Lipi
Sign in

Privacy Policy

Last updated: 7 September 2026

Lipi collects the minimum data needed to run a learning platform, and treats children’s learning data with particular care.

What we collect

How learning data is used

On-site analytics

We measure how the site is used with our own code, on our own servers. Nothing in this section is shared with an advertising network, and none of it is used to rank, compare or diagnose a child.

What is recorded

What is not recorded

How it is used

Retention

Google Analytics

Your choices

Cookies and browser storage

These are all first-party: set by lipi.study, readable only by lipi.study. We set no third-party advertising or cross-site tracking cookies. The sign-in cookie, the invite code (lipi_invite) and the analytics visitor id (lipi_v) are marked so page scripts cannot read them; the session id (lipi_sid), partner code (lipi_ref) and pricing region (lipi_region) are readable by our own page scripts by design, and each row below says so.

NamePurposeLifetime
authjs.session-tokenKeeps you signed in. Marked so page scripts cannot read it.Until you sign out, or the session expires
lipi_active_profileRemembers which learner profile in your household is active.90 days
lipi_regionRemembers whether you see Indian (INR) or international pricing. Readable by page scripts so the price switch works without a reload.180 days
lipi_vA random analytics visitor id, so we can tell new visitors from returning ones. It is not built from your address or device, is not readable by page scripts, and is never sent to Google. Not set at all when your browser sends the Global Privacy Control signal.180 days
lipi_sid and the browser storage key lipi_sessionA random session id that groups the pages you open in one visit. The session renews after 30 minutes of inactivity or at the start of a new day (Indian time). Readable by page scripts by design: the page mints it and the server reads the copy.1 day (session id in storage renews itself)
lipi_utmCampaign parameters (utm_source, utm_medium, utm_campaign, utm_content) and the page you arrived on, taken from the link you clicked to reach Lipi.30 days
lipi_campaignThe campaign code from a Lipi short link (lipi.study/go/...), so we can see which campaign a sign-up or purchase came from.30 days
lipi_refThe partner code from a partner referral link, so the partner who recommended Lipi can be credited. Readable by page scripts by design, so the sign-in page can claim the referral.90 days
lipi_inviteThe invite code from a friend's invite link (lipi.study/join/...), so the friend who invited you is credited when you create an account. Marked so page scripts cannot read it, and removed once you create an account or sign in.until you create an account or sign in, at most 30 days
lipi_site_accessOnly during a private preview: remembers that you entered the preview access code.While the preview gate is switched on

Earlier versions of the site used a per-tab identifier that died with the tab; it has been replaced by the session id above so that visits across several tabs count once.

Retention and deletion

A parent can export, delete or pause future child-profile AI activity directly in the Parent hub. You can request deletion of your account and all associated profiles and learning data by writing to care@lipi.study from your account email. We delete within 30 days, except records we must keep for tax and payment compliance.

Analytics events linked to an account lose that link when the account is deleted. Raw analytics events are deleted after 13 months regardless, visitor ids after 180 days, and aggregate figures without identifiers may be kept.

Security

Passwords are stored hashed, transport is encrypted (HTTPS), and paid media is served through signed, expiring links. Report a vulnerability to the same address — we read it.

Changes

If this policy changes materially we will note it on this page with a new date.