๐Ÿ›ก๏ธ Privacy Policy

Soni Community Mobile App

Last Updated: March 14, 2026

Introduction

Shri Brahman Swarnkar Samaj (Raj.) Mumbai ("we," "us," or "our") operates the Soni Community mobile application (the "App"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our App.

Registration Number: F-27022

Please read this Privacy Policy carefully. By using the App, you agree to the collection and use of information in accordance with this policy.

๐Ÿ“‹ Table of Contents

1. Information We Collect

1.1 Personal Information You Provide

When you register and use the App, we collect the following personal information:

Required Information (Mandatory):

Optional Information:

1.2 Automatically Collected Information

1.3 User-Generated Content

1.4 Payment Information (For Paid Events Only)

What we collect:

What we DO NOT collect:

Storage: Payment screenshots are stored securely on our servers and deleted after 6 months or upon account deletion.

2. How We Use Your Information

2.1 Core Functionality

2.2 Community Features

2.3 Administrative Purposes

2.4 Analytics and Improvements

3. Data Sharing and Disclosure

3.1 Within the Community

Visible to All Authenticated Members:

Limited Visibility:

3.2 We DO NOT Share Your Data With:

3.3 Legal Requirements

We may disclose your information if required by law, court order, or governmental authority, or to protect our legal rights. We will only produce data available in the application and cannot provide any information beyond the app's data store.

4. Device Storage and Session Management

๐Ÿ”’ Critical Disclosure - Please Read Carefully

4.1 Authentication Tokens (Mobile App Storage)

We store an encrypted authentication token using React Native's AsyncStorage (secure device storage) to keep you logged in between app sessions.

What this means:

When is it deleted:

Why we need it: This is a standard security practice for mobile apps. Without this token, you would need to enter your mobile number and password every single time you open the app.

4.2 Session Tracking and Auto-Logout

We monitor your app activity to automatically log you out after 30 minutes of inactivity for security purposes.

What we track:

Why we track this:

What happens to this data:

4.3 Family Tree Change Requests

When you submit a request to add or modify family relationships, we retain these requests permanently for audit trail purposes.

What we store:

Why we store this permanently:

Important Note: Even if you delete your account, family tree change requests are retained to preserve the integrity of other users' family trees. However, your personal profile data will still be deleted.

5. Data Security

We implement industry-standard security measures to protect your personal information:

Encryption: All data transmission uses HTTPS/TLS encryption
Authentication: Secure login with mobile number and password
Session Management: Automatic logout after 30 minutes of inactivity
Server Security: Data stored on secure servers with access controls
Password Protection: Passwords are stored securely (never in plain text)
Payment Security: We do not store payment card information
Device Security: Authentication tokens encrypted on your device using AsyncStorage

Note: While we strive to protect your information, no method of electronic storage is 100% secure. You are responsible for maintaining the confidentiality of your login credentials.

6. Data Retention

6.1 Active Accounts

Your data is retained as long as your account is active.

6.2 Automatic Deletion

6.3 Account Deletion

Upon request, we will delete your account and associated data within 30 days.

Account Deletion Timeline:

What gets deleted:

6.4 โš ๏ธ IMPORTANT: Data Retained After Account Deletion

Even after deleting your account, the following data is permanently retained:

1. Family Tree Change Requests - Required to:

2. Event Historical Records - Required for:

3. Audit Logs - Required for:

Note: Your personal profile (name, photo, contact information) will still be deleted from the member directory and will not be visible to other users.

7. Your Rights and Choices

7.1 Access and Update

7.2 Data Deletion

7.3 Communication Preferences

7.4 Limitations

8. Children's Privacy & CSAE Prevention UPDATED

The App is intended for community members aged 18 and above. We do not knowingly collect personal information from individuals under 18. We maintain an absolute zero-tolerance policy toward Child Sexual Abuse and Exploitation (CSAE) and Child Sexual Abuse Material (CSAM) in all forms.

Children Under 18:

8.1 Prohibited Content (CSAE/CSAM)

The following are strictly and explicitly prohibited on our platform:

Violations result in immediate account suspension, permanent ban, and mandatory reporting to NCMEC and Indian law enforcement under the POCSO Act, 2012.

8.2 In-App Child Safety Reporting Mechanism NEW

Users can report any post or content that violates our Child Safety Standards directly within the app:

  1. Tap the ๐Ÿ›ก๏ธ Shield icon that appears on any other user's post in the Posts screen
  2. Select the violation category (e.g., "Child Safety Violation") and optionally add a description
  3. Submit โ€” our moderation team reviews all reports within 24โ€“48 hours
  4. Admins resolve reports via the dedicated Child Safety Reports queue in the Admin panel

Alternative: You may also report directly by emailing sonicommunitymumbai@gmail.com with the subject line "Child Safety Report". All reports are handled with strict confidentiality.

8.3 Full Child Safety Standards

Our complete Child Safety Standards โ€” including prohibited content, enforcement actions, CSAM handling declaration, and legal compliance โ€” are published at:

๐Ÿ“„ Child Safety Standards URL:
https://srv1274900.hstgr.cloud/download/child-safety-standards.html

This document is publicly accessible, references Child Sexual Abuse and Exploitation (CSAE), and identifies this app (Soni Community App (Mumbai)) and its developer (Praveen M Soni), in compliance with Google Play's Child Safety Standards policy.

Compliance: COPPA-compliant (no direct collection from children under 13) ยท POCSO Act, 2012 ยท IT Act, 2000 ยท Google Play Child Safety Standards Policy

9. Third-Party Services

9.1 File Storage

9.2 No Third-Party Analytics

We do NOT integrate with:

All analytics are generated internally from our own database.

10. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by:

Your continued use of the App after changes constitutes acceptance of the updated Privacy Policy.

๐Ÿ“ž Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us:

Shri Brahman Swarnkar Samaj (Raj.) Mumbai

Email: sonicommunitymumbai@gmail.com

Registration Number: F-27022

Mailing Address (temporary): 16/24, Mustafa Market, Shop No. 17, Khara Kua, Zaveri Bazar, Mumbai-400003

12. Child Safety Standards Reference

Our full published Child Safety Standards โ€” explicitly prohibiting CSAE/CSAM as required by Google Play's Child Safety Standards policy โ€” are available at:

๐Ÿ“„ https://srv1274900.hstgr.cloud/download/child-safety-standards.html

This document identifies our app (Soni Community App (Mumbai)), developer (Praveen M Soni), our in-app reporting mechanism, enforcement actions, CSAM handling declaration, and all applicable legal compliance measures.

13. Summary of Key Privacy Protections

Data Encryption: All data encrypted during transmission (HTTPS/TLS)
No Third-Party Sharing: Your data stays within the community
Auto-Delete: Posts automatically deleted after 30 days
Secure Storage: Encrypted tokens on your device using AsyncStorage
Auto-Logout: Automatic logout after 30 min inactivity
Account Deletion: Full deletion available within 30 days
No Ads: We never sell your data to advertisers
Community Only: Data visible only to authenticated members
Payment Security: No credit card or bank details stored
Child Safety Reporting: In-app ๐Ÿ›ก๏ธ shield button on posts for reporting CSAE/child safety violations โ€” reviewed by admins within 24โ€“48 hours
Zero Tolerance CSAE: Absolute prohibition on CSAM/CSAE โ€” violations reported to NCMEC and Indian authorities under POCSO Act