Privacy Policy

Last Updated: November 8, 2025

1. Introduction

At AshAra, we are committed to protecting your privacy and personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your data when you use our website, mobile application, and services. By using AshAra, you consent to the data practices described in this policy.

2. Information We Collect

2.1 Information You Provide Directly

When you create an account or use our services, we collect:

  • Account Information: Name, email address, phone number, password (encrypted)
  • Profile Details: Date of birth, gender, size preferences (optional)
  • Delivery Information: Shipping address, billing address, delivery instructions
  • Payment Information: Processed securely by Razorpay (we do not store full card details)
  • Communication Data: Chat messages with AI assistant, customer support inquiries, reviews
  • Trust Program Data: Rental history, trust score, tier status, points earned/deducted

2.2 Information Collected Automatically

  • Device Information: IP address, browser type, operating system, device ID
  • Usage Data: Pages visited, time spent, search queries, click patterns
  • Cookies & Tracking: Session cookies, authentication tokens, analytics cookies
  • Location Data: Approximate location based on IP address (for delivery zones)
  • Transaction History: Order details, rental periods, payment status, returns

2.3 Information from Third Parties

  • Payment Gateway: Transaction confirmations from Razorpay
  • Delivery Partners: Shipment tracking, delivery status
  • Social Media: If you connect social accounts (optional)
  • Analytics Providers: Aggregated usage statistics

3. How We Use Your Information

3.1 Service Delivery

  • Process orders, rentals, and purchases
  • Calculate Trust & Loyalty discounts
  • Arrange delivery and returns
  • Handle payments and refunds
  • Provide customer support via AI assistant and human agents

3.2 Account Management

  • Create and maintain your account
  • Authenticate your identity
  • Track Trust Score and membership tier
  • Manage order history and preferences

3.3 Communication

  • Send order confirmations, shipping updates, and return reminders
  • Provide transactional notifications (SMS, email, push)
  • Respond to inquiries and support requests
  • Send promotional offers (with your consent)
  • Notify you of policy or service changes

3.4 Personalization & Improvement

  • Recommend products based on your preferences and history
  • Improve AI assistant responses and styling suggestions
  • Analyze usage patterns to enhance user experience
  • Develop new features and services
  • Conduct research and analytics

3.5 Security & Fraud Prevention

  • Detect and prevent fraudulent transactions
  • Monitor suspicious account activity
  • Verify identity for high-value orders
  • Enforce Terms and Conditions
  • Protect against unauthorized access

3.6 Legal Compliance

  • Comply with legal obligations and regulations
  • Respond to lawful requests from authorities
  • Resolve disputes and enforce agreements
  • Maintain records as required by law

4. How We Share Your Information

We do not sell your personal data to third parties. We may share information with:

4.1 Service Providers

  • Razorpay: Payment processing (PCI-DSS compliant)
  • Delivery Partners: Shipping and logistics
  • Cloud Hosting: Data storage and server infrastructure
  • AI Services: Chatbot and styling recommendations
  • Analytics Tools: Usage tracking and insights
  • SMS/Email Providers: Transactional notifications

All third-party providers are contractually obligated to protect your data and use it only for specified purposes.

4.2 Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred to the new entity. You will be notified of any such change.

4.3 Legal Requirements

We may disclose information if required by law, court order, or government request, or to:

  • Protect rights, property, or safety of AshAra, users, or the public
  • Investigate fraud or security breaches
  • Enforce our Terms and Conditions

4.4 With Your Consent

We may share information with other parties if you explicitly consent (e.g., social media sharing, referral programs).

5. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption: SSL/TLS for data in transit, bcrypt for password hashing
  • Secure Storage: Encrypted databases with access controls
  • Authentication: JWT tokens, secure session management
  • Payment Security: PCI-DSS compliant payment processing via Razorpay
  • Access Control: Limited employee access on need-to-know basis
  • Monitoring: Continuous security audits and vulnerability assessments
  • Backups: Regular automated backups with disaster recovery plans

Note: While we strive to protect your data, no system is 100% secure. Please use strong passwords and enable two-factor authentication when available.

6. Your Privacy Rights

6.1 Access & Portability

  • Request a copy of your personal data
  • Download your order history and account information
  • Export data in machine-readable format (CSV/JSON)

6.2 Correction & Update

  • Update your profile information anytime
  • Correct inaccurate data
  • Modify preferences and communication settings

6.3 Deletion (Right to be Forgotten)

  • Request account deletion (subject to legal retention requirements)
  • Data deleted within 30 days of request
  • Some data may be retained for legal/compliance purposes (e.g., tax records, dispute resolution)

6.4 Opt-Out & Consent Withdrawal

  • Unsubscribe from marketing emails (link in every email)
  • Opt out of SMS notifications (reply STOP)
  • Disable cookies via browser settings
  • Revoke social media connections

6.5 How to Exercise Your Rights

Contact us at privacy@ashara.com or use the account settings page. We will respond within 30 days.

7. Cookies & Tracking Technologies

7.1 Types of Cookies We Use

  • Essential Cookies: Required for authentication, shopping cart, security
  • Functional Cookies: Remember preferences, language, location
  • Analytics Cookies: Track usage patterns, page views, click behavior
  • Marketing Cookies: Personalized recommendations, retargeting ads (with consent)

7.2 Managing Cookies

You can control cookies through your browser settings. Note that disabling essential cookies may affect website functionality (e.g., inability to log in or complete orders).

7.3 Third-Party Analytics

We may use Google Analytics, Mixpanel, or similar tools. These services may set their own cookies. Review their privacy policies for details.

8. Data Retention

  • Account Data: Retained while account is active + 1 year after closure
  • Transaction Records: 7 years (legal/tax compliance)
  • Chat Logs: 2 years for service improvement
  • Analytics Data: Aggregated data retained indefinitely
  • Marketing Data: Deleted immediately upon opt-out

9. Children's Privacy

AshAra services are intended for users aged 18 and above. We do not knowingly collect data from minors. If you are under 18, please use our service with parental/guardian consent. If we discover that we have collected data from a minor without consent, we will delete it promptly.

10. International Data Transfers

Your data is primarily stored and processed in India. If you access our service from outside India, please be aware that your data may be transferred to and stored on servers in India. By using AshAra, you consent to such transfers.

We ensure adequate safeguards are in place for international transfers, including standard contractual clauses and compliance with applicable data protection laws.

11. AI & Automated Decision-Making

Our AI assistant uses your data to provide personalized recommendations and support. Key points:

  • Chat conversations are analyzed to improve responses
  • Trust Score is calculated automatically based on rental behavior
  • Product recommendations use browsing history and preferences
  • You can request human review of automated decisions

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last Updated" date. For material changes, we will notify you via:

  • Email notification to registered users
  • Prominent notice on the website
  • In-app notification (mobile app users)

Continued use of our services after changes indicates acceptance of the updated policy.

13. Contact Us

For privacy-related questions, concerns, or requests, contact us:

  • Privacy Officer: privacy@ashara.com
  • Customer Support: support@ashara.com
  • Phone: +91-XXXX-XXXXXX
  • Address: AshAra Fashions Pvt. Ltd., [Your Address], India

14. Compliance & Certifications

AshAra is committed to complying with applicable data protection laws, including:

  • Information Technology Act, 2000 (India)
  • Information Technology (Reasonable Security Practices) Rules, 2011
  • Payment Card Industry Data Security Standard (PCI-DSS) via Razorpay

Your privacy matters to us. We are committed to protecting your personal information and being transparent about how we use it.

Version 1.0 | Effective November 8, 2025