Privacy Policy
Effective date: July 17, 2026
1. Introduction
This Privacy Policy describes how Ajay Krishnan Professional Corporation, an Ontario corporation (“we”, “us”, “our”), collects, uses, and protects information when you use Rajam (“the Service”).
2. Information We Collect
Account information. Rajam signs you in through Ajent using OpenID Connect. It stores Ajent's canonical issuer and numeric subject as the durable owner mapping, an email projection, your Rajam-local display name, and the current Rajam entitlement. Rajam temporarily retains an encrypted access token in its own database so it can recheck entitlement; the browser receives only an opaque, host-only session cookie. Rajam does not copy Ajent passwords, passkeys, Google OAuth credentials, or unrelated Ajent roles.
Audio content. We store the audio recordings you create through the Service. Audio is stored in the format supplied by your browser and is only accessible to you unless you explicitly publish an individual recording or a collection.
Usage events. We retain small, self-hosted aggregate counters grouped only by an approved Rajam event name and hour. They do not retain page addresses, publication keys, user identifiers, browser or device profiles, IP addresses, referrers, arbitrary properties, recording titles, filenames, or audio.
Offline device data. If you install or use Rajam offline, your browser may retain owner-scoped recording metadata, audio you explicitly pin, and recordings waiting to upload in IndexedDB and Cache Storage on that device. Queued audio remains on the device after a session ends so it is not silently lost, but it is only displayed or synchronized after the same owner re-establishes a valid session. Rajam provides an explicit device-data removal control. Browser storage can also be removed by the browser, operating system, or device owner.
No session recording. Rajam does not use session-replay or session-recording tools and does not capture your clicks, scrolling, form contents, microphone input, or page images for analytics.
Operational data. Rajam application health and security checks use minimized technical records and are designed not to retain audio, recording titles, filenames, publication keys, cookies, signed links, request bodies, referrers, or browser and device profiles. Production network processors will be identified here after deployment is verified.
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service
- Enforce owner-scoped access and protect application data
- Respond to service and account-support requests
- Use aggregate event counts to improve reliability and usability
- Detect and prevent abuse or violations of our Terms of Service
We do not sell your personal information. We do not use your audio content for training machine learning models or for any purpose other than providing the Service to you.
4. Information Sharing
We share your information only in the following circumstances:
- Published content. When you publish an individual recording or collection, that content becomes accessible to anyone with the public link until you revoke it.
- Service infrastructure. The standalone build uses project-owned application storage. Production service providers will be listed here after deployment is verified.
- Legal requirements. We may disclose information if required to do so by law or in response to valid legal process.
5. Data Storage and Security
Rajam's primary application database and audio storage use project-owned paths isolated from other applications. Production transport and storage protections will be documented before public deployment. No method of electronic transmission or storage is completely secure.
6. Data Retention
We retain your local owner mapping and audio content while the account mapping remains active. A recording moved to trash can be restored for 30 days and is then permanently removed from live storage. A minimal owner-scoped upload identifier may remain after purge to prevent an offline retry from recreating deleted content; it contains no title, filename, or audio. Contact us to request account-data deletion.
7. Cookies and Tracking
The Service uses a secure, host-only cookie for authentication and session management. Privacy-contained usage events do not use cookies to identify users across sites or Rajam sessions. We do not use third-party advertising cookies or cross-site tracking.
8. Your Rights
You may view your Rajam content and update your local display name through your profile. Contact us to request a copy of your data, correction of account identity information, or deletion of Rajam account data. Rajam does not yet offer self-service account export or account deletion. We will respond within a reasonable timeframe.
9. Children
The Service is not directed to children under the age of 16. We do not knowingly collect personal information from children under 16. If you believe a child has provided us with personal information, please contact us and we will take steps to delete it.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on the Service with a revised effective date.
11. Governing Law
This Privacy Policy is governed by the laws of the Province of Ontario and the federal laws of Canada applicable therein.
12. Contact
Questions about this Privacy Policy may be directed to webmaster@krishnan.ca.