Orbit

Professional networking · Invite‑only

Privacy Policy

What we know about you, and what we do with it.

Orbit is a professional network built on the idea that a connection should follow a conversation. That means we hold what you write, who you talk to, and what you say you’re working on. This page is a plain account of all of it — including the parts that are public and the parts that go to an AI model.

Last updated 8 August 2026


Who we are

Orbit is built and operated by Rajdeep Sharma, an individual based in India. In the language of India’s Digital Personal Data Protection Act, 2023, that makes them the Data Fiduciary for your personal data — the person who decides what is collected and why, and who is answerable for it. “We” and “us” below mean them.

Orbit is a small, early-stage product rather than an established company. We intend to incorporate, and when we do, the responsibility for your data will pass to that company — we’ll tell you before it happens. Nothing else in this policy changes.

Sector 57, Gurugram, Haryana 122003, India

This policy covers the Orbit mobile app, the website at networkwithorbit.com, the public card pages, and the Orbit physical card. Questions about any of it go to privacy@networkwithorbit.com.

Using Orbit requires accepting our Terms of Service, of which this policy forms part.

What we collect

What you give us

Your account. Your name, email address, the role you describe yourself by, and your city. City is a line of text you type — Orbit has no access to your device’s location, ever. There is no password, because you sign in through Apple or LinkedIn.

Photos. A profile photo, and any image you attach to a message. Both come from your photo library; Orbit does not use your camera. We do not read your photo library — you pick a specific image and that image is uploaded.

What you write. Your posts and replies, your direct messages, your conversations with Coach, and the opening message you send with a reach-out.

Meetups. Whether you’re going, the title and location of a meetup you arrange, and afterwards, whether you found it useful.

Your preferences. How many reach-outs a week you’ll accept, whether you’re snoozed, whether you only want people in your network, the topics you welcome, and who you’ve blocked.

Reports. If you report someone, we keep what you told us and who you reported.

Why you left. If you deactivate or delete your account we ask why, and keep the reason you pick and anything you type in the box.

What your sign-in provider tells us

Signing in with Apple gives us the identifier Apple assigns you, plus the name and email address you agree to share — if you use Apple’s Hide My Email, we only ever see the relay address. Signing in with LinkedIn gives us your name and email address. We ask LinkedIn for nothing else: not your connections, not your work history, not your posts.

What we work out about you

Your intent statement. Orbit reads your recent posts and writes a short summary of what you’re working on. You can edit it. We keep every version, not just the current one.

Mathematical representations. Your intent statement and posts are converted into numeric vectors so Coach can find people working on related things.

Activity signals. A running record of things you do that Orbit counts — posting, replying, showing up to a meetup — and a weekly summary derived from it. When you were last online. Which of your conversations you’ve caught up on. Achievements you’ve earned.

What we collect automatically

A push notification token and a device name, so we can reach your phone. Crash reports and performance data when something breaks. The names of the screens you visit inside the app. Standard server logs.

What we don't collect, and what stays private

Some of this is worth stating plainly, because a lot of apps in this category do the opposite:

  • We never touch your contacts.Orbit has no address-book access and no contact-matching feature. The code to do it isn’t in the app.
  • We never know where you are. No GPS, no location permission, no location inferred from your IP for any product feature.
  • No read receipts.We track which conversations you’ve read so we can show you an unread badge. We never tell the other person.
  • Typing indicators aren’t stored.They exist only for the moment they’re on screen.
  • Your ratings of other people stay with us. When you say whether a meetup was useful, that answer is never shown to the other person, in any form, ever.
  • Your activity score is yours alone.Nobody can see anyone else’s. There is no public leaderboard of it.
  • We don’t sell your data, and we don’t run advertising. There are no ad or data-broker SDKs in Orbit.

What is public

Read this one properly

If you have an Orbit card, it has a web page. Anyone holding the link can open that page without signing in, and it shows your first name, your role, your photo and your current intent statement.

That page is also built to preview nicely, so when the link is shared in WhatsApp, Slack, iMessage or on social media, those same details are sent to whoever runs that service so they can draw the preview.

That is the point of the card — you hand it to someone and they land on a page about you. But it is genuinely public, so treat your intent statement as something you’re comfortable with strangers reading. Your email address is not on that page, and neither is anything else from your account.

