This Privacy Policy describes how TestCrux ("TestCrux", "we", "us", or "our") collects, uses, shares, and protects your personal information when you use www.testcrux.com and related services (the "Platform"). This Policy is published in accordance with the Information Technology Act, 2000, the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, and the Digital Personal Data Protection Act, 2023.
1. Information We Collect
Account information: name, email address, mobile number, password (stored hashed), exam goal, target year, language preference, and profile picture if you choose to upload one.
Usage data: tests attempted, answers submitted, accuracy, time spent per question, sections completed, AI chat interactions, reports generated, and feature usage.
Device & log data: IP address, browser type and version, operating system, device identifiers, referring URLs, pages visited, timestamps, and crash logs. We use this to keep the Platform secure and to debug issues.
Payment data: when you purchase CruxAI Pro, you provide payment information (card number, UPI ID, netbanking credentials, wallet details) directly to our payment processor Razorpay Software Private Limited. TestCrux does not receive or store full card numbers, CVV, UPI PIN, or netbanking passwords on its servers. We only receive a transaction reference, the amount, payment status, and a payment method label (e.g. "UPI", "Card") for reconciliation and customer support.
Cookies and similar technologies: we use first-party cookies and local storage for session management, remembering your exam goal and preferences, and basic analytics. You can disable cookies in your browser, but parts of the Platform may not function correctly.
2. How We Use Your Information
- To create and operate your account, deliver mock tests, and generate performance analytics and AI explanations.
- To process payments for CruxAI Pro and activate corresponding entitlements.
- To send you transactional communications such as OTPs, password resets, payment receipts, and important account or service notifications.
- To send product updates, exam announcements, and offers — only where permitted; you can opt out at any time.
- To detect, prevent, and respond to fraud, abuse, security incidents, and violations of our Terms & Conditions.
- To improve the Platform, our AI models, content, and overall student experience using aggregated, de-identified data.
- To comply with applicable laws and respond to lawful requests from authorities.
3. Sharing of Information
We do not sell your personal information. We share it only with:
- Payment processor: Razorpay, for processing payments and refunds for CruxAI Pro.
- Cloud infrastructure providers: hosting, database, storage, and email delivery vendors who are contractually bound to keep your information secure.
- AI providers: in order to power CruxAI explanations and reports, anonymised or pseudonymised question and response data may be sent to third-party large language model providers.
- Coaching institutes (only if you join one): if you accept an invitation from a coaching institute on TestCrux, your performance within that coaching's tenant is shared with the coaching's authorised admins.
- Law enforcement and regulators: where required by law, court order, or to protect the rights, property, or safety of TestCrux, our users, or others.
4. Data Security
We implement reasonable technical and organisational measures — including TLS encryption in transit, encryption of sensitive fields at rest, password hashing, access controls, and audit logs — to protect your information. No method of transmission or storage is 100% secure, but we work continuously to strengthen our protections.
5. Data Retention
We retain your information for as long as your account is active or as needed to provide the Platform. We may retain certain information for a longer period when required for legal, tax, accounting, fraud prevention, or dispute resolution purposes. When you delete your account, we delete or anonymise your personal information within a reasonable timeframe, subject to legal retention requirements.
6. Your Rights
Subject to applicable law, you have the right to access, correct, update, or delete your personal information; to withdraw consent for marketing communications; and to obtain a copy of the personal information we hold about you. To exercise any of these rights, write to contact@testcrux.com. We will respond within a reasonable time.
7. Children's Privacy
TestCrux is intended for users aged 13 and above. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, please contact us and we will take steps to delete it.
8. Third-Party Links
The Platform may include links to third-party websites or services (including Razorpay, social platforms, or coaching websites). This Policy does not apply to those sites; we encourage you to review their privacy policies separately.
9. Updates to this Policy
We may update this Policy from time to time to reflect changes in our practices or applicable law. The "Last updated" date at the top will reflect the latest revision. Material changes will be notified via email or an in-app notice.
10. Grievance Officer
In accordance with the Information Technology Act, 2000 and rules made thereunder, the contact details of the Grievance Officer are:
Grievance Officer
TestCrux
Email: contact@testcrux.com
We endeavour to acknowledge complaints within 48 hours and resolve them within 30 days of receipt.