Privacy Policy
Last updated: July 16, 2026
Scope
This policy explains how the Krishi AI Android app and maswadkar.com process personal data. It is based on a reviewed inventory of the app, Firebase backend, private AI service, website, and current Google Play release.
Data we process and why
We process only the data needed for the feature you choose:
- Account and profile: Firebase user ID, sign-in details, name, contact details, village, location, farm details, crops, and preferences for authentication, personalization, and requested supplier leads.
- Chat and AI: prompts, responses, language, timestamps, conversation identifiers, citations, linked images, and any structured answer feedback you choose so we can answer requests, show grounded source metadata when available, and provide history. Feedback stores only a fixed rating and optional reason; it does not create another copy of your prompt or photo.
- Crop and diary images: images you select or capture, their Storage paths, and linked conversation or Field Diary entry.
- Voice: microphone audio streamed for a Gemini Live response and monthly duration/session totals used to enforce quota. Krishi AI does not create an audio recording.
- Weather: approximate coordinates, location label, forecast, and fetch time for the local three-day forecast and optional profile prefill.
- Field Diary and carbon program: activities, notes, inputs, costs, photos, and voluntarily submitted contact/farm details.
- Product and supplier requests: product intent, a relevant chat excerpt, contact/farm/location snapshot, routing status, selected supplier, and operational notes needed to fulfil the request.
- Notifications and configuration: Firebase installation/token and a signed-in account topic for requested service messages. Optional Mandi price alerts use a separate topic only after you turn them on in the Mandi Prices screen. Remote Config values support safe feature rollout.
- Measurement, review eligibility, and advertising: the currently published Play version includes Google Analytics, Install Referrer, and Google Mobile Ads SDKs, which may process app/device identifiers, usage, diagnostics, advertising data, and coarse location inferred from network information. We declare this conservatively in Google Play. Optional analytics now defaults off and can be enabled or revoked through a clear website or in-app choice. Before consent, the first-session experiment keeps at most one fixed variant/exposure category and one fixed outcome category on your device; it sends them only if you later enable analytics and clears pending categories when you revoke consent or delete local data. Events use bounded categories—including only the fixed rating, optional reason, and grounded/ungrounded category for answer feedback—and never include chat, Mandi inputs, images, shared-answer text, contact details, coordinates, profile fields, document contents, source IDs, or raw referrers. Play review eligibility keeps only identifier-free successful-action counts/types and timestamps on the device; optional analytics receives fixed eligibility/request outcome categories, not a rating or review text. Install attribution and ad loading remain disabled by default pending their separate approval.
Public mandi prices, crop knowledge documents, and anonymous website requests are not account profile data unless you contact us or use a signed-in feature.
Images and model training
Crop and Field Diary images are used only to provide the feature you requested, store your private history, and maintain service security. Krishi AI does not reuse existing or future user images to train models. Any future model-training program would require a separate, voluntary, specific opt-in and an auditable withdrawal process.
Service providers and sharing
We use processors only for the purposes above:
- Google Firebase and Google Cloud: Authentication, Firestore, Storage, Cloud Functions, Cloud Run, Remote Config, messaging, installation services, and managed security/backups.
- Google Gemini: text, image, and live-voice inference for the request you make.
- Google Play services: approximate location, app distribution, Install Referrer, In-App Review, and—where enabled—measurement or advertising. If Google Play shows a review card, any rating or review text goes directly to Google Play; Krishi AI receives only API task completion and cannot tell whether the card appeared or a review was submitted.
- WeatherAPI: approximate coordinates needed to return a forecast.
- data.gov.in: public mandi-price source data; we do not send your account profile to obtain prices.
- GitHub Pages: hosts this public website and may process standard hosting logs.
When you explicitly submit a product request, authorized Krishi AI staff and the selected supplier may receive the minimum contact, farm/location, product, and relevant chat details needed to respond. Opening WhatsApp, a phone app, email, or an external product link transfers data to the provider you choose under its own policy.
Sharing an AI answer is also user directed. Before the Android share sheet opens, Krishi AI shows the exact outgoing text: one editable selected-answer summary, Krishi AI branding, an AI-guidance caution, and a fixed App Link. The default contains no crop image, full conversation, profile field, account identifier, or hidden metadata, and Krishi AI creates no new server copy. Review the preview and remove personal or location details before choosing a destination app. Conversation PDF export remains a separate action.
We do not sell personal data for money. We do not disclose it to unrelated parties, except when legally required or necessary to protect users and the service.
Retention
- Account and profile: while the account is active; live data is deleted through the verified deletion flow.
- Chats, crop images, and agent sessions/events: until you delete the conversation or account.
- Field Diary entries/photos: until you delete the entry or account.
- Weather cache: up to 3 hours, and cleared on sign-out or account deletion.
- Voice quota record: current usage period, deleted with the account; any future history may not exceed 24 months.
- Closed leads and carbon-program requests: normally up to 24 months after closure, unless a documented financial, fraud, dispute, or legal obligation requires a limited record.
- Identifiable install attribution: up to 24 months after first install or until account deletion; only de-identified totals may remain afterward.
- Raw supplier-contact clicks: up to 360 days; aggregates are deleted or de-identified after their operational period.
- Temporary exports and app cache: cleared after use, on sign-out/deletion, or by the operating system.
- Security logs and managed backups: restricted and allowed to expire under provider schedules. Deleted live account data is not restored; inaccessible backup copies may take up to 90 days to expire.
Delete or control your data
You can delete individual conversations from chat history and Field Diary entries from the diary. A conversation deletion also removes its crop images and agent session/events.
To permanently delete an account, open Farmer Profile → Privacy and account → Delete account, or follow the verified support process on our account-deletion page. Account deletion covers authentication, profile/settings, conversations/images, agent state, Field Diary, voice usage, leads, carbon requests, supplier-interest records, install attribution, notifications, and supported local identifiers/cache.
Financial records that must be retained are stripped of the user ID and request number. Service-provider logs and backups expire as described above. You may also export a conversation before deleting it, turn Mandi price alerts off from the Mandi Prices screen, revoke device permissions in Android Settings, decline optional analytics on this site through Analytics settings, or change app analytics under Farmer Profile → Privacy and account, without losing unrelated features.
Security, children, and international processing
We use owner-scoped Firebase rules, authenticated server operations, restricted admin access, private agent infrastructure, transport encryption, and least-necessary disclosure. No online service can guarantee absolute security.
Krishi AI is not directed to children under 13. A parent or guardian who believes a child submitted personal data should contact us for deletion.
Google and other processors may handle data in countries outside your location. We use their contractual and technical safeguards and limit the data sent to the feature you request.
Contact and changes
Maswadkar Developers operates Krishi AI. For privacy, access, correction, or deletion requests, email maswadkar@gmail.com or use WhatsApp at +91 94035 13382. Never send a password, OTP, authentication token, or unnecessary identity document.
We will update this page and its date when the policy materially changes. Where appropriate, the app will show a notice before a new use of sensitive data.