A control to hide your intent from the public card page is planned but is not built yet. Until it ships, the way to take the page down is to ask us at privacy@networkwithorbit.com.

Separately: image links are not secret. Once someone has the URL of your profile photo, that URL keeps working for them.

What other members see

People you’re connected to see your name, role, city, photo and intent, and your posts. Replies to a post are visible to everyone who can see that post — which may include people you don’t know, since that’s how discovery works on Orbit. Direct messages are visible only to the two of you.

AI, and exactly what it sees

Coach is the centre of Orbit, and it runs on Google’s Gemini models. We think you should know precisely what leaves Orbit for that, so here is every case:

  • Writing your intent statement— the text of your recent posts and replies.
  • Finding matches— your intent statement, and anything you type into Coach’s search, converted into vectors.
  • Talking to Coach— the whole conversation so far.
  • Explaining a match— your intent statement, the other person’s intent statement, and their first name.
  • Drafting an opener— your intent statement, the post you’re replying to, and first names.

Your direct messages never go to an AI model

Not for features, not for training, not for suggestions. Coach cannot read your conversations with other people.

We use Langfuse to record these AI requests so we can find out why a bad answer happened. That recording includes the text above. Content moderation, by contrast, runs on our own servers using models we host ourselves — your posts and images are not sent to an outside moderation service.

We do not use your content to train AI models, and we do not permit our providers to train their models on it.

Anything Coach writes is labelled as Coach inside the app. It is never presented as though another person wrote it. Bear in mind that when someone reaches out to you, the opening message may have been drafted by their Coach and edited by them.

Why we're allowed to do this

Under the DPDP Act we process your data on the basis of the consent you give when you create an account and accept these documents, and for the legitimate uses the Act permits — chiefly, doing the thing you asked us to do. Concretely, we use your data to run your account, show you to people you want to meet, run Coach, deliver notifications you’ve turned on, keep the place safe, fix bugs, bill you if you subscribe, and meet our legal obligations.

If you are in the EEA or UK, the equivalent bases are performance of a contract (running the service), legitimate interests (security, abuse prevention, product improvement), consent (notifications, optional features), and legal obligation.

We do not make decisions about you by automated means alone that carry legal consequences for you.

Who else touches your data

We keep this list short on purpose, and we keep it accurate. Everyone here is bound to use your data only to provide their service to us.

WhoWhat forWhat they receiveWhere
Google (Gemini)Powers Coach, intent statements, match reasons and searchPost and reply text, intent statements, Coach conversations, first namesUnited States
LangfuseRecords AI requests so we can debug and improve qualityThe full text sent to and returned by the AI modelEuropean Union
PostHogProduct analytics — which features get usedA numeric account ID, screen names, event names, no message contentEuropean Union
SentryCrash and error reporting, including session replayCrash traces, device and OS details, replays of app screensUnited States
ExpoDelivers push notifications and over-the-air app updatesPush token, device name, notification content, app versionUnited States
Apple / GoogleDeliver the push notification to your devicePush token and notification contentGlobal
Cloudflare (R2)Stores the images you uploadProfile photos and images sent in messagesGlobal
UpsunHosts the application, database and background jobsEverything in your account, as the underlying infrastructureEuropean Union
Apple / LinkedInSign-inThey tell us your name and email; we tell them nothing about youUnited States
Apple WalletIssues the pass for your Orbit cardYour name, role and card link, on the pass itselfOn your device
RazorPayProcesses Pro subscription payments — once Pro launchesPayment details, which go to them and never to usIndia

We also share data when the law requires it — a valid order from a court or authority — and when it’s needed to protect someone from harm. If Orbit is incorporated as a company, acquired, or merged, your data transfers with the business; we’ll tell you before that happens, and before any different privacy policy starts applying to it.

Analytics, crash reports and session replay

In the app, we use PostHog to see which features get used, with its automatic capture of taps and screen contents turned off. What it receives is a numeric account ID, the name of the screen you’re on, and named events like “post created” — not your name, your email, or anything you’ve written. One exception: if you type a reason when leaving Orbit, that text is included.

Session replay

We use Sentry to find crashes, and it is currently configured to record a replay of the app screens for a random one in ten sessions, and for every session where the app crashes. Sentry’s replay masks text and images by default, but a replay is still a recording of your session.

