance.

Contact Us

For privacy questions, data requests, or concerns: