Privacy Policy
Last updated: 28 May 2026
1. INTRODUCTION
Welcome to Algorithec ("we," "us," "our," or "Company"). Algorithec PRIVATE LIMITED ("Algorithec") is committed to protecting your privacy and ensuring you have a positive experience on our platform. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website, mobile application, and related services (collectively, the "Platform").
Algorithec is an AI-driven Decision Engine that helps users instantly choose and complete the best possible option for shopping, food, rides, travel, and hospitality without switching between multiple applications.
Please read this Privacy Policy carefully. If you do not agree with our policies and practices, please do not use our Platform.
2. INFORMATION WE COLLECT
2.1 Information You Provide Directly
Account Registration Information:
- Full name
- Email address
- Phone number
- Password (encrypted)
- Date of birth
- Profile picture (optional)
- Gender (optional)
- Preferred language
Payment Information:
- Bank account details (for refunds/returns)
- Credit/debit card information (processed securely through third-party payment gateways)
- UPI ID (if applicable)
- Billing address
- Transaction history
Location Information:
- Current location (when you use location-based services)
- Saved addresses (home, work, favorites)
- Search history based on location
- Delivery/pickup preferences
Commerce & Service Information:
- Shopping preferences and history
- Food delivery preferences and orders
- Ride/transportation preferences
- Travel bookings and preferences
- Hotel/hospitality reservations
- Wishlist and saved items
- Reviews, ratings, and feedback
Communication Information:
- Messages and support tickets
- Feedback and surveys
- Customer service interactions
- Push notification preferences
- Email communication preferences
KYC & Verification:
- Government-issued ID documents (Aadhar, PAN, Passport, etc.)
- Address proof documents
- Bank account verification details
- Photo for identity verification (optional but may be required)
2.2 Information Collected Automatically
Device Information:
- Device type (smartphone, tablet, desktop)
- Operating system and version
- Device identifiers (IMEI, Android ID, IDFA)
- Mobile network information
- Device settings and specifications
Usage Information:
- Pages/screens visited
- Features used
- Search queries and filters applied
- Time spent on Platform
- Clicks and interactions
- Error logs and crash reports
- Session duration
- User journey and flow
Location Data:
- GPS coordinates (when location services enabled)
- IP address and geolocation
- Approximate location based on network data
- Location history for completed transactions
Cookies and Tracking:
- Session cookies
- Persistent cookies
- Analytics cookies
- Advertising cookies
- Pixels and tags
- Local storage data
AI/ML Training Data (Anonymized):
- Decision patterns (what users selected)
- Search behavior
- Preference signals
- Time patterns
- Category preferences
- Budget ranges
- Quality signals
2.3 Information from Third Parties
Commerce Partners:
- ONDC sellers and service providers
- E-commerce platforms (Amazon, Flipkart, etc.)
- Food delivery platforms (Swiggy, Zomato, etc.)
- Ride-hailing services (Uber, Ola, etc.)
- Travel platforms (MakeMyTrip, Goibibo, etc.)
- Hotel booking platforms (OYO, Airbnb, etc.)
Information Received:
- Transaction details (order ID, amount, status)
- Item information (product details, prices, descriptions)
- Seller/service provider information
- Delivery/fulfillment tracking
- Reviews and ratings
- Refund and return information
Payment Gateways:
- Transaction confirmation
- Payment status
- Card/bank verification results
Third-Party Integrations:
- Analytics providers (Google Analytics, Mixpanel, etc.)
- Error tracking services (Sentry, Rollbar, etc.)
- Push notification services
- Email service providers
- SMS service providers
Social Media (if connected):
- Basic profile information
- Email address
- Profile picture
- Friends/connections list
Public Sources:
- Public reviews and ratings
- Social media mentions
- Market research data
- News and industry data
3. HOW WE USE YOUR INFORMATION
3.1 Core Platform Functions
To Provide the Service:
- Process your requests to find best options across platforms
- Generate AI-powered recommendations
- Complete transactions on your behalf
- Auto-apply discounts and offers
- Track orders and deliveries
- Process refunds and returns
- Customer support and issue resolution
AI/Decision Engine:
- Train machine learning models to improve recommendations
- Understand user intent through NLP
- Evaluate options across platforms
- Predict user preferences
- Optimize decision accuracy
- A/B test different decision algorithms
- Learn from user feedback
3.2 Communication
Transactional Communications:
- Order confirmations
- Delivery updates
- Payment receipts
- Support responses
- Account notifications
- Security alerts
- Policy updates
Marketing Communications:
- Promotional offers and discounts
- New feature announcements
- Product recommendations
- Event invitations
- Newsletter content
- Feedback surveys
- Re-engagement campaigns
You can opt-out of non-essential marketing communications at any time.
