Privacy Policy
1. Introduction
This privacy policy outlines how mystbox.in (“we”, “us”, “our”) collects, uses, stores, and protects your personal information in accordance with Indian laws and regulations, including the Digital Personal Data Protection Act, 2023 and the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011.
2. Information We Collect
- Personal Identification Information (such as name, email, address, phone number)
- Payment Information (credit/debit card details, UPI ID, bank details)
- Transaction Data and purchase history
- Technical information (IP address, browser type, device, cookies, analytics)
- Any other information you provide during use of our services
3. Purpose of Data Collection
- To process orders and payments
- To provide and improve customer service
- For KYC (Know Your Customer) as required by RBI or relevant authorities
- To comply with legal obligations and regulatory requirements
- For communication, marketing, and support, if you have consented
4. Consent
By using our website and services, you consent to our privacy policy and agree to the terms governing the collection, use, and disclosure of your information. You may withdraw your consent at any time per applicable law.
5. Data Storage & Security
- We use industry-standard security measures (such as SSL encryption and PCI-DSS compliance for payments) to protect your information.
- Your personal information is stored securely and only accessible by authorized personnel.
- We do not store credit/debit card details; payment gateways process such data.
6. Data Sharing & Disclosure
- We do not sell or share your personal information except as necessary for fulfilling your order (e.g., with payment gateway partners) or where required by law.
- Third-party providers (such as payment gateways) have their own privacy policies.
- We may disclose information to government authorities if required by law.
7. Retention & Deletion
- We retain your data for as long as necessary to fulfill the purposes stated or as required by law.
- You can request deletion of your data at any time, subject to certain legal and regulatory exceptions.
8. Children’s Data
- We do not knowingly collect data from children under the age of 18 without verifiable parental consent, as required by Indian law.
9. User Rights
- You have the right to access, correct, update, or request deletion of your personal data.
- You may opt-out of marketing or withdraw consent at any time.
- If you have questions or complaints regarding your data, you may contact our Data Protection Officer at [your email/contact details].
10. Changes to Policy & Notification
- We may update this policy from time to time. Major changes will be notified on this page.
- Continued use after changes implies your acceptance.
Important Notes & Recommendations
- Ensure your privacy policy is easily accessible on every page of your website.
- If you use a payment gateway, check their documentation and align your privacy policy with their compliance standards (most require PCI-DSS, data minimization, and explicit disclosures about data sharing).
- Keep records of user consent for data collection.
You can modify this template to fit your business model, but DO NOT omit any of these sections, as they are required by Indian law and most payment gateway providers. Review and update regularly to comply with new laws, especially as the DPDP Act rules come into force.
For any further help or Query contact us at: mystbox.in@gmail.com or by telephone at +917601064060 (Only for business queries)