Legal

Privacy Policy.

How Loopn collects, uses, stores, and protects your information. We keep this honest and straightforward.

Effective: June 2026
Last updated: July 2026
Applies to: Loopn Android App
01

Introduction

Loopn is a verified campus social networking application built exclusively for IT-stream college students and faculty in India. It is developed and operated by Vantcrest Labs Private Limited.

This Privacy Policy explains what information we collect when you use Loopn, why we collect it, how it is stored and protected, and what rights you have over your data. By using Loopn, you agree to the practices described in this policy.

If you do not agree with any part of this policy, please discontinue use of the application.

02

Who We Are

Data Controller
Vantcrest Labs Private Limited
Product Website
03

Who Can Use Loopn

Loopn is currently available to:

  • Students and faculty of SJCET Palai
  • Users who sign in using a verified institutional Google account issued by the college

Access is restricted at the authentication level. Non-institutional email addresses are silently blocked. We do not collect or store any data from users whose login attempt is rejected.

04

Information We Collect

4.1 Information You Provide Directly

When you create and use your Loopn account, you provide:

  • Full name — first name, middle name, last name
  • Profile photograph
  • Department, academic year, and semester (students only)
  • Designation (faculty only)
  • Bio and tagline (optional)
  • Portfolio or website link (optional)
  • Skills selected from a predefined list
  • Projects — title, description, technology tags, and images
  • Social and professional links (optional)
  • Availability status — Open to Collaborate or Open to Opportunities
  • Posts, comments, replies, and reactions you create
  • Direct messages and message requests you send
  • Den room messages — temporary, see Section 7
  • Reports you submit about content

4.2 Information Collected Automatically

When you use the app, the following is collected automatically:

  • Google OAuth access token and refresh token — used for authentication, managed by Supabase
  • Supabase-assigned user ID
  • Session data stored on your device via AsyncStorage
  • Profile view logs — when you view another user's profile, a record is created in our database
  • App version and basic device metadata sent to Expo's servers on launch to check for over-the-air updates

4.3 Files and Media You Upload

The following types of files may be uploaded and stored:

  • Profile photo — JPG or PNG
  • Post images — up to 5 per post, JPG or PNG
  • Post documents and PDFs
  • Images shared in direct messages
  • Den room background images
  • DM conversation background images

All uploaded files are stored in Supabase Storage in the Singapore region. Images are compressed to 80% quality before upload.

05

How We Use Your Information

We use the information we collect solely to operate Loopn:

  • To verify your institutional identity at login
  • To create and display your public profile within your campus network
  • To power skill-based search and people discovery
  • To enable posts, comments, reactions, and the campus feed
  • To facilitate connection requests and direct messaging between verified users
  • To operate Den rooms — live ephemeral campus rooms
  • To deliver in-app notifications for activity relevant to you
  • To display profile view counts to profile owners
  • To deliver over-the-air app updates via Expo
  • To enforce community safety through the reporting system

We do not use your data for advertising. We do not sell, rent, or trade your data to any third party. We do not build behavioural profiles or use your data for any purpose outside of operating the Loopn platform.

06

Data Storage and Security

All application data is stored on Supabase, hosted on AWS infrastructure in the Singapore region (ap-southeast-1). Your data is stored on servers physically located in Singapore. Under India's Digital Personal Data Protection Act, 2023, this cross-border storage is permitted since Singapore is not a restricted jurisdiction.

Security measures in place include:

  • Row-Level Security on every database table — users can only access data they are permitted to see
  • Google OAuth 2.0 for authentication — we never store your Google password
  • HTTPS enforced on all data in transit
  • Supabase Storage access controls on all uploaded files
  • Internal access is limited to a single administrator account used solely for content moderation and safety enforcement — this account is not visible anywhere in the app

While we implement industry-standard security practices appropriate for a campus-scale application, no system is completely immune to security risks. We encourage you to log out of shared devices.

07

Den Rooms — Ephemeral Messaging

Den is Loopn's live campus room feature. Den rooms are ephemeral by design.