3.3 Analytics & Improvement
Service Improvement:
- Analyze user behavior patterns
- Identify popular categories and options
- Understand decision patterns
- Improve recommendation accuracy
- Optimize user experience
- Test new features
- Identify and fix bugs
Business Analytics:
- Usage statistics and trends
- Conversion metrics
- Revenue analysis
- User segmentation
- Funnel analysis
- Cohort analysis
- Performance metrics
3.4 Safety & Security
Account Security:
- Detect and prevent fraud
- Verify user identity
- Detect unauthorized access
- Monitor suspicious activities
- Enforce security policies
- Investigate security incidents
Compliance:
- Comply with legal obligations
- Respond to legal requests
- Enforce terms and conditions
- Protect rights and property
- Prevent illegal activities
- Tax compliance
- Regulatory requirements
3.5 Personalization
User Experience:
- Customize recommendations
- Remember preferences
- Personalize interface
- Suggest relevant features
- Optimize content presentation
4. HOW WE SHARE YOUR INFORMATION
4.1 Service Partners
Necessary for Transactions:
- ONDC sellers to complete orders
- Payment gateway providers to process payments
- Delivery partners to track shipments
- Service providers to fulfill requests
- Logistics partners for delivery
Information Shared:
- Your name and contact details
- Delivery address
- Order details
- Payment status
- Customer support information
4.2 Affiliate & Referral Partners
When You Use Referral Links:
- Affiliate networks receive transaction data
- Partner platforms receive your referral information
- Commission tracking information
- Conversion data
You Can Opt-Out:
- Choose not to use referral links
- Request non-affiliate transactions
4.3 Analytics & Service Providers
Analytics Providers:
- Google Analytics
- Mixpanel
- Amplitude
- Aggregated, anonymized usage data
Technical Service Providers:
- Cloud hosting providers (AWS, Google Cloud, etc.)
- Error tracking services
- Communication service providers
- Payment processors
4.4 Legal & Regulatory
Law Enforcement:
- Comply with legal requests
- Court orders
- Government agency requests
- Regulatory investigations
- As required by law
Information Shared:
- Only minimal information necessary
- With judicial orders or legal process
- As required by applicable law
4.5 Business Transfers
In Case of Merger/Acquisition:
- Buyer may acquire user information
- Subject to this Privacy Policy or updated policy
- You will be notified of changes
- Right to opt-out in some circumstances
4.6 Public Information
With Your Consent:
- Public reviews and ratings
- User testimonials
- Anonymized usage statistics
- Case studies (anonymized)
5. DATA PROTECTION & SECURITY
5.1 Security Measures
Technical Security:
- SSL/TLS encryption for data in transit
- AES-256 encryption for data at rest
- Secure authentication (multi-factor authentication available)
- Regular security audits
- Penetration testing
- Vulnerability scanning
- Intrusion detection systems
Access Controls:
- Role-based access control
- Principle of least privilege
- Access logging and monitoring
- Authentication and authorization
- Restricted data access
- Employee background checks
- Confidentiality agreements
Data Management:
- Secure data storage
- Backup and recovery systems
- Data retention policies
- Secure deletion procedures
- Regular security training
- Incident response plan
5.2 Data Retention
User Account Data:
- Retained for duration of account
- 12 months after account deletion (for legal/tax purposes)
- Deleted upon request where legally permitted
Transaction Data:
- Retained for 7 years (tax and regulatory compliance)
- Earlier deletion upon request where permitted
Analytics & Logs:
- Retained for 12-24 months
- Older data automatically deleted
- Real-time data processed and aggregated
AI/ML Training Data:
- Anonymized and aggregated
- No personal identifiers
- Retained for model improvement
- Can be removed upon request
Marketing Data:
- Retained until opted out
- 3 months grace period after opt-out
- Deleted upon request
5.3 International Data Transfers
Data Location:
- User data primarily stored in India
- Backups may be stored in multiple regions
- Complies with India data protection laws
- May comply with international data transfer agreements
Your Rights:
