Oppex Logo
← Back to Home

Privacy Policy for Oppex

Last Updated: August 20, 2026

Welcome to Oppex! We are committed to protecting your privacy and ensuring your personal data is handled securely and transparently, in compliance with the Digital Personal Data Protection Act, 2023 (DPDP Act) of India and applicable global standards.

This Privacy Policy explains how we collect, use, and protect your information when you use our website (oppex.io) and software application (collectively, the "Service").


1. Information We Collect

We collect minimal personal data necessary to provide our Service:

  • Account Information: When you create an account, we collect your name and email address. If you use Google OAuth, we receive this information from Google.
  • Payment Information: If you purchase credits or a subscription, your payment details (e.g., credit card, UPI ID) are processed securely by our third-party payment gateway (Razorpay). We do not store your full payment card details or UPI PINs on our servers.
  • Usage Data: We may collect anonymous, aggregated data on how the Service is used (e.g., crash logs, feature usage) to improve our application.
  • Code and Context Data: As an AI-powered coding assistant, Oppex processes the code snippets, error logs, and related context you submit to generate solutions. This data is sent to our AI providers (e.g., OpenRouter) temporarily for processing and is not used to train our AI models without your explicit consent.

2. How We Use Your Information

We use your data solely for the following purposes:

  • To create and maintain your account.
  • To process payments and maintain your credit balance.
  • To provide, maintain, and improve the Service (including generating AI code solutions).
  • To communicate with you regarding updates, security alerts, and support requests.
  • To comply with legal obligations.

3. Data Sharing and Third Parties

We do not sell your personal data. We share data only with trusted third parties necessary for operating our Service:

  • Payment Processors: Razorpay (for processing transactions).
  • Cloud Infrastructure: Google Firebase (for hosting, database, and authentication).
  • AI Providers: OpenRouter and associated LLM providers (for generating code solutions). Data sent to these providers is ephemeral and subject to their strict zero-retention policies for API users.

4. Your Rights under the DPDP Act

As a user residing in India, you have the following rights regarding your personal data:

  • Right to Access: You can request a summary of the personal data we hold about you.
  • Right to Correction & Erasure: You can update your information or request deletion of your account and associated data.
  • Right to Grievance Redressal: You can escalate concerns to our Grievance Officer.
  • Right to Withdraw Consent: You may withdraw your consent for data processing at any time by deleting your account.

5. Data Security

We implement industry-standard security measures, including encryption in transit and at rest, secure Firestore rules, and atomic transactions, to protect your data against unauthorized access or breaches. However, no internet transmission is 100% secure, and we cannot guarantee absolute security.

6. Children's Privacy

Oppex is intended strictly for users aged 18 and older. We do not knowingly collect personal data from anyone under 18. By using our Service, you confirm that you are at least 18 years old.

7. Changes to This Policy

We may update this Privacy Policy from time to time. If we make significant changes, we will notify you via email or a prominent notice on our website. Continued use of the Service after changes indicates your acceptance.

8. Contact Us & Grievance Officer

In accordance with the DPDP Act and IT Rules 2021, the contact details of our Grievance Officer are:

Name: Himadev Sontineni Designation: Grievance Officer Email: grievance@oppex.io

For general privacy inquiries, please contact privacy@oppex.io.