Privacy Policy

Understanding Our Personal Data Security Policy

INTRODUCTION

Rupurva ("we," "us," or "our") operates the Rupurva website and mobile app.

This Privacy Policy explains:

What information we collect

How we use it

How we protect it

Your rights regarding your data

By using Rupurva, you agree to this policy.

1. INFORMATION WE COLLECT

A. Information You Provide:

Account Registration:

Name

Email address

Phone number

Password

Age/date of birth

Gender (optional)

Address

Order Information:

Shipping address

Billing address

Payment information (processed by secure payment gateway)

Purchase history

Preferences

Communication:

Messages sent to customer support

Email correspondence

Chat messages

Survey responses

Optional Information:

Height and weight (to track progress)

Health information (to provide personalized recommendations)

Photo/testimonials (if you choose to share)

B. Information Collected Automatically:

Website Usage:

IP address

Browser type and version

Pages visited

Time spent on pages

Referring website

Device type (mobile, desktop, tablet)

Cookies:

Session cookies (temporary, expire after closing browser)

Persistent cookies (saved on device for future visits)

Analytics cookies (track behavior for improvement)

Tracking Technologies:

Google Analytics (understand how people use site)

Facebook Pixel (for advertising targeting)

Email tracking (when you open emails, click links)

2. HOW WE USE YOUR INFORMATION

Account Management:

Create and manage your account

Process orders and payments

Send order confirmations and shipping updates

Enable account login

Communication:

Send marketing emails (with opt-out option)

Respond to customer inquiries

Send promotional offers and announcements

Send educational content about height growth

Personalization:

Recommend products based on purchase history

Customize website experience

Show relevant content

Provide personalized recommendations

Analytics:

Understand how people use website

Identify popular content

Track conversion rates

Improve user experience

Legal Compliance:

Comply with laws and regulations

Protect against fraud

Enforce terms and conditions

Respond to legal requests

Marketing:

Send promotional emails

Display targeted ads

Conduct surveys

Build customer insights

3. DATA SHARING

We DO NOT sell or rent your data to third parties.

We DO share data with:

Service Providers:

Payment processors (Razorpay, PayU, etc.)

Email service providers (MailChimp, Brevo, etc.)

Shipping/logistics partners

Analytics providers (Google Analytics)

Advertising networks (Google Ads, Facebook Ads)

These partners are bound by:

Confidentiality agreements

Data processing agreements

GDPR/CCPA compliance obligations

Similar privacy standards

Legal Requirements:

Law enforcement (if legally required)

Court orders

Government agencies

To protect Rupurva or others' rights

Business Transfers:

If Rupurva is acquired or merged

Data may be transferred as part of asset sale

You will be notified of any changes

4. DATA SECURITY

We protect your data with:

Technical Measures:

SSL/TLS encryption on all pages

Secure payment gateway (PCI DSS certified)

Firewall protection

Regular security updates

Intrusion detection systems

Administrative Measures:

Limited employee access (only who needs it)

Confidentiality agreements

Background checks

Secure data storage

Regular security audits

Physical Security:

Secured server facilities

Access controls

Backup systems

Disaster recovery plan

However, NO security system is 100% secure. We cannot guarantee absolute security. Use strong passwords and protect your login credentials.

5. DATA RETENTION

We retain your data:

Account information: While you're a customer + 2 years after account closure

Order information: 7 years (for tax/legal compliance)

Email communications: 3 years

Marketing data: Until you unsubscribe

Analytics data: 26 months (Google Analytics default)

Payment information: NOT retained (payment gateway handles this)

You can request deletion:

Contact privacy@rupurva.in

We will delete within 30 days (except where legally required to retain)

6. YOUR RIGHTS

You have the right to:

Access:

Request copy of all data we hold about you

Free of charge

Within 30 days

Correction:

Update or correct your information

Via account settings or by contacting us

Deletion:

Request deletion of your data

We will comply unless legally required to retain

May take 30 days

Opt-Out:

Unsubscribe from marketing emails (link in every email)

Turn off tracking cookies (browser settings)

Request no targeted advertising

We will honor within 7 days

Data Portability:

Request download of all your data

In a standard format

We will provide within 30 days

7. COOKIES & TRACKING

Cookies we use:

