← Back to Tribe

Privacy Policy

Last updated: 15 September 2026

This page is the same Privacy Policy shown inside the Tribe app, published here so it can be read without an account. It describes what the app actually does.

Who we are

Tribe is a social app for college students in India. It helps you find people you are compatible with, chat with them, join groups, share short posts, and find internships, events and other opportunities.

Tribe is run by an individual developer, not a registered company. For anything in this policy — questions, requests, complaints — contact jainaagam1237890@gmail.com. That address is also the grievance contact for this policy.

What we collect

Account: your email address and a hashed password, held by our authentication provider so you can sign in. If you sign in with Google, we receive your email address and name from Google. If you add a passkey, the device stores the private key and we store only the public half. Your email is never shown to other users and is not stored in your profile.

Profile: name, username, photo, age, gender, city, college, department, year of study, qualification, bio, interests, skills, languages, what you are looking for, personality, hobbies, favourite music and films, ambition, achievements, certificates, and any Instagram, GitHub or LinkedIn handles you add. All of this is optional except a username, and all of it is visible to other signed-in users.

Professional profile: headline, career goals, preferred roles, industries and locations, availability, employment status, projects, work experience and links. Visible to other signed-in users. If you upload a resume, it is read entirely in your browser — nothing is sent to a third party to parse it — and kept on your device unless you choose to back it up to Tribe or attach it to an application.

Compatibility ("DNA") answers: your responses to the DNA questions. Some are sensitive — sleep difficulties, anxiety and stress, your biggest fears, what you need emotionally, attachment style, love language, relationship status, smoking, alcohol, and political views. Every one is optional. Sensitive questions default to "Only me": the answer itself is never shown to anyone else, though every answer you give is used in calculating your match percentages.

Activity: posts and one photo per post, direct and group messages, message reactions, read receipts, daily check-ins, streaks, vibes, group membership, close-friends lists, bookmarks, applications, endorsements you give or receive, and reports or blocks you submit.

College verification: you can verify your campus with a code from your college or by proving you hold a college email address. For the email route, the domain of the email on your account is compared to a registry once, and only the college and the date are stored — never the address.

Usage: Tribe records which profiles and listings were shown to you and which you opened, with the position on screen, the match score shown, and a random session identifier, so that ranking can be checked for fairness and so we can see how many people use each part of the app. This is first-party measurement stored in our own database. There is no third-party analytics or advertising SDK, and no advertising identifier.

Technical: a login token and small preferences (theme, telemetry opt-out, and flags for things you have already seen) stored in your browser. If you enable notifications, we store a push subscription for your device. Our hosting providers keep standard server logs, including IP addresses, for a short time.

Why we collect it

Profile and DNA answers exist to calculate your match percentage and show you people you are likely to get along with. That is the core of the app.

Messages, posts, groups, check-ins and opportunities exist to provide those features. Applications, resumes and evidence exist so companies can consider you when you choose to apply.

Your email exists to sign you in and to send password resets and login links.

Usage records exist to check that ranking treats people fairly and to count how many people use each feature. They are never used for advertising and never sold.

Reports and blocks exist to keep people safe.

We do not sell your data and we do not share it with advertisers.

Who can see what

Other signed-in users can see your profile, professional profile, posts, rank, endorsements, and any DNA-derived match percentage between the two of you. They cannot see your DNA answers, your messages with other people, your check-ins, your bookmarks, your applications, your reports, or your usage records.

Direct messages are visible to you and the person you sent them to. Group messages are visible to members of that group.

Anyone with your profile link (/?u=your-username) can see a public card — your name, username, bio, interests, languages, qualification, ambition, achievements, certificates, streak and cosmetic style — without signing in. A Wavelength card is public only if you publish it, and shows only the answers you chose.

If you apply to an opportunity, the company's members can see your application, the fields listed on the apply screen, and the resume you attached, until you withdraw. If you share your identity with a link, the holder of that link can see what the share screen lists until you revoke it or it expires.

Sensitive DNA answers default to "Only me" and stay that way until you change them.

Photos you upload — your profile photo, project images and post photos — are served from public web addresses that are not guessable but are not protected by a login. Anyone who has the exact address can load the image.

Where it is stored

Data is stored with Supabase, which hosts our database, authentication and file storage. The app is hosted on Vercel, which also runs the small server functions that deliver push notifications and delete accounts. Both are third-party processors who act on our instructions and may store data on servers outside India.

The app loads fonts from Google Fonts, which means Google receives your IP address when the page loads. If you sign in with Google, Google knows you use Tribe.

Push notifications, if you enable them, are delivered through your browser vendor's push service (Google, Apple or Mozilla).

Access to the database is restricted by row-level security rules, so users can only read and write the records they are entitled to, and every administrative action is checked in the database rather than in the app.

How long we keep it

We keep your data for as long as your account exists. Posts stay until you delete them or your account. Messages stay for as long as both accounts in the conversation exist — when either person deletes their account, the conversation is deleted for both.

Usage records are kept for up to 180 days.

Reports about an account are kept for one year after they are resolved, including after that account is deleted, so we can recognise repeat abuse. After deletion the report no longer links to any person we can identify.

Records of administrative actions (removing a post, suspending an account, resolving a report) are kept for two years.

Our providers keep server logs and, where enabled, database backups for their own short retention periods.

Deleting your account

You can delete your account at any time from Profile → Settings → Delete account. It removes your profile, DNA answers, messages, posts, photos, resume, check-ins and everything else tied to your account — files first, then records, then the login itself — in one step, and it cannot be undone.

Messages you sent are deleted from the other person's conversation too. Groups you created are deleted for their members. Notifications other people received about your activity keep the wording they had but no longer link to you.

If you would rather we did it, or you can no longer sign in, email jainaagam1237890@gmail.com from the address you signed up with, or use the deletion page at jointribe.online/delete-account.html. We will delete the account within 30 days and confirm by email.

Your rights

You can see and correct most of your data directly in the app, through your profile, the DNA screens and Settings.

You can ask us for a copy of your data, to correct it, or to delete it, by emailing jainaagam1237890@gmail.com. We will respond within 30 days.

You can withdraw consent for optional things at any time — turn off notifications, set DNA answers to private, unpublish a Wavelength, revoke a share link, remove a resume, or clear any field on your profile. You can turn off usage recording in Settings → Privacy.

If you are unhappy with how we have handled your data, you may complain to the Data Protection Board of India once it is accepting complaints, or to any other authority with jurisdiction.

Age

Tribe is for people aged 18 and over. By creating an account you confirm that you are 18 or older. We do not knowingly collect data from anyone younger; if you believe someone under 18 has an account, email us and we will remove it.

Security

Connections use HTTPS. Passwords are hashed by our authentication provider — we never see them. Database access is restricted per user by row-level security, and administrative functions are checked in the database.

No service can promise perfect security. If a breach affects your data, we will tell you and any authority we are required to notify. Security concerns can be sent to jainaagam1237890@gmail.com with "Security" in the subject.

Changes

If this policy changes in a way that materially affects you, we will say so in the app. The date at the top always reflects the current version, and the version you agreed to is recorded with your account.

Contact

jainaagam1237890@gmail.com · Delete your account: jointribe.online/delete-account.html