Effective date: 29 June 2026 · Operated by Rishabh Dongre · Contact: support@carekosh.com
CareKosh ("CareKosh", "we", "us") is a mobile app that helps households and home-care families track their medical and care-supply inventory — items, stock levels, expiry dates, categories, and reorder lists. This policy explains what information we collect, why, how we protect it, and the choices you have. We collect only what the app needs to work; we do not sell your data and we do not use advertising trackers.
1. Information we collect
Information you provide
Account details — your name, email address, and/or a username, and a password (used to sign in and to send verification, password-reset, and account-deletion confirmation emails).
Inventory you enter — item and category names, quantities, minimum-stock thresholds, expiry dates, brands, notes, supplier names/contact details (if you choose to add them), purchase links, and a "critical/emergency" flag; plus orders and the activity history these generate.
Photos — if you choose to attach a photo to an item, it is selected from your device's library; image URLs may be stored as item metadata, and photos may be included in PDFs you generate.
Files you create — inventory/order PDFs and JSON exports you generate in the app, and inventory data you copy to your clipboard, all at your request.
Information collected automatically
Authentication tokens — sign-in tokens are stored securely on your device (in the operating system's secure storage) to keep you logged in.
Limited technical / error logs — our servers keep minimal logs and error reports needed to operate, secure, and debug the service.
What we do NOT collect: no advertising identifiers, no third-party advertising or analytics trackers in the app, no location data, no contacts, and no access to your microphone or camera. Your passwords are never stored in readable form — they are hashed on our servers.
2. How we use your information
To create and manage your account and keep you signed in.
To provide the core features — storing and displaying your inventory, orders, categories, and activity.
To send you account emails (email verification, password reset, account-deletion confirmation, and security notices such as a password change).
To keep the service secure, reliable, and free of abuse.
3. How your information is stored and protected
Your data is associated with your account and is scoped to you — other users cannot see it.
All data is encrypted in transit (HTTPS).
Passwords are hashed on the server (never stored in plaintext, never stored on your device).
Sign-in tokens are stored only in your device's secure storage.
4. Service providers (sub-processors)
We use a small number of trusted providers to run CareKosh. They process data only to provide their service to us:
Provider
Purpose
Render
Application hosting (runs our backend)
Neon
Managed PostgreSQL database (stores your account & inventory data)
(If enabled) collects technical error reports to keep the service reliable
We encourage you to review each provider's own privacy practices. We do not sell your personal information or share it with third parties for advertising.
5. Data retention
We keep your account and inventory data for as long as your account is active. When you delete your account (see Section 7), we remove your personal data from our active systems; residual copies in routine encrypted backups are overwritten on our normal backup cycle. We may retain a minimal record where required by law.
6. Your rights
You can:
Access and correct your information — most of it is editable directly in the app.
Export your inventory — the app lets you generate PDF and JSON exports.
Delete your account and associated data at any time (Section 7).
Deleting your account removes your profile, inventory, orders, categories, activity history, and stored item-photo references from our active systems.
8. Children
CareKosh is intended for users aged 13 and older and is not directed to children. We do not knowingly collect personal information from children under 13.
9. Email communications
We send only transactional emails necessary to operate your account (verification, password reset, account-deletion confirmation, and security notices). We do not send marketing email.
10. Changes to this policy
We may update this policy as the app evolves. We will revise the "Effective date" above and, for material changes, provide notice in the app or by email.