When a room host ends a Den room, the following data is permanently and physically deleted from our database:

  • All messages sent in that room
  • All room member records
  • The room itself

This is a hard delete. No archive is kept. No backup of room messages is retained after a room ends. Den room messages should be treated as temporary by nature.

Individual users may also delete their own messages within an active room. Deleted messages are removed immediately.

08

Direct Messages

Direct messages on Loopn are only possible between mutually connected users. Before a direct message thread opens, both users must have accepted a connection request.

All direct messages are stored in our database and are not end-to-end encrypted. Messages are stored until either party deletes them or their account is deleted. Media shared in DMs is stored in Supabase Storage.

We do not read your private messages for advertising or profiling purposes. Messages may be reviewed only in response to a valid legal obligation or a serious safety concern.

09

In-App Notifications

Loopn delivers notifications entirely within the app. Notification data — such as connection requests, accepted connections, new message requests, profile views, post reactions, comments, and replies — is stored in our database and displayed to you when you open the app.

We do not currently use device-level push notifications. No device push token is registered or transmitted to any external notification service.

10

Device Permissions

Loopn requests the following device permissions:

  • Camera — used for capturing profile photos and post images
  • Photo Library and Storage — used for selecting images and documents to upload
  • Notifications — used to display in-app notification alerts

We do not request or access your location, microphone, contacts, calendar, or any other device data not listed above. All permissions are used solely for the purposes described.

11

Third-Party Services

Loopn uses the following third-party services:

Supabase — Singapore (ap-southeast-1)
Our database, authentication, file storage, and realtime infrastructure. All application data is stored here. Supabase Privacy Policy ↗
Google OAuth 2.0
Used exclusively for sign-in. We receive your institutional email address and name from Google at login. No other Google services are used. Google Privacy Policy ↗
Expo (by Expo Software Inc.)
Provides our app build infrastructure and over-the-air update delivery. On every app launch, Expo checks for updates by sending your app version and basic device metadata to Expo's servers. Expo Privacy Policy ↗

We do not use any advertising networks, analytics platforms, crash reporting tools, attribution SDKs, or any other third-party data services beyond those listed above.

12

Data Retention

We retain your data for as long as your account is active on Loopn:

  • Profile data, posts, and connections — retained until you delete your account
  • Direct messages — retained until deleted by you or upon account deletion
  • Den room messages — permanently deleted when the room ends, no retention
  • Profile view logs — retained while your account is active
  • Uploaded media — retained in Supabase Storage until you delete the associated content or your account

When you delete your account, we will delete your personal data from our active systems. Some data may persist in Supabase infrastructure backups for a short period before being overwritten.

13

Your Rights

You have the following rights regarding your data:

  • Access — view all profile data you have provided directly within the app
  • Correction — edit your profile, skills, projects, and links at any time in-app
  • Deletion — delete your posts, comments, and messages within the app; account deletion can be requested by contacting us
  • Withdrawal of consent — stop using the app and request full account deletion at any time
  • Nomination — nominate another person to exercise these rights on your behalf in the event of your death or incapacity
  • Grievance redressal — file a grievance if you believe your data has been mishandled
To exercise any data right
support@vantcrest.com — we respond within 30 days
14

Children's Privacy

Loopn is designed for college students and faculty. We do not knowingly collect data from anyone under the age of 18. Access requires an active institutional college email account, which inherently limits use to enrolled students and faculty.

If you believe a minor has accessed Loopn without proper institutional credentials, please contact us at support@vantcrest.com.

15

Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will update the effective date at the top of this page. For significant changes, we will notify users through an in-app notification.

Continued use of Loopn after a policy update constitutes acceptance of the revised policy.

This policy is governed by the laws of India, including the Digital Personal Data Protection Act, 2023, and the Information Technology Act, 2000.

16

Contact Us

For any questions, concerns, or data requests regarding this Privacy Policy:

Website
Company
Vantcrest Labs Private Limited
Grievance Officer
Nirmal Josekutty — support@vantcrest.com