Home › Privacy Policy
Privacy Policy
Last updated: April 2026
By accessing or using CardGenie, you acknowledge that you have read and understood this Privacy Policy.
1. What data we collect
CardGenie collects minimal data necessary to provide its service:
- Chat messages: When you use GenieAI, your messages are sent to our AI providers to generate responses. We do not store chat messages on our servers. Messages are processed in real time and may be temporarily handled by our AI service providers in accordance with their own privacy policies.
- IP address: Our hosting provider processes your IP address as part of routing network traffic. We do not log or store IP addresses ourselves.
- Browser data: Our Progressive Web App (PWA) service worker caches static assets on your device for performance. No personal data is stored in the service worker cache.
- Spend inputs: Any spending amounts you enter into our calculator or recommender tool are processed entirely in your browser and are never transmitted to our servers.
2. How we use your data
- To provide AI-powered credit card recommendations via GenieAI.
- To improve card data accuracy and recommendation quality.
- We do not sell, rent, or share your personal data with third parties for marketing purposes.
- We do not run behavioural advertising or build user profiles.
3. Cookies
CardGenie uses only one cookie:
- admin_session — An httpOnly, secure session cookie used exclusively for admin panel authentication. This cookie is only set when an authorised administrator logs in. It expires after 8 hours.
We do not use tracking cookies, analytics cookies, or advertising cookies of any kind.
4. Third-party services
CardGenie uses third-party service providers to operate its platform, including AI providers, hosting infrastructure, cloud databases, and affiliate networks. These providers may process data in accordance with their respective privacy policies.
- AI Service Providers — We use third-party AI providers to power GenieAI chat. Messages you send are processed by these providers in real time per their privacy policies.
- Cloud Database Provider — Card data, waitlist emails and other structured data are stored with a third-party cloud database provider.
- Hosting Provider — This site is hosted on a third-party edge hosting platform. Your IP and request data are processed per their infrastructure privacy policy.
- Affiliate Networks — When you click Apply Now links, you may be redirected through affiliate tracking networks. These networks have their own privacy policies.
5. Affiliate links disclosure
Some "Apply Now" buttons on CardGenie are affiliate links. When you click these links and apply for a credit card, we may earn a commission from the respective bank or financial institution at no extra cost to you.
Affiliate relationships do not influence our GenieScore ratings, card rankings, or editorial opinions. Cards are rated purely on their features, fees, and rewards using our 10-factor algorithm.
6. Data retention
Chat messages: Not stored. Processed in real time and discarded.
Card database: Stored with our cloud database provider. This is product data, not personal data.
Waitlist emails: If you join our community waitlist, your email is stored until you request deletion.
Admin sessions: Session cookies expire after 8 hours and are not persisted in our database.
7. Your rights under DPDPA 2023
Under the Digital Personal Data Protection Act 2023 (India), you have the following rights:
- Right to Access: Request information about what personal data we hold about you.
- Right to Correction: Request correction of inaccurate personal data.
- Right to Erasure: Request deletion of your personal data.
- Right to Grievance Redressal: File a complaint about how your data is handled.
To exercise any of these rights, contact our Grievance Officer below.
8. Grievance Officer
For any privacy-related concerns or DPDPA 2023 requests, contact our Grievance Officer:
Email: grievance@cardgenie.in
We will respond within 30 days of receiving your request.
9. Changes to this policy
We may update this Privacy Policy from time to time. The "Last updated" date at the top of this page reflects the most recent revision. We recommend reviewing this page periodically.