Privacy Policy
v1.1 (draft, under operator legal review) — 2 October 2026. Supersedes v1.0 of 12 July 2026, which it keeps in full and extends for the People vault, households, children's entries and account deletion. Drafted for review against the Australian Privacy Act 1988 (APPs) and India's DPDP Act 2023 and Rules 2025; this product serves users in both countries. This page is published in English only while it is under review, so there is one document to review and sign off.
The short version
Ankved is local-first. Your name, date of birth and any client records you create are stored in your own browser (localStorage) and nowhere else, unless you explicitly create an account and press Sync.
v1.1 — People, households and children
What the People vault holds
"People" (लोग) is the list of everyone you have added: yourself, family members, clients and businesses. For a person it can hold a name, a date of birth, a relationship label, a gender if you set one, the name spellings you have shortlisted or recorded as changed, and your own session notes. For a business it can hold a legal name, a brand name, incorporation and launch dates, an optional disclosed industry, and the people you have marked as owners. Groups are your own labels for collections of people — a household, or your clients — and hold a group name and kind, never a document or an identifier issued by anyone else.
All of it lives in this browser. It is written to this browser's localStorage under keys beginning nk: and is read only by the pages you open. We do not ask for identity documents, addresses, phone numbers, payment details or health information, and there is no field in which to put them. Nothing is transmitted when you compute, print or export.
When anything leaves this browser
Only after you create an account. On the Account page, creating an account requires you to read a three-point summary of what is uploaded and where it is stored, and to tick a consent box; until that box is ticked the button stays disabled. If you do create one, your email address and an encrypted-in-transit copy of your vault snapshot are stored against your account on Supabase (the storage region is shown on the Account page) under row-level security, so only your own login can read it. If you never create an account, no copy of your data is ever sent anywhere, and every feature except sync keeps working.
Children's entries
A child's entry — including a newborn whose name is still undecided — exists under the consent and responsibility of the adult account holder who added it. A child's details are used only to compute the numbers you asked for on the screen you are looking at. They are never used to build a profile, never used for advertising or marketing, never shared with a third party, and never used to target content: there are no advertising pixels, no third-party analytics and no behavioural tracking anywhere in this product, for anyone. If you added a child's entry and no longer want it, delete it from that person's page; the record goes, and a deletion marker that carries no name takes its place so your other devices remove it too.
Records about other people
Family members, clients and business partners are other people with their own privacy interests. Adding someone means you take responsibility for having their consent (or, for a child, for holding it as the responsible adult) and for complying with the privacy law that applies to you. Treat the notes you keep about them as you would any other record about a person.
Export, delete and wipe
- Export: Settings → Export writes your whole vault to a JSON file you keep. It is a complete snapshot, it works offline, and it is readable without this product.
- Delete one entry: the Delete button on a person's or business's page. The account holder's own entry cannot be deleted while it is the account holder.
- Delete everything: Account → Delete my account & data removes the synced copy, asks the server to remove the login itself, and signs you out. You choose in the same step whether to keep the local copy in this browser or to wipe it; wiping clears every
nk:key in this browser. If the operator has not yet installed the server-side login-removal routine, the page tells you so plainly and your data row is deleted regardless. - Without an account: clearing this site's browser data deletes everything, because there is nothing anywhere else.
Sync merges per entity rather than overwriting a whole snapshot, so two devices in one household do not erase each other's edits. A deletion travels as a marker holding an id and a timestamp — never a name — and the Account page shows what a sync added, updated and removed.
Numbers, not names, on any shared surface
Share links, share cards and the public pairing pages carry two digits and nothing else. No name, date of birth, person id or group name is ever placed in a URL, a query string, a share message or a page title. The read-only API is stateless and logs no request parameter at all; where it can take numbers instead of a date of birth it does (a business owner list is digit pairs, never dates), and every response is marked private and no-store.
What a result depends on
Numerology has several schools that disagree with each other. Every result on this site is produced by the letter table and Lo Shu school selected in Settings, and the school in force is disclosed alongside the result together with the working that produced it. Change the school and the numbers change. A result is a reading within a tradition, not a measurement, and nothing here is a statement about a person's health, finances, relationships or future.
Name changes have consequences outside this product
If a suggested spelling leads you to change a name in real life, that has legal and administrative consequences this product knows nothing about — identity documents, school and employment records, bank and tax records, visas, licences and property titles, and the registration of a child's name within the time your jurisdiction allows. Verify every one of them with the relevant authority, and with a qualified professional where it matters, before you act. Recording a name change here only changes what this product shows you.
What we collect
- Without an account: nothing. No analytics trackers, no advertising pixels, no cookies beyond what the hosting platform requires to serve pages.
- With an account (when sync is available): your email address and an encrypted-in-transit copy of your data snapshot, stored against your account and protected by row-level security so only your login can read it.
What we never do
- Sell or share personal information with third parties.
- Put names or dates of birth in URLs or share links — shared pages carry numbers only.
- Run third-party analytics or advertising on pages holding personal or wellbeing data.
- Profile a child, or use anyone's entry for advertising or marketing.
Your controls
- Export all data anytime (Settings → Export) — the file is yours.
- Delete locally by clearing this site's browser data; deleting your account removes the synced copy.
- Delete your account and data, with a keep-or-wipe choice for this browser, from the Account page.
- Client records you keep about others are your responsibility as their practitioner — obtain their consent.
Contact
Privacy questions: via the operator contact published on the About/footer of this site.