TOTALLYINDIAN PRIVACY POLICY
Last Updated: May 11, 2025
INTRODUCTION
TezTrade Private Limited ("TotallyIndian," "we," "our," or "us") respects your privacy and is committed to protecting your personal data as a buyer on our platform. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website www.totallyindian.com or use our mobile application (collectively, the "Platform") as a buyer.
We have designed this policy to be compliant with multiple international privacy regulations including the General Data Protection Regulation (GDPR) for EU users, the California Consumer Privacy Act (CCPA) for California residents, and India's data protection requirements.
Please read this Buyer Privacy Policy carefully. If you do not agree with the terms of this Privacy Policy, please do not access the Platform.
1. WHAT DATA WE COLLECT
As a consumer on TotallyIndian, we collect several types of information about you:
Identity Information:
- Full name
- Username or similar identifier
- Date of birth (for age verification)
- Profile picture (if provided)
- Gender
Contact Information:
- Email address
- Phone number
- Billing address
- Delivery address(es)
Financial Information:
- Payment card details (stored securely via our payment processors)
- Digital wallet information
- Payment history
Transaction Information:
- Products purchased
- Order dates and values
- Shipping preferences
- Returns and refund history
Technical Information:
- IP address
- Login data
- Browser type and version
- Time zone setting and location
- Browser plug-in types and versions
- Operating system and platform
- Device information (type, ID, model)
We do not intentionally collect sensitive personal data such as details about your race, ethnicity, religious beliefs, sexual orientation, political opinions, health information, or biometric data.
2. HOW WE COLLECT YOUR DATA
We collect your data through multiple channels:
Direct Interactions:
- When you create a buyer account
- During the checkout process
- When you add items to your wishlist or cart
- When you submit reviews or ratings
- When you contact our customer service
- When you participate in surveys or promotions
- When you update your account settings
- When you sign up for marketing communications
Automated Technologies:
- Cookies and similar tracking technologies
- Web beacons and pixels
- Mobile device identifiers
- Server logs
- Analytics tools that record your browsing behavior
- Location data (if you have permitted this on your device)
Third-Party Sources:
- Social media platforms (if you choose to connect your account)
- Payment processors (transaction information)
- Shipping and logistics partners (delivery information)
- Analytics providers like Google Analytics
- Advertising networks for ad optimization
- Publicly available information (for verification purposes)
3. WHY WE COLLECT YOUR DATA
We use your personal data for the following purposes:
Account Management:
- To create and manage your account
- To verify your identity
- To personalize your platform experience
- To remember your preferences and settings
- To provide technical support for account issues
Order Processing:
- To process your product purchases
- To arrange shipping and delivery
- To handle payment processing
- To issue refunds when necessary
- To facilitate returns and exchanges
- To provide order status updates and tracking
Customer Support:
- To answer your inquiries
- To resolve product issues or concerns
- To assist with platform navigation
- To address complaints
- To improve service quality based on feedback
4. SHARING YOUR DATA
We may share your personal information with certain categories of recipients:
Service Providers:
- Payment processor (PayU)
- Shipping and delivery companies
- Customer support services
- Email and communication providers
- Cloud storage providers
- Analytics and data processing companies
- Fraud prevention services
Sellers on Our Platform:
- Limited information shared with sellers to fulfill your orders
- Name, and order details
We do not sell your personal information as defined under the CCPA or other privacy regulations.
5. YOUR RIGHTS
EU Buyer Data Protection Rights:
If you are located in the European Union or European Economic Area, the GDPR grants you these rights:
- Right of Access: You can request copies of all personal data we hold about you
- Right to Rectification: You can request correction of any inaccurate or incomplete personal data
- Right to Erasure: You can request deletion of your personal data under certain circumstances
- Right to Restriction: You can request that we restrict processing of your data
- Right to Data Portability: You can request your data in a structured, machine-readable format
- Right to Object: You can object to processing based on legitimate interests or direct marketing
US Buyer Data Protection Rights:
If you are located in the United States, your rights vary by state. For California residents (CCPA/CPRA):
- Request information about personal information collected, disclosed, or sold
- Request deletion of your personal information
- Request correction of inaccurate personal information
- Opt out of the sale or sharing of personal information
- Non-discrimination for exercising your rights
6. DATA SECURITY
We have implemented appropriate security measures to protect your personal data:
Technical Security Measures:
- SSL/TLS encryption for all data transmission
- Encrypted storage for sensitive information
- Multi-factor authentication for system access
- Regular security testing and vulnerability scanning
- Intrusion detection and prevention systems
- Regular software updates and security patches
Organizational Security Measures:
- Staff training on data protection
- Access controls based on need-to-know principle
- Data breach response plan and testing
- Vendor security assessment
- Regular security audits
- Background checks for employees with data access
7. DATA RETENTION
We retain your data for different periods depending on the type of information:
- Account Information: 2 years after account deletion
- Order History: 10 years for tax and legal compliance
- Payment Information: 2 years after processing
- Communication Records: 12 months
- Browsing Data: Maximum 13 months
- Inactive Accounts: Data minimization begins after 2 years of inactivity
8. CHILDREN'S PRIVACY
Our Platform is intended for users who are at least 18 years old. We do not knowingly collect personal information from children under 18. If we discover we have collected personal information from a child under 18, we will delete that information immediately.
9. CHANGES TO PRIVACY POLICY
We may update this Privacy Policy periodically. When we make material changes, we will update the "Last Updated" date and notify you via email or a prominent notice on our Platform.
10. CONTACT US
If you have questions about this Privacy Policy or our privacy practices:
General Privacy Inquiries:
Email: legal@totallyindian.com
Phone: +91 6262462162
EU-Specific Inquiries:
EU Data Protection Officer: legal@totallyindian.com
US-Specific Inquiries:
US Privacy Officer: legal@totallyindian.com
Postal Address:
TezTrade Exports Private Limited
Mumbai, India
Customer Service Hours:
Monday to Friday: 10:00 a.m. to 7:00 p.m. IST
Saturday: 10:00 a.m. to 3:00 p.m. IST