Privacy Policy
Last updated: 11 May 2026
1. Who we are
Suryom ("we", "us") is a hyperlocal community app operated from India. You can reach us at hello@suryom.app.
2. What we collect
- Account data: name, email, phone number, profile photo (if you upload one).
- Location: approximate area and coordinates you choose to share (used for hyperlocal feed, blood requests, SOS).
- Activity: posts, comments, quests completed, coins earned, page views, session duration.
- Device: browser type, OS, push subscription tokens (if enabled).
3. How we use your data
- Show you a feed and people from your local area.
- Send blood-request and SOS alerts to nearby users.
- Award Surya Coins, run quests, and pay out cashouts.
- Detect abuse, spam and fraud (e.g. referral abuse).
- Send transactional notifications (push/email) you opted in to.
4. Who can see your data
Your phone number is private by default — it is only revealed to another user if you approve a contact request. Posts, name and area are visible to other Suryom users in your locality. We do not sell personal data to advertisers.
5. Storage & security
Data is stored on Supabase (EU/Asia regions) with Row-Level Security. Passwords are hashed by Supabase Auth — we never see them. We use HTTPS everywhere.
6. Your rights
You can request a copy of your data, correct it, or delete your account at any time by emailing hello@suryom.app. Account deletion removes your profile, posts and coin balance within 30 days.
7. Children
Suryom is not intended for users under 13. If you believe a minor has signed up, contact us and we will remove the account.
8. Changes
We may update this policy. Material changes will be announced inside the app at least 7 days before they take effect.
9. EU / GDPR Rights
If you are in the European Economic Area or UK, you have the right to:
- Access a copy of all personal data we hold about you.
- Rectify inaccurate data.
- Erase your account and data ("right to be forgotten").
- Restrict or object to certain processing.
- Portability — receive your data in a machine-readable format.
- Withdraw consent for push notifications or location sharing at any time, in-app.
Email hello@suryom.app with the subject "GDPR Request" and we will respond within 30 days. You may also lodge a complaint with your local data-protection authority.
Lawful basis: consent (push, location), contract (account, coins/cashout), legitimate interest (fraud prevention, app health).
10. Cookies & Local Storage
We use a small number of essential cookies and browser local storage to keep you signed in, remember your selected area and language, and measure app health (crashes, slow requests). We do not use advertising cookies and do not sell data to third parties. You can clear these any time from your browser settings.