Privacy Policy Updated
Last Updated: June 1, 2026
Welcome to Ain Shikkha O Sheba ("we," "our," "us," or the "App"). We are dedicated to providing a secure environment where users can access legal education, digital publications, professional human legal consultations, and automated artificial intelligence guidance.
Your privacy is paramount to us. This Privacy Policy outlines our strict practices regarding the collection, use, maintenance, protective processing, and disclosure of your personal and professional information. By installing, registering with, or utilizing this App, you explicitly consent to the collection and processing of your data as detailed in this policy.
1. Information We Collect
To successfully deliver our multi-tiered platform services, we collect information across several categories:
A. Personal Identification Data
Account Registration Details: Full name, valid email address, active mobile phone number, profile photograph (optional), and chosen authentication credentials (password hashes).
Professional Designation: Self-declared status selecting whether you are a General User seeking legal recourse, a Law Student accessing academic materials, or a Practicing Lawyer/Legal Advocate offering professional advice.
B. Service-Specific Data Streams
Human Expert Consultation Records: Detailed descriptions of legal problems, structural case details, factual histories, and any supporting documentation (PDFs, images, text files) uploaded to the platform when seeking active remedy from our vetted human legal experts.
AI Legal Assistant Interactions: Complete transcripts of conversational chat queries, prompts, and inputs submitted to our automated AI Legal Assistant module.
Digital Law Library Activity: System tracking logs monitoring ebooks opened, duration of reading sessions, search queries within the repository, bookmarks, annotations, and reading preferences.
C. Financial & Transactional Data
Payment Details: When accessing premium ebooks, licensing professional materials, or funding paid human consultations, payment data is processed directly via secured, PCI-DSS compliant third-party payment gateways.
Note: We do not ingest, store, or process credit card numbers or raw bank account credentials on our central infrastructure.
D. Technical & App Telemetry Data
Device Context: Mobile device model, operating system version, unique device identifiers (UUID), IP addresses, network carrier, and localized language preferences.
Application Diagnostics: Crash logs, application performance metrics, session durations, and user interface clickstream tracking.
2. Core Methodologies: How We Use Your Information
We process and apply your structural data for specific, lawful purposes:
⚖️ Facilating Human Legal Consultations
To accurately match general users with verified legal professionals.
To enable direct, secure end-to-end communication channels between users and human legal experts to discover effective remedies for real-world legal problems.
🤖 Powering and Refining the AI Legal Assistant
To instantly parse textual prompts and return automated legal citations, definitions, and contextual information.
To train and evaluate the operational efficiency of our internal Natural Language Processing algorithms.
Security Bound: Any chat logs used for model evaluation undergo stringent, algorithmic anonymization to strip away individual identifiers.
📚 Operating the Digital Law Library
To manage digital rights management (DRM) licensing for legal texts and academic publications.
To curate automated reading recommendations and bookmark synchronization for law students and legal professionals.
3. Data Confidentiality, Retention, and Sharing Restrictions
We do not sell, rent, trade, or monetize your personal information under any circumstance. Sharing occurs exclusively under these strict paradigms:
| Category | Data Recipient | Sharing Scope & Justification |
| Human Consultations | Verified App Legal Experts | Shared strictly with the designated professional you actively choose to engage with for your specific case remedy. |
| Infrastructure | Cloud Service Providers | Encrypted storage management on enterprise cloud servers under rigid Data Processing Agreements (DPAs). |
| Legal Obligations | Statutory Authorities | Disclosed only when explicitly compelled by a legally binding court order, national legislation, or valid subpoena. |
Data Retention Windows
Active Accounts: All user accounts, library logs, and chat histories are maintained as long as the account remains actively registered by the user.
Inactive/Marked Accounts: Upon an explicit account deletion request, personal data is scrubbed from active operational databases within 30 days and cleared from secure backups within 90 days.
4. Enhanced Security Architecture
We employ a defense-in-depth framework to safeguard your data:
Transport Security: All data transmitted between the mobile application and our servers is secured using Transport Layer Security (TLS) encryption.
Storage Security: Sensitive user databases, password hashes, and uploaded documents are encrypted at rest using AES-256 standard encryption.
Access Control: Strict role-based internal access policies ensure that internal engineering staff cannot read raw consultation data or personal user chat logs without specific diagnostic clearance.
5. Vital Operational Disclaimers
⚠️ AI Assistant Limitations: The AI Legal Assistant provides automated legal information for educational purposes only. It does not constitute formal legal advice, nor does it establish an attorney-client relationship. While conversations with human lawyers are protected by legal professional confidentiality, AI queries are processed computationally. Users are strictly prohibited from typing sensitive identifiers—such as National Identification Numbers (NID), passwords, or bank account credentials—into the AI Chat interface.
6. Your Rights and Autonomous Controls
As a user of Ain Shikkha O Sheba, you possess complete agency over your digital footprint:
Rectification: You can modify profile details, contact data, and professional status instantly via the App's account settings panel.
Portability & Access: You may request an exported copy of your profile and consultation metadata by contacting our privacy desk.
Erasure (The Right to Be Forgotten): You hold the right to trigger absolute removal of your account, consultation history, and associated app metadata at any moment via the in-app dashboard or manual request.
7. Compliance Updates and Modifications
We reserve the right to modify this Privacy Policy to reflect changing regulatory requirements, legal updates, or platform features. Material modifications will be broadcast directly via in-app alerts, push notifications, or explicit update prompts upon launching the application. Continued usage of the system following an update constitutes definitive acceptance of revised terms.