Transparent Collection
We only collect what's needed to serve you and fulfill orders.
No Data Selling
We never sell or rent your personal data to third parties.
Easy Deletion
Request deletion of your data at any time by emailing us.
Information We Collect
We collect information you provide directly and information collected automatically when you use our services.
Information You Provide Directly
- Contact details — name, phone number, email address, and delivery address when placing an order or registering on our app.
- Order information — products purchased, quantities, order history, and payment method (we do not store full payment card details).
- Communications — messages, feedback, or complaints you send us via WhatsApp, phone, email, or our website contact form.
- Account credentials — username and hashed password if you create an account on our app.
Information Collected Automatically
- Usage data — pages visited, features used, time spent, clicks, and navigation paths on our website or app.
- Device information — device type, operating system, browser type, language settings, and unique device identifiers.
- Log data — IP address, access times, referring URLs, and server response codes.
- Location data — approximate location (from IP address) or precise location (only if you grant permission) to enable delivery services.
- Cookies and similar technologies — see the Cookies section below for details.
Information from Third Parties
- Payment processors — transaction confirmation and fraud prevention signals from UPI platforms, PhonePe, GPay, Paytm, and similar services.
- Analytics providers — aggregated usage statistics from Vercel Analytics.
- Social login — if you choose to sign in via Google or Facebook, we receive your public profile information as permitted by your settings on those platforms.
How We Use Your Information
We process your personal data for the following purposes, each with a lawful basis:
Order fulfillment
Contract performanceTo process your orders, arrange delivery, send order confirmations, and manage returns or refunds.
Customer support
Legitimate interestTo respond to your queries, complaints, and feedback via phone, WhatsApp, or email.
Service improvements
Legitimate interestTo understand how our website and app are used so we can improve features and fix issues.
Marketing communications
ConsentTo send you promotional offers, deals, and updates about Apna Supermarket — only if you have opted in.
Security and fraud prevention
Legal obligation / Legitimate interestTo detect, prevent, and investigate fraudulent or unauthorized transactions and system abuse.
Legal compliance
Legal obligationTo comply with Indian laws including the Information Technology Act 2000, the Digital Personal Data Protection Act 2023, and applicable tax regulations.
Data Retention
We retain your personal data only for as long as necessary for the purpose it was collected:
| Data Type | Retention Period |
|---|---|
| Order records | 7 years (tax / legal compliance under Indian law) |
| Account information | Duration of account + 2 years after deletion request |
| Marketing consent | Until you withdraw consent |
| Customer support messages | 3 years from last interaction |
| Analytics data (anonymized) | 26 months |
| Server logs | 90 days |
Your Rights
Under the Digital Personal Data Protection Act 2023 (India) and applicable privacy laws, you have the following rights:
Right to access
Request a copy of the personal data we hold about you.
Right to correction
Ask us to correct inaccurate or incomplete data.
Right to erasure
Request deletion of your personal data (see Section 6).
Right to withdraw consent
Opt out of marketing or revoke any previously given consent.
Right to grievance redressal
Lodge a complaint with us or the Data Protection Board of India.
Right to nomination
Nominate someone to exercise your rights on your behalf in the event of death or incapacity.
To exercise any of these rights, contact us using the details in Section 11. We will respond within 30 days.
Data Deletion Requests
How to request deletion of your data
You may request deletion of your personal data at any time by sending an email to apnasupermarket.nm@gmail.com with the subject line "Data Deletion Request" and include your registered name and phone number so we can locate your account.
Alternatively, you can WhatsApp us at +91 8982203169 with your request.
We will process your request and confirm deletion within 30 days. Please note that we may retain certain data for the period required by Indian law (e.g., financial records for 7 years) even after a deletion request.
Security
We implement industry-standard security measures to protect your personal data:
- All data is transmitted over HTTPS/TLS encrypted connections.
- Passwords are stored using one-way hashing (bcrypt).
- Access to customer data is restricted to authorised personnel only.
- Our platform is hosted on Vercel, which maintains SOC 2 Type II compliance.
- Payment details are processed by PCI-DSS compliant payment gateways — we never store full card numbers.
No method of transmission over the internet is 100% secure. If you believe your data has been compromised, please contact us immediately at apnasupermarket.nm@gmail.com.
Children's Privacy
Our services are not directed at children under the age of 18. We do not knowingly collect personal data from children. If we become aware that we have inadvertently collected data from a child, we will delete it promptly. If you believe we have collected information about a child, please contact us at apnasupermarket.nm@gmail.com.
Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. When we make material changes, we will update the “Last updated” date at the top of this page and, where appropriate, notify you via email or an in-app notice. Your continued use of our services after the effective date of any update constitutes your acceptance of the revised policy.
Contact Us
If you have any questions about this Privacy Policy, wish to exercise your rights, or want to make a complaint, please reach out to our Grievance Officer:
Apna Supermarket
Grievance Officer / Data Controller
We aim to respond to all privacy-related requests within 30 days. If you are not satisfied with our response, you may escalate your complaint to the Data Protection Board of India once established under the Digital Personal Data Protection Act 2023.