- Request location of your data
- Request local data storage
- Opt-out of international transfers where possible
6. YOUR PRIVACY RIGHTS & CHOICES
6.1 Access & Portability
Right to Access:
- Request copy of your personal data
- Understand how data is processed
- Request within 30 days
- Format: Digital, PDF, or print
- Free of charge (one request per year)
Right to Data Portability:
- Receive data in structured, portable format
- Transfer to another service
- Request within 30 days
- Includes transaction history and preferences
How to Request:
- Email: privacy@algorithec.ai
- In-app request form
- Support ticket
- Include identification details
6.2 Correction & Deletion
Right to Correction:
- Update inaccurate information
- Correct outdated data
- Remove incomplete data
- Via account settings
- Or email privacy@algorithec.ai
Right to Deletion ("Right to be Forgotten"):
- Request permanent deletion of data
- Exceptions: legal/regulatory requirements
- Tax compliance (7 years for transactions)
- Fraud prevention
- 30-45 days for processing
- Anonymization of some data may be retained
Irreversible:
- Account will be permanently deleted
- Cannot be recovered
- Data cannot be restored
- Consider download before deletion
6.3 Opt-Out Options
Marketing Communications:
- Unsubscribe from emails
- Disable push notifications
- SMS opt-out
- Settings Notifications
Cookies & Tracking:
- Disable cookies in browser settings
- Do not track (DNT) signals honored
- Clear cookies anytime
- May affect functionality
Analytics:
- Opt-out of Google Analytics
- Disable event tracking
- Settings Privacy
Location Services:
- Disable GPS in device settings
- Don't allow location permission
- Disable location-based recommendations
- Note: May reduce service quality
Third-Party Sharing:
- Opt-out of referral partnerships
- Request non-affiliate transactions
- Email: privacy@algorithec.ai
6.4 AI/ML Model Training
Opt-Out of Training:
- Request to exclude your data from ML training
- Your data won't be used to improve models
- Email: privacy@algorithec.ai
- Takes effect within 30 days
- May affect recommendation quality
7. COOKIES & TRACKING TECHNOLOGIES
7.1 How We Use Cookies
Essential Cookies:
- Session management
- Authentication
- Security functions
- Required for platform functionality
- Cannot be disabled
Analytics Cookies:
- Track user behavior
- Measure feature usage
- Analyze performance
- Improve experience
- Can be disabled
Advertising Cookies:
- Personalized recommendations
- Behavioral targeting
- Cross-platform tracking (with permission)
- Can be disabled
Social Media Cookies:
- Enable social sharing
- Login via social accounts
- Track social referrals
7.2 Cookie Management
Browser Controls:
- Delete cookies anytime
- Disable cookies in settings
- Use private/incognito browsing
- Third-party cookie controls
Our Cookie Management:
- Cookie consent banner on first visit
- Preferences panel in settings
- Granular control over each category
- Annual consent renewal
7.3 Web Beacons & Pixels
Usage:
- Track email opens
- Measure campaign effectiveness
- Conversion tracking
- Cross-site activity
- Retargeting
Control:
- Disable images in email client
- Use email privacy tools
- Opt-out of tracking
8. CHILDREN'S PRIVACY
8.1 Age Restrictions
Minimum Age:
- Must be 18+ to use platform
- Or legal age of majority in your jurisdiction
- Parental consent not obtained for under-18
Minors (Under 18):
- Should not register
- Should not provide information
- Parents may request deletion
- We will comply with deletion requests
8.2 Parent/Guardian Rights
If Minor Has Account:
- Contact: privacy@algorithec.ai
- Provide proof of custody
- Request account deletion
- Request data deletion
- Receive data copy
We Will Not:
- Knowingly collect data from minors
- Target marketing to minors
- Share data with third parties (except legal)
- Use data for behavioral tracking
9. THIRD-PARTY LINKS & SERVICES
9.1 External Links
Not Our Responsibility:
- Links to partner platforms
- Third-party websites
- Other services
- E-commerce sites
- ONDC sellers
Their Privacy Policies Apply:
- Not our policies
- Review their privacy policy
- Your interactions governed by their terms
- We are not responsible for their practices
9.2 OAuth & Social Login
If You Connect Social Account:
- Facebook, Google, Apple, etc.
