Privacy Policy
Last updated: 30 September 2026
This Privacy Policy explains how Yojika Systems Private Limited ("we", "us", "our") handles information when you use our website (yojika.com) and the Yojika applications for Windows and Android ("the App"). We are a private limited company incorporated in India under the Companies Act, 2013, with CIN U62011TN2026PTC195858, and we keep the collection of personal data to the minimum needed to run the product. Our registered office and contact details are in section 10.
1. Data stored on your device (not with us)
The App is offline-first. Unless you turn on Cloud Sync (section 2), all the business data you enter — invoices, parties, items, inventory, payments and reports — is stored in a local SQLite database on your Windows computer or Android device. We have no access to it, we cannot read it, and it is never transmitted to our servers. Backups you create stay on the folder or drive you choose.
2. Cloud Sync — optional, opt-in (what changes when you turn it on)
Cloud Sync is off by default and strictly opt-in per shop. With sync off, Yojika behaves exactly as described in section 1 — 100% local, and zero business data leaves your device. Enabling sync is a deliberate action in Settings, available only on the Combo plan, and is the only way business data reaches our cloud. Our promise:
When you turn Cloud Sync on:
- What is stored in the cloud — the business data needed to keep your own devices in step: your invoices and their line items, parties (customers and vendors), items and stock movements, your shop profile, and the payments you record against invoices. This can include your customers' details (name, phone, GSTIN) because they appear on your invoices. Your license and payment records to us are handled separately (section 4) and are not part of Cloud Sync.
- Where it is stored — in our Supabase database, and streamed between your devices by PowerSync, our sync provider. Data is encrypted in transit (TLS) and encrypted at rest by these providers. Our Supabase database is hosted outside India, in the Asia Pacific (Tokyo) region (ap-northeast-1). We do not offer India data residency for Cloud Sync, and we make no claim that synced data is stored in India. If your business requires your records to stay within India, leave Cloud Sync off — with sync off, nothing leaves your device at all (section 1).
- How long it is kept — your synced data stays in the cloud only while Cloud Sync is on for your shop. It is retained to keep your devices converged, not archived indefinitely.
- Turning it off / deletion on unlink — turning Cloud Sync off in Settings stops all further uploads, and offers to remove your data from the cloud — this purges your shop's synced rows from our servers. Your local copy on your device is kept and becomes the sole source of truth again, so you lose nothing by turning sync off.
- Your consent — when you enable Cloud Sync, the App shows a consent notice naming exactly what will sync and the providers involved (Supabase and PowerSync). You are turning this on knowingly, or it does not happen.
When you use Cloud Sync, we act as a data processor for the business data you choose to sync (including your customers' information), and you remain its controller. See our Terms and the Cloud Sync data-protection note for the details of that arrangement.
3. Information we do collect
We collect the following, only for the purposes stated:
- Account & trial details — your name, email address and phone number, provided when you start a free trial in the App or sign in to your account on the website. Used to identify your license, send your license key, and provide support.
- License & device information — your license key, plan, activation dates, and a non-reversible device fingerprint (a hashed identifier derived from the PC or phone you activate on) used to enforce the number of devices your plan allows — one for Desktop, one for Mobile, two for the Desktop + Mobile combo — and to let you move your license to a new device. See Terms section 3 for what happens when you activate beyond that number.
- Payment information — when you buy a license, payment is processed by our payment provider (Razorpay). We receive a payment reference, amount, status and your email — we never receive or store your full card number, UPI PIN or bank credentials.
- Billing details — before a paid checkout we ask for the buyer name, billing address, city, state, PIN code and, if you are GST-registered, your GSTIN. We keep these details with the order's price and tax calculation to prepare and retain the tax invoice and reconcile it with the payment. A later change to your account does not rewrite an earlier order's billing details.
- Messages you send us — if you use the contact form or email us, we keep your message and contact details so we can reply. We may also record the subject of your enquiry, how you heard about Yojika, and notes about follow-up calls or support conversations, so our team can continue helping you. If you use support in your signed-in account, we keep your requests and messages there; replies marked for you are visible in that account. Those account replies are not sent by email.
- Abuse-prevention counters — public forms and trial or code-redemption requests use network addresses and other request identifiers to limit automated abuse. We also use Cloudflare Turnstile to check public form submissions. New contact-form counters store keyed hashes of email and network address, rather than those values directly. Older counters and other rate-limited flows may contain network addresses; access to the counters is restricted to our backend.
- Basic, privacy-friendly website analytics — aggregate page-view counts with no cookies and no cross-site tracking, only if enabled. This never identifies you personally.
4. How we use your information
- To create, deliver, activate and renew your license.
- To operate the free trial and prevent abuse (one trial per device and per email).
- To provide customer support and respond to your messages.
- To follow up on a product enquiry you send us and help our sales team manage that conversation.
- To send essential service emails (license key, renewal reminders, payment receipts).
- To meet our legal, tax and accounting obligations in India.
- If you enable Cloud Sync: solely to relay your own business data between your own devices (section 2).
We do not sell your personal data, and we do not use it for third-party advertising.
5. Who we share it with (processors)
We rely on a small number of trusted service providers, only to run the service:
- Supabase — hosts our license, account, payment, enquiry and support records database, and (only if you enable Cloud Sync) the synced copy of your business data.
- PowerSync — our sync provider; relays your business data between your own devices. Only involved if you turn on Cloud Sync (section 2); never used for offline-only shops.
- Razorpay — processes payments. Their handling of your payment data is governed by their own privacy policy.
- Resend — delivers our transactional emails (license keys, receipts, replies).
- Cloudflare — serves this website and the App installer download.
We share only what each provider needs to perform its function, and we do not share your data with anyone else except where required by law.
6. Data retention
We keep account, license, payment and related billing records for as long as your license is active and for as long afterwards as Indian tax and accounting law requires. Enquiries, follow-up notes and support messages are kept for a reasonable period so we can respond, continue support and maintain the history of our conversations with you. Rate-limit counters are scheduled for deletion once their fixed window ended more than 24 hours ago; a large backlog may take additional hourly runs to clear. Your on-device business data is retained under your control. On Android, clearing the App's storage or uninstalling it removes its local database. On Windows, delete the local database separately when you uninstall. Backups you exported to another location must also be removed there.
Cloud Sync data: if you enable Cloud Sync, the synced copy of your business data is retained in the cloud only while sync is on for your shop. When you turn sync off and choose to remove your data, your synced rows are deleted from our servers (section 2); your local copy is unaffected. You can also ask us to delete this data at any time (section 7).
7. Your rights
You may ask us to access, correct or delete the personal data we hold about you. Because your business data lives only on your device (unless you enable Cloud Sync), most of it is already fully in your control. To make a request about the account, license or support data we hold — or to have any Cloud Sync data erased from our servers — email support@yojika.com. We honour deletion requests for synced data as described in section 2 (turning sync off with "remove my data" does this yourself, immediately). For step-by-step instructions on deleting your account, license and on-device data, see our Account & Data Deletion page.
8. Children
Yojika is a business tool and is not directed at anyone under 18. We do not knowingly collect data from children.
9. Changes to this policy
We may update this policy from time to time. The "Last updated" date above will change, and material changes will be communicated where appropriate.
10. Contact
Questions about privacy? Email support@yojika.com, call +91 81485 70726, or write to us via the contact page. Our postal address for privacy and grievance correspondence is:
Yojika Systems Private Limited
No. 115, W Block, 3rd Avenue
Anna Nagar
Chennai, Tamil Nadu
600040 · India
CIN: U62011TN2026PTC195858
GSTIN: 33AACCY2576J1Z3