Cookie Purpose Type Duration
Session ID Maintain login Essential Session
Preferences Remember your choices Functional 1 year
Analytics Understand usage Analytics 26 months
Marketing Target ads Marketing 30+ days

How to manage cookies:

Browser Settings:

Chrome: Settings → Privacy → Cookies

Firefox: Preferences → Privacy → Cookies

Safari: Preferences → Privacy → Cookies

Disable Cookies:

You can disable most cookies

May affect website functionality

You can still access Rupurva (some features limited)

Clear Cookies:

Clear browsing data regularly

Clears stored cookies

8. THIRD-PARTY LINKS

Rupurva website may contain links to third-party sites:

Amazon

Review websites

Partner websites

We are NOT responsible for:

Third-party privacy practices

Content on third-party sites

Data collected by third parties

Review their privacy policies before sharing information.

9. MARKETING COMMUNICATIONS

By default, we send:

Promotional emails

Educational content

Product updates

Exclusive offers

How to opt-out:

Email:

Click "Unsubscribe" link in every email

Effective within 7 days

Or request at support@rupurva.in

SMS:

Reply "STOP" to marketing SMS

We will stop sending within 7 days

Push Notifications (Mobile App):

Go to app settings → Notifications → Toggle off

We will NOT:

Send unwanted marketing after unsubscribe

Use your data for marketing without consent

Sell your data to marketers

10. CHILDREN'S PRIVACY

Rupurva products are designed for ages 12+.

If child uses Rupurva:

Parent/guardian consent required

Parent/guardian receives all communications

Parent/guardian can request data deletion

No marketing to children under 13

If we learn a child used Rupurva without consent:

We will delete their information

We will notify parents/guardians

11. GDPR COMPLIANCE (EU Users)

If you're in the EU:

You have additional rights under GDPR

You can request data access, correction, deletion

You can object to processing

You can withdraw consent anytime

Contact: privacy@rupurva.in for GDPR requests

12. CCPA COMPLIANCE (California Users)

If you're in California:

You have rights under California Consumer Privacy Act

You can request data access and deletion

You can opt-out of sale of data

We do not sell data, but you can request confirmation

Contact: privacy@rupurva.in for CCPA requests

13. DATA BREACH NOTIFICATION

If we experience a data breach:

We will notify affected users within 30 days

Notification via email

Explain what happened and what to do

Provide breach details and response

Notification includes:

Type of data breached

How it happened

Steps we're taking to fix it

Steps you should take to protect yourself

14. POLICY UPDATES

We may update this privacy policy:

When we change practices

When we add new services

When law changes

Changes are effective when:

Posted on website

Major changes: Email notification sent

Your continued use = acceptance of new policy

15. CONTACT US

For privacy questions or concerns:

Email: support@rupurva.in

Phone: +91-7428486945

Mailing Address:
Rupurva | Wellness Made Simple
Layout Tanniruhalla, Hunsinkere Main Rd, near GM School, Penshan Mohalla, Hassan, Karnataka 573201

We will respond within 7 days.

Last Updated: December 2025

 

Commitment to Safeguarding Your Personal Data

 

 

Our personal data security policy outlines our unwavering commitment to protecting the personal information that you entrust to us. We implement strict measures to guard against unauthorized access, data breaches, and misuse. By continuously refining our security practices, we ensure that your data is stored securely and handled with the utmost care. This commitment reflects our dedication to maintaining your trust and complying with applicable privacy laws and regulations.

 

 

Data Collection and Usage Transparency

 

 

Transparency is a cornerstone of our personal data security policy. We clearly explain what personal data we collect, how we use it, and the legal basis for processing this information. This policy ensures users understand that their data is collected solely for specific purposes, such as improving user experience and maintaining service functionality. We avoid collecting unnecessary data and always prioritize your privacy and control over your personal information.

 

 

Secure Data Storage and Access Controls

 

 

To uphold our personal data security policy, we utilize advanced technical and organizational measures to secure data storage. This includes encryption, firewalls, and regular security audits. Access to personal data is strictly limited to authorized personnel who require it for legitimate business functions. We continuously monitor our security infrastructure and update protocols to prevent vulnerabilities, ensuring that your personal information remains protected from potential threats.