Nexus Sanghi Private Limited (the “Company”) is dedicated to protecting the privacy and confidentiality of all personal data shared by Direct Sellers and customers. This Privacy Policy governs the collection, use, storage, and disclosure of personal data by the Company. The terms used but not defined in this Privacy Policy have the meanings ascribed to them in the Policies and Procedures document. By providing personal data, Direct Sellers and customers consent to its use, storage, and processing by the Company in accordance with the provisions of this Privacy Policy.
Collection and Use of Personal Data
The Company collects and processes personal data for legitimate business purposes, including but not limited to:
• Creating and managing accounts for Direct Sellers.
• Identification and authentication of Direct Sellers.
• Facilitating the sale and delivery of Products.
• Sending notifications, promotional materials, and updates related to Products.
• Ensuring compliance with legal and regulatory requirements.
Types of Data Collected
The Company may collect and process the following categories of data:
• Personal Information, including their name, age, gender, contact details, demographic information, and audio/video testimonials.
• Financial Information, including billing addresses, banking details, and payment instrument details.
• Technical Information, including browser type, IP address, operating system, and usage data.
• Transactional Information, including records of purchases, returns, and customer interactions.
Use of Cookies
The Company’s Website may use cookies and tracking technologies to enhance user experience. Cookies can be disabled via browser settings; however, this may affect functionality.
Data Sharing
The Company may share data on a need-to-know basis, and confidentiality agreements will be enforced to protect shared information. The Company may share personal data with authorised third parties for the following purposes:
• Processing transactions and delivering Products and Services.
• Complying with legal and regulatory obligations.
• Enhancing the Company’s systems and engagement quality.
Data Retention
Personal data will be retained only for as long as necessary to fulfil the purposes for which it was collected, in compliance with applicable legal requirements and business needs.
Data Protection and Security
The Company employs appropriate technical and organisational measures to safeguard personal data against unauthorised access, misuse, or breaches. Direct Sellers are required to take reasonable steps to secure both their data and that of their customers.
Direct Sellers’ Responsibility for Confidentiality
Direct Sellers must:
• Treat all personal data, including customer information, as private and confidential.
• Use such data solely for fulfilling their obligations under the Direct Seller Enrolment Agreement and this Policy Document.
• Avoid sharing or disclosing personal data to unauthorised individuals or entities without explicit consent from the data owner or the Company.
• Implement adequate safeguards to protect personal data from loss, misuse, or unauthorised access.
• Promptly report any breach or suspected breach of customer confidentiality to the Company’s designated Data Protection Officer.
Rights of Individuals
Individuals whose data is collected by the Company have the following rights:
• Access and Review: To request access to their personal data.
• Correction: To request correction of inaccurate or incomplete data.
• Deletion: To request deletion of data, subject to legal and business constraints.
• Restriction: To restrict data processing under certain circumstances.
The fulfilment of such requests shall be subject to any legitimate and reasonable cause identified by the Company. To the extent reasonably practicable, a request shall be fulfilled by the Company within thirty (30) days from its receipt.
Compliance by Direct Sellers
Direct Sellers are required to:
• Inform customers about the provisions of this privacy policy before sharing their data with the Company.
• Ensure accurate and truthful data entry when registering customers or submitting information.
• Respect customer preferences regarding communication and data usage.
Breach Reporting
Any suspected data breaches must be reported immediately to the Company’s designated Data Protection Officer. The Company will take prompt action to investigate and mitigate risks.
Amendments to this Policy
The Company reserves the right to update this policy at its discretion. Any changes will be communicated by publication of the amended text of this policy on the Company’s website, and such amended terms will thereby replace this version of the policy and will be applicable with immediate effect.
Data Protection Officer
The details of the Company’s Data Protection Officer are as follows:
• Name: [mention details]
• Address: [mention details]
• Phone: [mention details]
• Email: [mention details]