Privacy Policy
Last updated: January 1, 2025
Effective Date: January 1, 2025
This Privacy Policy describes how D.G.Yard ("we", "our", or "us") collects, uses, and protects your personal information when you use our website, mobile application, and services. By using our services, you agree to the collection and use of information in accordance with this policy.
1. Information We Collect
We collect information that you provide directly to us and information that is automatically collected when you use our services:
1.1 Personal Information
- Identity Information: Full name, date of birth, government-issued ID numbers (for KYC verification)
- Contact Information: Email address, phone number, postal address, billing address
- Account Information: Username, password (encrypted), profile picture, preferences
- Payment Information: Credit/debit card details, bank account information, payment history (processed securely through third-party payment processors)
- Location Information: Service location addresses, GPS coordinates (with your consent)
1.2 Service-Related Information
- Service booking details, appointment schedules, and service history
- Product orders, purchase history, and warranty information
- Quotations, invoices, and payment receipts
- Communication records with technicians, dealers, and customer support
- Reviews, ratings, and feedback
1.3 Automatically Collected Information
- Device Information: Device type, operating system, browser type, IP address, unique device identifiers
- Usage Data: Pages visited, time spent, click patterns, search queries, features used
- Cookies and Tracking Technologies: Session cookies, persistent cookies, web beacons, pixel tags
- Log Data: Server logs, error logs, access times, referring URLs
1.4 Third-Party Authentication Information
When you sign in using third-party authentication providers (such as Facebook, Google), we may collect:
- Profile information (name, email, profile picture) from the authentication provider
- Authentication tokens and identifiers
- Public profile information you have shared with the authentication provider
Note: We only access information that you have authorized the third-party provider to share with us. You can control what information is shared through your account settings with the authentication provider.
2. How We Use Your Information
We use the collected information for the following purposes:
2.1 Service Provision
- Create and manage your account
- Process and fulfill service bookings and product orders
- Schedule appointments and coordinate with technicians
- Process payments and manage billing
- Provide customer support and respond to inquiries
- Send service-related notifications and updates
2.2 Communication
- Send transactional emails (booking confirmations, invoices, receipts)
- Send SMS notifications for appointments and service updates
- Respond to your support requests and feedback
- Send marketing communications (with your consent, which you can withdraw at any time)
- Notify you about important policy changes
2.3 Service Improvement
- Analyze usage patterns to improve our services
- Develop new features and functionality
- Personalize your experience
- Conduct research and analytics
- Prevent fraud and ensure platform security
2.4 Legal and Compliance
- Comply with applicable laws and regulations
- Respond to legal requests and court orders
- Enforce our Terms of Service and other agreements
- Protect our rights, property, and safety, as well as that of our users
3. Data Sharing and Disclosure
We do not sell your personal information. We may share your information in the following circumstances:
3.1 Service Providers
We share information with third-party service providers who perform services on our behalf:
- Payment Processors: Razorpay, Stripe, and other payment gateways for transaction processing
- Cloud Hosting Providers: For data storage and hosting services
- Email and SMS Services: For sending communications
- Analytics Providers: For understanding usage patterns (data is anonymized where possible)
- Authentication Providers: Facebook, Google for OAuth authentication
3.2 Business Partners
- Technicians: We share necessary information (name, contact, service location) with assigned technicians to complete service requests
- Dealers: We share order and customer information with dealers for product fulfillment
- Service Partners: Third-party service providers who assist in delivering services
3.3 Legal Requirements
We may disclose your information if required by law or in response to:
- Court orders, subpoenas, or legal processes
- Government or regulatory requests
- Law enforcement investigations
- Protection of rights, property, or safety
3.4 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity, subject to the same privacy protections.
4. Third-Party Authentication (OAuth)
When you choose to sign in using third-party authentication providers (such as Facebook, Google), the following applies:
- You authorize the third-party provider to share certain information with us
- We only access information that you have explicitly authorized the provider to share
- The third-party provider's privacy policy governs their collection and use of your information
- You can revoke access at any time through your account settings with the authentication provider
- We use this information solely for authentication and account creation purposes
- We do not post to your social media accounts without your explicit permission
Facebook OAuth: When you sign in with Facebook, we access your public profile information (name, email, profile picture) as authorized by you. We do not access your Facebook friends list, posts, or other private information. You can manage these permissions in your Facebook account settings.
5. Data Security
We implement industry-standard security measures to protect your personal information:
- Encryption: Data is encrypted in transit (SSL/TLS) and at rest
- Access Controls: Limited access to personal information on a need-to-know basis
- Secure Authentication: Passwords are hashed using bcrypt; OAuth tokens are securely stored
- Regular Security Audits: We conduct regular security assessments and updates
- Payment Security: Payment information is processed through PCI-DSS compliant payment processors
- Data Backup: Regular backups with secure storage
Important: While we implement strong security measures, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security, but we are committed to protecting your information to the best of our ability.
