This Privacy Policy (the “Policy”) explains how https://karmasu.in/ (the “Platform”) collects, uses, maintains, and discloses information from its users. The Platform includes the https://karmasu.in/ website (the “Website”), any content, forums, spiritual services offered through the Website, and any mobile applications (the “Application”).
This Policy describes our practices regarding user information, your privacy rights, and the choices you have regarding your information. This Policy applies to all individuals using the Platform, collectively referred to as “Users,” “Devotees,” “You,” or “Your.”
By accessing and using the Platform, providing Your Personal Information, or otherwise indicating Your agreement when the option is presented to You, You consent to the collection, use, and disclosure of information as described in this Policy and our Terms of Use. If You do not agree with any provisions of this Policy and/or the Terms of Use, You should not access or use the Platform and are requested to discontinue immediately.
If any information You have provided or uploaded on the Platform is found to be in violation of this Policy or the Terms of Use, we may be required to remove such information and, if necessary, restrict or revoke Your access to the Platform, after informing You.
Capitalized terms used but not defined in this Privacy Policy can be found in our Terms of Use. Please read this Policy carefully before accessing our Platform or using any of the services or products offered herein.
For any questions regarding this Policy, please contact us at:
📧 Email: ADITYAUPSC4U@GMAIL.COM
🌐 Website: https://karmasu.in
Personal Information
“Personal Information” shall mean the information that identifies a User/Devotee, i.e., first and last name, mobile number, email address, password created by the User, and any other details voluntarily provided at the time of registration or at any time thereafter on the Platform.
“Sensitive Personal Information” shall include:
- Passwords and financial data (except the truncated last four digits of the credit/debit card).
- Any health-related data.
- Official identifiers (such as biometric data, Aadhaar number, social security number, driver’s license, passport, etc.).
- Information related to sexual life, sexual orientation, race, ethnicity, political or religious belief or affiliation.
- Account details and passwords.
- Any other data categorized as ‘sensitive personal data’ or ‘special categories of data’ under the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), or other equivalent legislations (“Data Protection Laws”).
Important Note:
Karmasu does not directly store or process financial/payment data. All payment transactions are securely processed through Razorpay (https://razorpay.com/). Razorpay may collect certain necessary financial information for completing the transaction, but Karmasu does not retain or store such payment details.
Usage of the term ‘Personal Information’ shall include ‘Sensitive Personal Information’ as may be applicable to the context of its usage.
Information We Collect
We may collect both personal and non-personal identifiable information from You in a variety of ways, including, but not limited to, when You visit our Platform, register on the Platform, and in connection with other activities, services, features, or resources we make available on our Platform.
However, please note that:
- We do not ask You for Personal Information unless it is truly required (for example, when You are registering on the Platform or availing our services).
- We do not share Your Personal Information with anyone except as required to comply with applicable laws, improve our products and services, or protect our rights.
- We do not store financial/payment information on our servers. All payments are processed securely through Razorpay (https://razorpay.com/).
- We store only the Personal Information necessary for the ongoing operation of our Platform.
a. Personal Identifiable Information
We may collect personal-identifiable information such as Your name, mobile number, email address, and password to enable Your access to the Platform and the services/products offered therein. We may also collect such information if voluntarily submitted by You (for example, while contacting us or subscribing to updates).
You can always refuse to provide such personal information; however, this may prevent You from accessing certain services or products provided on the Platform or from engaging in certain activities.
b. Non-Personal Identifiable Information
When You interact with our Platform, we may collect non-personal-identifiable information such as:
- Browser name and version
- Language preference
- Referring site
- Date and time of each user request
- Operating system
- Internet service provider details
- Other technical information for improving user experience
c. Cookies
To enhance user experience, our Platform may use “cookies.” A cookie is a string of information that a website stores on a visitor’s computer, which the visitor’s browser provides to the website each time the visitor returns.
You may choose to set your web browser to refuse cookies, or to notify You when cookies are being sent; however, please note that in doing so, some parts of the Platform may not function properly.