If you would rather not be recorded, email privacy@networkwithorbit.com and we will exclude your account. We are working on making this a switch in the app rather than an email.

On the website, there is no analytics at all. No tracking scripts, no advertising pixels, and no cookies. The only thing stored in your browser is which theme you picked, light or dark.

How long we keep it, and what deletion means

We keep your data for as long as your account exists. There are two ways to stop, and they do different things.

Deactivating

Your account is hidden from everyone and you stop appearing anywhere. Nothing is erased, and it is reversible — signing in again brings your account straight back, without asking you to confirm.

Deleting

Deleting is permanent and cannot be undone. We immediately remove your name and email address, and your account stops being usable. We want to be straight with you about the current limits of what happens next:

What deletion does today

Right now, deletion anonymises your identity but the content stays in our database — your posts, replies, messages, Coach conversations and images remain, attributed to a deleted user.

We are changing this. Our commitment is that, from a deletion request, we will erase your content and the rest of your personal data within 30 days. If you want your content gone now rather than waiting for that work to ship, email privacy@networkwithorbit.com and we will do it by hand.

Some things outlive your account whatever happens, and we think that’s right: reports filed about you, and the record that an account was deleted, because otherwise blocking and safety enforcement would reset every time someone made a new account. We also keep what the law requires us to keep for as long as it requires it, and backups take up to 30 days to cycle out.

Separately, content that automatic moderation flags is held for 7 days and then permanently deleted.

Your rights

Wherever you live, you can ask us to do these things and we will, within 30 days. Write to privacy@networkwithorbit.com.

  • Get a copy of the personal data we hold about you.
  • Correct anything that’s wrong or out of date.
  • Delete your account and your data.
  • Object to how we’re using it, or ask us to restrict it.
  • Withdraw a consent you gave us.
  • Complain, and have the complaint dealt with.

Most of this you can also do yourself: edit your profile in the app, change your notification settings, block someone, or delete your account from the Account screen. A self-serve export isn’t built yet — ask us and we’ll assemble it.

India

You have the rights above under the DPDP Act, plus the right to nominate someone to exercise them on your behalf if you die or become incapacitated — tell us who by email. If we don’t resolve your complaint, you may take it to the Data Protection Board of India. Please come to our Grievance Officer first; the Act expects that.

EEA and UK

You have the GDPR rights of access, rectification, erasure, restriction, portability and objection, and the right to complain to your national supervisory authority.

California

You may ask what we collect and why, request deletion or correction, and you cannot be treated worse for asking. We do not sell your personal information and we do not share it for cross-context behavioural advertising — there is nothing to opt out of.

Where your data goes

Orbit is run from India, and the companies in the table above are spread across the European Union, the United States and India. Using Orbit means your data crosses borders. Where the law requires a safeguard for that — Standard Contractual Clauses for data leaving the EEA or UK, for example — we put one in place, and we only use providers who commit to protecting the data to a comparable standard.

Keeping it safe

Everything travels over encrypted connections and is encrypted at rest. Access to production data is limited to the people who need it. Content moderation runs on our own infrastructure rather than being handed to a third party. You sign in through Apple or LinkedIn, so there is no Orbit password to steal.

We won’t pretend that’s a guarantee — no service can promise perfect security. If a breach affects your personal data we will notify you and the relevant authority, including the Data Protection Board of India, as the law requires. If you spot something that looks wrong, please tell us at privacy@networkwithorbit.com.

Adults only

Orbit is for people aged 18 and over, and we don’t knowingly collect anything from anyone younger. If we find out an account belongs to someone under 18 we’ll close it and delete the data. If you believe a child has an account, tell us at privacy@networkwithorbit.com.

If this policy changes

Orbit is early and changing quickly, so this page will change too. The date at the top always reflects the current version. If a change materially affects how we handle your data, we’ll tell you by email and in the app before it takes effect, and where consent is needed, we’ll ask again rather than assume.

Getting in touch

Privacy and your data privacy@networkwithorbit.com
Anything elsesupport@networkwithorbit.com

Grievance Officer

Rajdeep Sharma
grievance@networkwithorbit.com

Rajdeep Sharma
Sector 57, Gurugram, Haryana 122003, India

We answer privacy requests within 30 days, and usually a good deal sooner.