Privacy Policy

Last updated: June 2026

1. Introduction

neetonlinetest.in is committed to protecting your privacy. This policy explains what data we collect, how we use it, and your rights under the Information Technology Act 2000 and the Digital Personal Data Protection Act 2023 (DPDP Act).

2. Data We Collect

Account Information

  • Name (optional at signup, collected during onboarding)
  • Email address and phone number (for login)
  • State and city (for regional analytics)
  • Target NEET year

Exam Behaviour Data

  • Questions answered and time spent per question
  • Answer selections and changes during exams
  • Tab switches and browser focus events during exams
  • Exam scores and subject-wise performance

Technical Data

  • IP address (used for fraud detection and rate limiting)
  • Device fingerprint hash (SHA-256, for referral fraud detection)
  • Browser type and version

3. How We Use Your Data

  • To provide and operate the mock test platform
  • To generate personalised performance analytics and insights
  • To send exam results and important account notifications
  • To detect and prevent fraud in the referral programme
  • To improve question quality and platform reliability
  • To comply with legal obligations

4. Data We Do Not Collect

  • We do not collect payment card details — all payments are processed by Razorpay
  • We do not collect Aadhaar, PAN, or government ID information
  • We do not collect location data beyond city and state you provide

5. Data Sharing

We do not sell your personal data to any third party. We share data only with:

  • Supabase — database and authentication provider, servers located in Mumbai (India)
  • Vercel — hosting provider
  • Razorpay — payment processing (Phase 2)
  • PostHog — anonymised usage analytics

6. Data Storage and Security

  • All data is stored in Supabase PostgreSQL servers in Mumbai, India (ap-south-1 region)
  • Data is encrypted at rest and in transit (TLS 1.3)
  • Admin access is protected by JWT authentication and IP-restricted routes
  • Passwords are never stored — we use OTP-based authentication only

7. Your Rights (DPDP Act 2023)

  • Right to access — request a copy of your personal data
  • Right to correction — request correction of inaccurate data
  • Right to erasure — request deletion of your account and data
  • Right to withdraw consent — stop using the platform at any time

To exercise any of these rights, email us at onlineneettest@gmail.com

8. Cookies

We use essential cookies only — for authentication sessions and exam state preservation. We do not use advertising or tracking cookies. You cannot opt out of essential cookies as they are required for the platform to function.

9. Data Retention

  • Account data is retained as long as your account is active
  • Exam attempt data is retained indefinitely for your performance history
  • On account deletion, personal data is removed within 30 days
  • Anonymised analytics data may be retained longer

10. Contact

For privacy questions or data requests, contact: onlineneettest@gmail.com