How We Use and Share the Information Collected
We may collect and use Your Personal Information for the following purposes:
a. To provide access to our Platform and services/products
We use the information collected from you to allow access to the Platform and the services/products offered, including but not limited to:
- Providing customer support,
- Fulfilling service or product requests,
- Verifying User information,
- Resolving any technical issues or glitches with our Platform.
The legal basis for this processing is your consent or, where applicable, our legitimate interests in the proper administration of our Platform, and/or the performance of a contract between you and us.
b. To improve our Platform and maintain safety
We may use your information to enhance and customize the Platform, services, and user experience. Additionally, we use your information to prevent, detect, investigate, and take measures against:
- Fraud or misuse,
- Criminal activity,
- Security threats, or
- Violations of third-party rights.
The legal basis for this processing is your consent or, where applicable, our legitimate interests in maintaining the safety and proper administration of our Platform.
c. To communicate with you and provide updates
We may use your email address or mobile number to communicate with you regarding:
- Your activities on our Platform,
- Service updates,
- New features or offerings,
- Feedback and inquiries.
If at any time you would like to unsubscribe from receiving promotional communications, you may do so by contacting us at the details provided below.
d. Payments and Transactions
All payment-related information is securely processed through Razorpay (https://razorpay.com/). Razorpay processes this information in compliance with applicable data protection laws and PCI-DSS standards. We do not store your sensitive payment information (like card details or UPI PIN) on our servers. Razorpay may collect and process such information to complete your transaction in accordance with its privacy practices.
e. Data Sharing
We do not sell, trade, or exploit your personal-identifiable information to third parties. Limited to the purposes stated above, we may share only generic, aggregated demographic information (not linked to any personally identifiable data) with trusted affiliates, partners, or service providers.
We do not use Personal Information for making automated decisions or creating profiles beyond what is described in this Policy.
YOUR CHOICES
a. Limit the information you provide:
You always have the option to choose the information you provide to us, including the ability to update, correct, or delete your information. However, please note that if certain mandatory information is not provided, it may restrict your ability to access the Platform or specific features, in part or in full (for example, information required for registration or payment processing).
b. Limit the communications you receive from us:
You may choose the type of communications you wish to receive from us (such as promotional emails, offers, or newsletters). You may also opt out of such communications at any time by using the unsubscribe option provided in the communication or by contacting us directly. However, certain essential communications (such as those related to legal obligations, security updates, or changes to our policies/terms) cannot be opted out of.
c. Reject cookies and other similar technologies:
You may configure your browser settings to refuse or remove cookies, or to notify You when cookies are being placed. Please note, however, that rejecting or disabling cookies may affect the functionality of some parts of the Platform, and certain services/products may not work properly.
YOUR RIGHTS
In general, all Users have the rights specified in this section. However, depending on your country of residence, you may have additional rights in respect of your Personal Information under applicable local laws. To understand those, please refer to the Country-Specific Additional Rights section below.
If you are a User, you may exercise these rights by using the options provided within the Platform upon logging in. If you face any difficulty or need clarification, you may always contact us at the details provided in the ‘Grievances’ section below. We will respond in accordance with applicable law.
a. Right to Confirmation and Access – You have the right to request confirmation regarding whether we hold any of your Personal Information, and access to such information along with supporting details.
b. Right to Correction – You have the right to request correction of any Personal Information that is inaccurate, incomplete, or outdated.
c. Right to be Forgotten – You may restrict or request us to stop disclosing your Personal Information under certain circumstances permitted by law.
d. Right to Erasure – You may request deletion of your Personal Information from our Platform. Please note that such deletion will remove all your Personal Information (except where retention is required by law or this Policy), and may also result in permanent deletion of your account, which cannot be recovered.
Important: These rights can only be exercised with respect to your own Personal Information, not that of other Users. When we receive a request, we may ask for additional details to verify your identity before processing it, in line with applicable Data Protection Laws.