6. Data Retention
We retain your personal information for as long as necessary to:
- Provide our services to you
- Comply with legal obligations (e.g., tax records, warranty information)
- Resolve disputes and enforce agreements
- Maintain business records as required by law
Specific retention periods:
- Account Information: Retained while your account is active and for 7 years after account closure (for legal compliance)
- Transaction Records: Retained for 7 years (as required by tax and accounting laws)
- Service History: Retained for the duration of warranty periods plus 2 years
- Marketing Data: Retained until you opt-out or request deletion
- Log Data: Retained for 90 days for security and troubleshooting purposes
7. Your Rights and Choices
You have the following rights regarding your personal information:
7.1 Access and Portability
- Request access to your personal information
- Receive a copy of your data in a structured, machine-readable format
- View your account information and service history through your dashboard
7.2 Correction and Update
- Update your account information at any time through your profile settings
- Request correction of inaccurate or incomplete information
- Verify and update your contact information
7.3 Deletion
- Request deletion of your account and associated data
- Note: Some information may be retained for legal compliance (e.g., transaction records)
- We will inform you of any data that cannot be deleted and the reason
7.4 Opt-Out and Consent Withdrawal
- Opt-out of marketing communications (unsubscribe links in emails, SMS STOP commands)
- Withdraw consent for data processing (where processing is based on consent)
- Disable cookies through your browser settings
- Revoke third-party authentication access through provider settings
7.5 Objection and Restriction
- Object to processing of your personal information for certain purposes
- Request restriction of processing in certain circumstances
- Lodge a complaint with the relevant data protection authority
How to Exercise Your Rights: To exercise any of these rights, please contact us at privacy@dgyard.com or use the contact form on our website. We will respond to your request within 30 days.
8. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to:
- Remember your preferences and settings
- Keep you logged in to your account
- Analyze website traffic and usage patterns
- Provide personalized content and advertisements
- Improve website functionality and user experience
Types of cookies we use:
- Essential Cookies: Required for website functionality (cannot be disabled)
- Performance Cookies: Help us understand how visitors use our website
- Functional Cookies: Remember your preferences and choices
- Advertising Cookies: Used to deliver relevant advertisements (with your consent)
You can control cookies through your browser settings. However, disabling certain cookies may affect website functionality.
9. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws. When we transfer your information internationally, we ensure appropriate safeguards are in place:
- Standard contractual clauses approved by data protection authorities
- Adequacy decisions recognizing certain countries as providing adequate protection
- Other legally recognized transfer mechanisms
By using our services, you consent to the transfer of your information to countries outside your country of residence, subject to the safeguards described above.
10. Children's Privacy
Our services are not intended for individuals under the age of 18 (or the age of majority in your jurisdiction). We do not knowingly collect personal information from children.
If you are a parent or guardian and believe that your child has provided us with personal information, please contact us immediately. If we become aware that we have collected personal information from a child without parental consent, we will take steps to delete that information promptly.
11. Third-Party Links
Our website may contain links to third-party websites, services, or applications. We are not responsible for the privacy practices or content of these external sites. We encourage you to review the privacy policies of any third-party sites you visit.
This Privacy Policy applies only to information collected by D.G.Yard through our website and services.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or for other reasons. We will notify you of any material changes by:
- Posting the updated policy on this page with a new "Last updated" date
- Sending an email notification to registered users (for significant changes)
- Displaying a notice on our website or mobile app
Your continued use of our services after the effective date of the updated Privacy Policy constitutes your acceptance of the changes. We encourage you to review this Privacy Policy periodically.
13. Facebook Data Deletion
If you signed in to our Services using Facebook, you can request deletion of your Facebook-related data through Facebook's platform.
How to Request Data Deletion
- Go to your Facebook profile settings
- Navigate to Settings & Privacy > Settings > Apps and Websites
- Find our app (D.G.Yard) in the list
- Click Remove to remove the app
- Click Send Request to request data deletion
What Happens After You Request Deletion
- You will receive a confirmation code
- We will process your deletion request within 30 days
- Your Facebook account link will be removed
- Personal information will be anonymized
- You can check the status of your request using the confirmation code
Check Your Deletion Request Status
After submitting a deletion request, you can check the status by visiting:
/facebook/data-deletion-status
You will need your confirmation code to check the status.
Alternative Method
You can also request data deletion by contacting us directly at privacy@dgyard.com. Please include your Facebook user ID or email address associated with your account.
14. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
D.G.Yard
Privacy Officer
Email: privacy@dgyard.com
Phone: +91 98765 43210
Address: [Your Business Address]
Data Protection Officer: For EU residents, you can contact our Data Protection Officer at dpo@dgyard.com