Saathi logo
Updated: 13 June 2026

Privacy Policy

This policy explains how Saathi collects, uses, stores, protects, and shares your personal and wellness data. Saathi is a product of Clarinth AI Private Limited, registered in Bangalore, India.

Saathi's Promise

Your mood, reflections, assessments, and conversations are treated as sensitive wellness data. We do not sell your personal wellness data, and we use it only to deliver Saathi's services, improve safety, and support your journey.

1. Scope of This Policy

This policy applies to all users of Saathi and covers onboarding, self-reflection assessments, guided CBT and DBT pathways, text-based interactive chat sessions, and related support features. Saathi is intended for adults aged 18 and above.

3. Data We Collect

3a. Account and Identity

We collect your email address for OTP-based verification. We may also collect your name or phone number if you voluntarily provide them.

3b. Personalization Data

We may collect your name, age, sex, profession, and location. This data helps Saathi personalize your wellness journey and recommendations.

3c. Assessment and Reflection Data

We collect self-reflection responses, symptom check-ins, and screening results such as PHQ-9 and GAD-7. These are used to support your wellness journey and improve guidance.

Assessment responses are sensitive personal data and are protected with encryption in transit and at rest.

3d. Journey and Module Progress

We store completion status, exercise responses, reflections, and progress indicators so you can resume your journey and receive relevant recommendations.

3e. Conversation Data

Messages you exchange with Saathi are processed to generate responses and maintain context. Conversation content may also be used to support safety, debugging, and product improvement, subject to this policy and applicable law.

3f. Usage and Technical Data

We collect technical data such as IP address, browser type, operating system, session timestamps, and feature interactions to keep the platform reliable and secure.

3g. Payment Data

Subscription payments are processed by Razorpay. We do not store your full card number or CVV. We retain payment tokens, billing status, and subscription history for account management and audit purposes.

4. How We Use Your Data

We use your data only for purposes connected to delivering and improving Saathi:

  • Create and manage your account.
  • Authenticate your identity and deliver OTPs and account notifications.
  • Personalize CBT and DBT pathways using your assessment scores and progress.
  • Power the AI guide with contextual memory of your journey.
  • Detect, investigate, and prevent fraud, abuse, and safety incidents.
  • Maintain, debug, secure, and improve the platform.
  • Process subscriptions and billing.
We do not use your data for targeted advertising or marketing profiles.

5. Sensitive Wellness Data Protection

Your assessments, self-reports, mood logs, exercise responses, and conversation content are sensitive data. We apply these protections:

  • Encryption at rest and in transit.
  • Access limited to systems and staff with a direct business need.
  • No use for model training without separate opt-in consent where required.
  • No disclosure to sales, marketing, or general support staff without authorization.
  • No sharing with third parties except as described in this policy or required by law.

6. Data Sharing

We do not sell or rent your data. We share information only with service providers who help us run Saathi under contractual data protection obligations:

  • OpenAI - AI response generation and safety processing.
  • Razorpay - Payment processing and billing.
  • Google Cloud / Cloud Run - Backend hosting and APIs.
  • Vercel - Frontend hosting.
  • Neo4j Aura - Journey graph and progress data.
  • Upstash Redis - Session and transient state management.
  • Legal requirements - We may disclose data if required by law, court order, or to prevent imminent harm, fraud, or illegal activity.

7. Data Retention

We retain your account and journey data while your account is active. If you delete your account, we delete or anonymize your personal and wellness data within 30 days except where legal retention obligations apply.

Some records may be retained for tax, fraud prevention, dispute resolution, security, or legal compliance purposes.

8. Security

  • Data in transit is encrypted.
  • Data at rest is encrypted.
  • Production access requires appropriate authentication controls.
  • We review security practices and apply patches on a regular schedule.

If you discover a security vulnerability, please report it to security@clarinth.ai. We aim to acknowledge within 72 hours.

9. Your Rights and Choices

Under applicable privacy laws, you may have rights to access, correct, delete, or restrict the processing of your personal data, and to withdraw consent where processing is based on consent.

  • Access - Request a summary of the personal data we process.
  • Correction & Erasure - Ask us to correct inaccurate data or delete your account and associated records.
  • Withdrawal of Consent - Withdraw consent for optional processing at any time.

To exercise these rights, contact privacy@clarinth.ai. We will respond within a reasonable time and within any legally required deadline.

10. Minors

Saathi is not designed for anyone under 18. We do not knowingly collect data from minors. If we learn that a user is under 18, we will take steps to deactivate the account and delete the data promptly.

11. International Data Transfers

Saathi uses a distributed infrastructure. Your data may be transferred to and processed in Singapore and the United States. We use data processing agreements and other safeguards intended to provide protection consistent with applicable law.

  • Supabase: Authentication data.
  • Google Cloud: Backend hosting.
  • Neo4j Aura: Graph and journey data.
  • OpenAI: Response generation and safety processing.
  • Razorpay: Payment processing in India.

12. Changes to This Policy

We may update this policy as Saathi evolves. When we make material changes, we will notify you by email at least 14 days before the changes take effect, where feasible and required.

13. Contact Us & Grievance Redressal

If you have questions about this policy, wish to withdraw consent, or need to file a privacy complaint, contact our team below.

© 2026 Clarinth AI Private Limited. All rights reserved.