Account privacy
The crop matcher preview works without an account. Full GrowPilot tools require a verified account with active 31-day, one-year or lifetime access.
Data stored
- Email address, verification status and optional updates preference.
- A uniquely salted scrypt password hash. Plaintext passwords are never stored.
- Hashed session, verification and reset tokens.
- Payment details: for Razorpay, order/payment references, selected plan, amount, billing state or union territory, capture status, GST treatment, invoice number and timestamps; for manual UPI, the UTR and matching review status. GrowPilot never receives or stores a full card number, CVV, bank password or UPI PIN.
- A versioned cloud snapshot containing garden records, dates, notes, harvest amounts, setup preferences, controller address, simulator state and My Library entries (video links, titles and your notes).
Public visitor counters
GrowPilot creates random browser and tab identifiers to show approximate unique visitors and sessions active within two minutes. The server stores only SHA-256 hashes of those random identifiers. It does not store an IP address, user agent or page history for these counters. Visitor hashes are retained to keep the lifetime total stable; inactive session hashes are deleted after seven days. Clearing browser storage creates a new visitor identifier.
My Library and YouTube
When a video entry in My Library is shown, its thumbnail loads from YouTube's image host (i.ytimg.com), so Google receives your IP address and device data. Tapping a video opens YouTube itself under Google's terms and privacy policy. GrowPilot stores only the link, the title and your note — never the video.
How it is used
- Authentication, recovery, restoring your garden and synchronizing changes.
- Verifying a captured Razorpay payment or matching a fallback UPI claim, issuing an invoice and deciding whether 31-day, one-year or lifetime access is active.
- Verification and password-reset email.
- Occasional GrowPilot updates only when you explicitly opt in. Your email is not sold.
Payment processor
Razorpay Software Private Limited processes secure Checkout under its own privacy and security terms. GrowPilot sends the exact amount, currency, internal receipt, selected plan metadata and account email for Checkout. Razorpay returns order/payment references and capture status; payment credentials remain with Razorpay, your bank and the payment network.
Your controls
- Download your account, payment claims and cloud snapshot from the Account dialog.
- Turn optional updates on or off.
- Delete the account, payment claims and cloud data after password confirmation.
- Use the public crop matcher preview without signing in.
Retention and contact
Deleting an account removes active account, payment-claim and cloud data immediately. A deleted record may remain in restricted disaster-recovery backups for up to 14 days, then expires automatically. Backups are used only for service recovery. Expired sessions and one-time tokens are removed automatically.
Questions: support@abdulsfresh.in
GrowPilot is a service of ABSU Mobilities (proprietor: Sumaiya Fatima), Hyderabad, Telangana, India. Last updated: 9 August 2026.