1. Scope & Consent
SIHIPAK Premium Sweets ("SIHIPAK", "we", "us", or "our") operates B2B corporate and partner fulfillment platforms. This Privacy Policy applies to all registered corporate buyers, retail customers, bakery partners, and visitors who access our online services.
By creating a business account or using our storefront, you explicitly consent to the collection, storage, processing, and transfer of your business and personal information as described in this policy.
This document constitutes an electronic record in terms of the Information Technology Act, 2000, and rules thereunder as applicable, and the amended provisions pertaining to electronic records in various statutes as amended by the Information Technology Act, 2000. This electronic record is generated by a computer system and does not require any physical or digital signatures.
2. Information We Collect
We collect information to provide high-quality services, verify merchant legitimacy, and process bulk transactions. We collect the following categories of data:
- Business Registration details: Company name, Trade license, FSSAI registration details, PAN, and Goods and Services Tax Identification Number (GSTIN).
- Personal Contact Identifiers: Contact person's name, billing address, dispatch addresses, email addresses, phone numbers, and WhatsApp identifiers.
- Financial Transaction Data: Bank accounts, credit facility records, digital payment references, invoice history, and billing ledger logs.
- Technical Usage Information: Device IP addresses, browser specifications, login logs, search inputs, active session cookies, and navigation pathways on both dashboards.
- Location Data: Accurate GPS coordinates for shipping destinations and logistics tracking routes.
3. How We Use Collected Data
We process collected data under valid legal grounds and to perform service agreements:
- Processing bulk order requests, verifying buyer tax IDs, and preparing corporate invoices.
- Routing delivery coordinates to logistics partners and drivers for secure delivery hand-off.
- Auditing quality consistency, FSSAI hygiene scores, and order dispatch timings for Bakery Partners.
- Validating credentials during B2B dashboard logins to prevent corporate identity fraud.
- Optimizing production timelines and queue volumes for registered bakery partners based on historical regional demands.
- Distributing order updates, verification OTPs, ledger balances, and custom marketing offers via Email, SMS, and WhatsApp.
4. Data Storage & Security Measures
We take security seriously and enforce multiple protective layers:
All communication with our dashboards is encrypted using **256-bit SSL technology**. Financial ledger information and PAN/GST credentials are stored in secure databases protected by advanced web firewalls. Access to merchant databases is restricted to authorized personnel under strict confidentiality agreements.
Data Localization: In compliance with Indian regulatory frameworks, all core account information and transaction databases are hosted securely on localized cloud servers in India.
7. Your Choices & Rights
You have control over how your information is handled:
- Access & Rectification: You can update your business profile, FSSAI numbers, and delivery addresses directly from your dashboard settings.
- Opt-Out: You can choose to opt-out of newsletter distributions and promotional offerings via the unsubscribe links in our emails. Transactional alerts (OTPs, invoices) cannot be disabled.
- Account Deletion: You can request account deletion by emailing support. Please note that legal accounting logs, paid invoices, and outstanding ledger dues must be preserved by law and cannot be deleted.
8. Data Retention
We retain your business record data for as long as your account remains active on the platform. In the event of account closure, legal tax records, transactional histories, and corporate invoices will be retained for a mandatory period of **8 years** to comply with Indian corporate tax and accounting laws.
9. Children's Privacy
Our B2B platform is strictly designed for merchant trade transactions and corporate entities. We do not knowingly collect personal or business information from individuals under the age of 18.
10. Data Breach Notification Protocol
Despite our rigorous technical protections, no data storage method is completely impenetrable. In the highly unlikely event of a security breach resulting in unauthorized data exposure, SIHIPAK will launch the following response protocol:
- Investigation: Our security response desk will immediately isolate the affected servers and initiate auditing reviews.
- User Notification: If sensitive data is exposed, we will notify impacted users via email and registered mobile alerts within **72 hours** of breach validation.
- Regulatory Reporting: In compliance with the guidelines of the Indian Computer Emergency Response Team (CERT-In), we will report cybersecurity incidents within the mandated timelines.
11. International Data Transfers
While SIHIPAK primarily serves businesses within India, B2B procurement requests and gift packages may originate from corporate offices or clients located internationally.
Please note that any information you provide will be transferred to, stored, and processed securely on our centralized database servers located in India. We enforce equivalent security controls regardless of the geographical origin of account registrations.
12. Global Compliances (GDPR & CCPA Disclaimer)
If you are accessing our storefront or platforms from the European Union (EU) or California (USA), the following rights apply under the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA):
- You have the right to request access to the personal data we hold, request its portability, object to processing, or request erasure (subject to Indian transactional data retention statutes).
- We process personal data only when necessary to perform contract agreements, comply with legal requirements, or pursue legitimate interest goals.
- We do not sell personal information as defined by California civil code metrics.
13. Grievance Officer & Contact Information
In accordance with Information Technology Act 2000 and rules made thereunder, the name and contact details of the Grievance Officer are provided below:
- Grievance Officer: Mrs. Shruti Hegde
- Email: privacy@sihipak.com
- Phone: +91 821 123 4567
- Registered Address: SIHIPAK Foods Pvt. Ltd., #123, Industrial Area, Mysore 570 016, Karnataka, India