Who Is Responsible for Your Data
IDSA Marketing India LLP determines the purposes and means of processing personal data for the IDSA services covered by this policy where it acts as a Data Fiduciary under applicable Indian law, including the Digital Personal Data Protection Act, 2023 and applicable rules, as and when they apply.
Independent third-party businesses, vendors, partners, or service providers that you deal with through IDSA remain responsible for their own processing of personal data for their own purposes, unless IDSA is expressly the contracting party for that activity.
Registered office (as recorded): Plot no. 376, Chhichhore Karaudi, Azamgarh, UP 221706
How This Policy Applies
Use of IDSA services is subject to this Privacy Policy and our Terms & Conditions. Where consent is required for a particular processing activity, IDSA will obtain consent or rely on another lawful basis as applicable under law. Merely visiting or using the website does not, by itself, constitute consent for every personal-data processing activity.
Data We Collect
Depending on the service you use, we may collect:
- Identity: name, mobile number, email address, and account or user identifiers.
- Business / profile: business or profile details, category, address or location (where provided), products or services, and business contact information.
- Verification and security: OTP or verification state, KYC or document metadata where applicable, fraud or security signals, and related audit records.
- Transactions: payment or transaction references, invoice, order, or service records. We do not store full card credentials for card payments processed by payment gateways.
- Communications: support requests, chat or message content needed for support/safety, email/SMS/WhatsApp interaction metadata where applicable, and consent or opt-out status.
- Technical: IP address, browser or device information, session and security logs, and essential cookies or similar technologies where used.
- Uploads: documents, images, or other files you submit to IDSA.
- Fraud reporting: reporter contact details, reported-contact details, incident description, and private evidence submitted for review.
We do not claim to collect categories of data that are not used for the services you interact with.
Why We Process Personal Data
- Account creation, authentication, and access control
- Service delivery and operational workflows
- Business or profile publication where you request it
- Verification, KYC, and trust/safety checks where applicable
- Payments, billing references, and related records
- Customer support and grievance handling
- Security, fraud prevention, abuse detection, and incident response
- Legal, regulatory, and compliance obligations
- Transactional and service notifications
- Optional promotional communication where authorized
- Quality, reliability, and platform integrity
Where Personal Data Comes From
Personal data may come from:
- you directly;
- an authorized representative acting for you;
- business or admin workflows you participate in;
- service interactions on IDSA platforms;
- fraud, security, or trust reports;
- service providers, where lawfully received; or
- public or business sources, only where lawful and relevant.
Presence of a phone number, business listing, or other record in a database or public listing does not, by itself, authorize promotional or marketing communication. Marketing or promotional messages are subject to applicable consent and opt-out requirements.
Transactional and Promotional Communication
Transactional, security, and service messages — such as OTP, account, payment, service status, fraud/security alerts, and support messages — may be sent as necessary for the service or relationship.
Promotional communication is subject to applicable consent and opt-out requirements. You may withdraw promotional consent through available channels. Marketing opt-out or STOP requests will be respected for promotional messages.
How We Share Data
We do not sell personal data.
We may share personal data with categories of recipients such as:
- hosting, cloud, and infrastructure providers;
- payment processors and banking or UPI networks;
- SMS, email, WhatsApp, or other communication providers;
- verification or security providers;
- professional advisers where necessary;
- a business or service counterparty where you request a transaction or enquiry; and
- government, law-enforcement, or regulators when legally required.
Sharing is limited to what is needed for the stated purpose or legal obligation.
Fraud Reports and Public Verification Registry
If you submit a fraud or impersonation report, IDSA may collect reporter contact information, reported-contact details, incident description, and evidence. Evidence is handled as private review material and is not intended for public download. Reporter identity is not intentionally displayed in the public verification registry.
Reviewed verification or status records may be shown publicly where appropriate for trust and safety. A status such as “Not verified as an IDSA representative” is informational and is not, by itself, a criminal finding.
Related tools: Verify IDSA · Report Fraud
Cookies and Similar Technologies
IDSA uses essential cookies or similar technologies as needed for session continuity, authentication, and security. Preference-related storage may be used where a feature requires it. We do not claim advertising-tracking cookies unless separately disclosed for a specific feature.
Your Privacy Rights
Subject to applicable law (including the DPDP Act, 2023 and applicable rules as they apply), you may have rights to:
- access or obtain information about personal data processed about you;
- request correction of inaccurate or incomplete personal data;
- request erasure in applicable circumstances;
- withdraw consent where processing is based on consent;
- nominate another person to exercise rights in case of death or incapacity, where applicable; and
- seek grievance redressal.
Requests may require identity verification. Some information may need to be retained where required for legal compliance, security, fraud prevention, billing, audit, or dispute resolution.
Children and Age Eligibility
IDSA services are intended primarily for adults and business users. Our Terms require that you are at least 18 years old (or the legal age of majority in your jurisdiction) to enter the agreement. Where children’s personal data is processed, it will be handled subject to applicable legal requirements, including parent or guardian requirements where applicable. We do not claim a dedicated age-verification product feature beyond account and service eligibility checks already used.
Retention
Retention depends on:
- account or service lifecycle;
- transaction and billing requirements;
- support and dispute needs;
- security and fraud investigation needs;
- legal or regulatory obligations; and
- audit requirements.
Closing or deleting an account does not necessarily require immediate deletion of every legal, security, billing, or audit record that IDSA must retain.
Security
IDSA applies reasonable administrative and technical safeguards, which may include access control, logging and audit, security monitoring, and restricted access to sensitive evidence.
No electronic system can guarantee absolute security.
Security Incidents
Where legally required, IDSA may notify affected users and/or relevant authorities of qualifying personal-data or security incidents.
Service Providers and Processing Locations
Personal data may be processed using service providers located in India or other jurisdictions, subject to applicable legal requirements and restrictions.
Privacy / Data Grievance
For privacy requests or grievances, contact:
- Email: support@idsa.org.in
- Phone: +91 75999 22224
Please include your name, contact details, account reference if applicable, and a clear description of the request.
Related Documents
Terms & Conditions · Disclaimer · Verify IDSA · Report Fraud · Contact / Support
This policy is provided subject to applicable law. It does not constitute a certification of compliance for every obligation in every context. Platform services are also described on idsa.org.in Privacy Policy.