PROTECTION OF YOUR INFORMATION
We take all reasonable measures to protect against unauthorized access, use, alteration, or destruction of Personal Information and other data on the Platform. Disclosure of such information is strictly limited to the following:
a. Employees, contractors, and affiliated organizations (if any) who:
- need access to the information to process it on our behalf or provide services available on our Platform, and
- have agreed not to disclose it to others.
b. Legal and governmental disclosures: We may disclose information in response to a court order, government request, or as required by applicable laws and regulations.
Without limiting the above, we may also disclose information where we believe in good faith that such disclosure is necessary to:
- comply with applicable laws, regulations, court orders, or requests from government or law enforcement agencies;
- protect and defend the rights and property of a third party or Karmasu, or ensure the safety of our Users, employees, or others;
- prevent, detect, investigate, or take action against criminal activity, fraud, misuse, or unauthorized use of our Platform; or enforce our Terms of Use or other agreements and policies.
Where legally permissible, we will make reasonable efforts to provide you with prior notice before disclosing your information in response to such requests.
THIRD PARTY WEBSITES
Our Platform may contain links to the websites and services of our partners, suppliers, advertisers, sponsors, licensors, or other third parties.
Please note:
- We do not control the content or practices of these third-party websites, and we are not responsible for their privacy practices.
- These websites may change their content, links, and policies at any time.
- When you interact with any third-party website, including those linked from our Platform, you should review the terms of use and privacy policies of those websites.
Browsing and interactions on such third-party websites are governed by their respective terms and policies, not by Karmasu.
Our platform utilizes Supabase, an open-source Backend-as-a-Service (BaaS) platform. Supabase typically stores data on private, isolated virtual servers, often utilizing AWS EC2 instances. However, the specific geographical region where your data is stored depends on the region you select during the project setup. Supabase
Data Storage Locations:
- India: If you choose a region within India (e.g., Mumbai), your data will be stored in that region.
- Other Regions: Supabase offers various regions globally, including the United States, Europe, and Asia. You can select the region that best suits your needs during the project creation process.
Please note that the region you select during the setup process determines where your data is stored. It’s important to choose a region that complies with your data residency requirements.
Implications of Cross-Border Data Transfer:
- Data Residency: By using our platform, you acknowledge and consent to the storage and processing of your data in the selected region, which may be outside your country of residence.
- Legal Jurisdiction: Data stored in other countries may be subject to the laws and regulations of those jurisdictions, including potential access by governmental bodies or law enforcement agencies.
- Compliance: We strive to ensure that our data storage practices comply with applicable data protection laws and regulations. However, it’s your responsibility to ensure that the selected region aligns with your compliance requirements.
DURATION FOR WHICH YOUR INFORMATION IS STORED
We will retain your information only for as long as necessary to fulfill the purposes described in this Policy, including compliance with legal obligations and business requirements.
Please note:
- Certain communications, comments, photos, files, or other content that You make publicly available on the Platform may not be fully deletable.
- However, we will anonymize Your Personal Information in such a way that you can no longer be identified as an individual in association with such content.
- Aggregated or de-identified information may be shared or used, but it will never be disclosed in a manner that could identify you personally.
Exercising Your Rights:
If You wish to exercise any of Your rights (as described in the “Your Rights” section), including accessing, modifying, or deleting Your information, You may do so through the options provided within the Platform. You can also contact us at the email address provided in the “Grievances” section below.
MODIFICATION TO PRIVACY POLICY
We may modify, revise, or update this Privacy Policy from time to time. When we do, the ‘Last Updated’ date at the top of this page will be revised. We encourage you to review our Platform regularly to stay informed about any changes. Unless otherwise stated, the current version of this Policy applies to all information we hold about You.
GRIEVANCES
If you have any questions regarding this Policy, wish to exercise your rights, or have concerns or grievances related to privacy, please contact us at:
Email: ADITYAUPSC4U@GMAIL.COM
When contacting us, please provide a detailed description of your concern so that we can address it promptly and in accordance with applicable laws.