- Basic profile information accessed
- Email and name typically required
- Permissions requested during signup
- Can disconnect anytime in settings
Data Shared:
- Limited to what you authorize
- Profile information
- Email address
- May not include all profile data
- Review what's shared during signup
10. INDIA DATA PROTECTION COMPLIANCE
10.1 Indian Laws
Digital Personal Data Protection Act (DPDP), 2023:
- Compliant with new Indian data protection law
- Your data is personal data under DPDP
- We are Data Fiduciary
- Partners are Data Processors
IT Act, 2000:
- Compliant with Information Technology Act
- Reasonable security measures
- Incident reporting requirements
Right to Privacy:
- Constitutional right recognized in India
- Compliant with India's privacy framework
- Your rights under Indian law
10.2 Your Rights Under Indian Law
DPDP Rights:
- Right to know personal data
- Right to correct/update
- Right to erasure (exceptions apply)
- Right to data portability
- Right to withdraw consent
- Right to grievance redressal
Our Obligations:
- Process data lawfully
- Data minimization
- Purpose limitation
- Accuracy and retention
- Security and integrity
- Accountability and transparency
10.3 Grievance Redressal
If Your Rights Violated:
- Email: privacy@algorithec.ai
- Subject: Data Protection Grievance
- Describe the issue
- Provide supporting documents
- 30 days to acknowledge
- 45 days to resolve
- No fees charged
Escalation:
- If not satisfied
- Contact DPA (Data Protection Authority) when established
- Legal remedies available
11. GDPR COMPLIANCE (If Applicable)
11.1 For EU Residents
GDPR Applies if:
- You are in EU/EEA
- Or you are EU resident
- Or EU data protection rights apply
Your Rights:
- Right to access
- Right to rectification
- Right to erasure
- Right to restrict processing
- Right to data portability
- Right to object
- Rights related to automated decisions
- Right to lodge complaint
11.2 Legal Basis
We Process Data Based On:
- Your consent
- Contract performance
- Legal obligations
- Legitimate interests
- Protection of vital interests
- Public tasks
12. CHANGES TO PRIVACY POLICY
12.1 Updates & Notifications
How We Notify:
- Email notification
- In-app notification
- Website banner
- Major changes: 30 days notice
Your Consent:
- Continued use = acceptance
- Right to withdraw consent
- Request data deletion if disagree
- Some changes may require explicit consent
12.2 Archival
Previous Versions:
- Maintained for reference
- Available upon request
- Shows privacy evolution
- Transparency purposes
13. SECURITY INCIDENT NOTIFICATION
13.1 Breach Response
If Your Data Breached:
- Investigate immediately
- Notify you within 72 hours
- Details: what data, when, what to do
- Notify authorities if required
- Provide identity protection
Information Provided:
- What happened
- What data affected
- What we're doing
- How to protect yourself
- Contact for more info
13.2 Prevention
We Will:
- Take reasonable steps to prevent breaches
- Regular security audits
- Employee training
- Secure systems
- Incident response plan
- Data encryption
- Access controls
You Should:
- Use strong passwords
- Enable 2FA
- Keep device updated
- Don't share credentials
- Report suspicious activity
14. CONTACT INFORMATION
14.1 Privacy Questions
Privacy Officer: Name: Privacy Compliance Team Email: privacy@algorithec.ai Phone: +91 7396144250 Website: www.algorithec.ai
Response Time:
- Within 24 business hours for queries
- 30 days for access requests
- 45 days for deletion requests
- 30 days for correction requests
14.2 Mailing Address
ALGORITHEC PRIVATE LIMITED Unit 101, Oxford Towers, 139/88, Hal Old Airport RD, H.A.L II Stage, Bangalore North, Bangalore - 560008, Karnataka, India
14.3 Data Protection Officer
Will be appointed as required by:
- Indian data protection law
- GDPR (if processing EU data)
- Other applicable regulations
Contact details will be updated on website.
15. GRIEVANCE REDRESSAL OFFICER
For Platform Complaints: Name: Grievance Officer Email: grievance@algorithec.ai Phone: +91 7396144250 Hours: Monday-Friday, 10 AM - 6 PM IST
Process:
- Submit complaint with details
- Acknowledge within 24 hours
- Investigate within 30 days
- Respond with resolution
- Escalate if not satisfied
16. DISCLAIMER & LIABILITY
16.1 Limited Liability
We Are Not Liable For:
- Unauthorized third-party access despite reasonable measures
- Your failure to protect password
- Your shared login credentials
- Browser cookies or malware
- Internet/network issues
- Service interruptions (outside our control)
- Unauthorized disclosures of information
16.2 Your Responsibility
You Must:
- Keep password confidential
- Don't share login credentials
- Notify us of unauthorized access
- Update contact information
- Review account regularly
- Report suspicious activity
- Update device security
17. ACKNOWLEDGMENT
By using Algorithec, you acknowledge that:
You have read and understood this Privacy Policy You consent to our collection and use of information You are 18+ years old (or legal age of majority) You understand your privacy rights You agree to our data handling practices You will notify us of inaccuracies You will report security concerns
18. FINAL PROVISIONS
18.1 Severability
If any provision is found invalid, remaining provisions stay in effect.
18.2 Entire Agreement
This Privacy Policy, combined with Terms of Service, constitutes entire agreement regarding privacy and data handling.
18.3 Governing Law
This Privacy Policy governed by laws of India, without regard to conflicts.
18.4 Dispute Resolution
Disputes resolved through:
- Negotiation and good faith discussions
- Mediation (if agreed)
- Arbitration under Indian Arbitration Act
- Courts of Bangalore (if litigation necessary)
© 2026 ALGORITHEC PRIVATE LIMITED. All Rights Reserved.
Last Updated: May 28, 2026 Next Review: May 28, 2027
For questions or concerns about privacy practices, contact: Email: privacy@algorithec.ai Phone: +91 7396144250 Website: www.algorithec.ai
END OF PRIVACY POLICY