Niraiya's Privacy Policy

Your privacy is our foundation. Learn how we protect your data while helping you recover Excel passwords securely.

Last updated: October 31, 2025

Our Commitment to Privacy

At Niraiya, we've built our Excel password recovery service around one core principle: your files and data should never leave your control. As someone who's spent years in cybersecurity and data protection, we understand the real risks of uploading sensitive files to third-party services. That's why we designed our system to process everything locally in your browser first.

This privacy policy explains exactly what happens to your data during the Excel password recovery process, backed by real-world examples and technical details. We don't just claim to be privacy-focused—we've architected our entire service around protecting your information.

What Data We Collect

When you use Niraiya to remove a password from an Excel file, we collect minimal information necessary to perform the recovery:

  • Password Hash: A mathematical fingerprint of your Excel file's password encryption. This hash contains no readable information about your actual file content, formulas, or data.
  • File Metadata: Basic information like file size, Excel version, and encryption type—nothing about your spreadsheet's contents.
  • Technical Logs: Anonymous performance data to improve our AI algorithms (no personal identifiers).
Example: If you have a financial spreadsheet with sensitive client data, we never see that data. We only work with the encrypted password information—think of it as analyzing the lock mechanism without ever opening the safe.

How We Process Your Data

Our privacy-first approach uses browser-based processing powered by WebAssembly technology. Here's the step-by-step breakdown:

Step 1: Local Processing

Your Excel file is analyzed entirely in your browser. We extract only the cryptographic hash of the password—essentially a digital fingerprint that tells us nothing about your file's contents.

Step 2: Secure Transmission

The hash is sent to our servers over 256-bit SSL encryption. Our AI systems analyze password patterns and attempt recovery using advanced algorithms.

Step 3: Digital AI Cloud Analysis

Machine learning algorithms work on the hash to identify likely password patterns. This happens in isolated, secure environments with no access to your original file.

Step 4: Auto-Delete

Once recovery is complete (or attempted), all data is automatically deleted within 24 hours. No permanent storage, no backups, no logs of your files.

Data Security Measures

Security isn't just a checkbox for us—it's how we prevent data breaches before they happen. Drawing from enterprise security practices, we've implemented multiple layers of protection:

  • End-to-End Encryption: All data transmission uses TLS 1.3 with 256-bit encryption keys.
  • Zero-Knowledge Architecture: Our servers never see your actual Excel file content.
  • Automated Data Deletion: All temporary data is wiped within hours using secure deletion protocols.
  • Regular Security Audits: Independent third-party audits ensure our systems remain secure.
  • Minimal Data Retention: We store nothing beyond what's needed for active recovery sessions.
Real-World Impact: Unlike traditional password recovery services that require full file uploads, our approach means even if our servers were compromised, attackers would find nothing useful—just mathematical hashes with no connection to your actual data.

Your Rights and Controls

You maintain complete control over your data throughout the process. Since processing happens locally first, you can stop at any time without any data being transmitted.

What You Control:

  • File access and processing initiation
  • Data transmission decisions
  • Recovery attempt cancellation
  • Complete local processing visibility

Your Rights:

  • Right to know what data we process
  • Right to stop processing at any time
  • Right to data deletion confirmation
  • Right to contact us about privacy concerns

International Data Transfers

Our servers are located in secure data centers within the USA and European Union, compliant with GDPR requirements. For users outside the EU, we ensure all data transfers meet local privacy regulations through standard contractual clauses and adequate protection measures.

Since most processing happens in your browser, international transfers are minimal and only involve the password hash data necessary for AI analysis.

Cookies and Tracking

We use minimal cookies for essential functionality:

  • Session Cookies: Temporary cookies to maintain your browser session during file processing.
  • Analytics: Anonymous usage statistics to improve our service (no personal data).
  • Security: Cookies to prevent abuse and ensure secure connections.

You can disable cookies in your browser settings, though this may limit some functionality.

Legal Basis and Compliance

Our data processing is based on:

  • Contract Performance: Processing necessary to provide the Excel password recovery service you requested.
  • Legitimate Interest: Improving our AI algorithms through anonymous performance data.
  • Legal Compliance: Adherence to GDPR, CCPA, and other privacy regulations.

We conduct regular privacy impact assessments and maintain detailed records of our processing activities.

Contact Us About Privacy

Questions about this privacy policy or our data practices? We're here to help. As the founder of Niraiya, I personally review all privacy-related inquiries.

Privacy Team

Email: [email protected]

Response Time: Within 24 hours

Privacy FAQ

Yes, most traditional services require you to upload your complete Excel file to their servers. This means your sensitive data—financial records, client information, personal data—is stored on their systems, potentially accessible to employees or vulnerable to breaches. Our browser-first approach ensures your actual file content never leaves your device.

If you stop the process before the hash is sent to our servers, nothing has been transmitted. If the hash has already been sent for AI processing, it will be automatically discarded from our systems. You maintain full control throughout.

Our AI systems work exclusively with password hashes and pattern recognition algorithms. The machine learning models improve by analyzing successful password recovery patterns, not by memorizing specific file contents or user data. Each recovery session is isolated and doesn't influence future processing of other files.

Our privacy-first architecture was specifically designed for these scenarios. Since processing happens locally in your browser first, you can verify that only the password hash (not your sensitive content) is being transmitted. This approach is compliant with HIPAA, GDPR, and other regulations requiring data minimization. Many law firms and healthcare organizations use Niraiya for this reason.

Ready to See Your Excel Password Securely?

Experience the peace of mind that comes with privacy-first password recovery. Your files stay yours—always.

Start Secure Recovery

No file uploads • Browser-based processing • Pay only for success