Your Data, Your Control | Updated: May 2024
Most login systems today want to know everything about you—your email, your phone number, and even who your friends are. ShyFormation was built to stop this. Our goal is to provide a "Shy" identity. This means you can prove who you are to a website without giving them your personal contact details. Your data belongs to you, and we are just the vault where you keep it safe.
We only ask for the information that is absolutely necessary to create a professional identity. We don't track your location, we don't read your messages, and we don't follow you around the internet.
WE NEVER SHARE YOUR SENSITIVE DATA WITH APPS DURING LOGIN
When you use ShyFormation to log into another app (like Spotify or Zomato), we use a secure process called a "Handshake." Here is what happens:
The app asks, "Is this a real human?" We check our database and reply, "Yes, this is a verified human with SSUID: A12-3456." That’s it. We do not give them your age, your business size, or your phone number. The app only gets your SSUID and your Name so they can welcome you.
All your details are stored in our private, encrypted database hosted on secure servers (Neon and Render). We use high-level digital locks (AES-256 and TLS encryption) to make sure no one can break in. Only a few top engineers have access to the system, and every single access is recorded and monitored.
Unlike other big tech companies, we don't think of your data as our property. You have full control:
Our business is not based on showing you ads or selling your habits to researchers. We do not share your info with marketing companies, data brokers, or advertisers. Your data stays in our private DB, and that is a promise. We make money by providing secure infrastructure to developers, not by selling our users.
We use very simple technical cookies (LocalStorage) just to keep you logged in. These are not used to track what you buy or what you search for. Once you logout, these tokens are cleared. We don't use third-party tracking scripts that could leak your IP address to other companies.
Even though we use the best security, we have a plan ready for emergencies. If we ever detect an unauthorized attempt to access our servers, we will notify all users within 24 hours. Because we don't store your actual PINs, your main identity remains safe even in the worst-case scenario.
Every developer who uses our SDK agrees to respect your privacy. They are only allowed to ask for your SSUID. If any app tries to trick you into giving more data, we block that app from our network immediately.
If you feel your privacy has been violated or you have a question about your data, please talk to us. We don't use robots for support. Send an email to shykageofficial@gmail.com, and a real person from our Delhi office will help you out.