Privacy Policy

Introduction

("Gosprint Logistics Private Limited.") ("Company" or "Sentry" or "We" or "Us" or "Our") understands and recognizes your right to confidentiality and is committed to protecting and preserving your privacy.

Pursuant to such commitment, the Company has developed this Privacy Policy ("Policy") for the handling of your Information, as defined and provided hereunder. The Company is committed to protecting the privacy and security of the personal data entrusted with us. This Policy is intended to describe how we collect, use and store Personal Data from customers, vendors, website visitors, business partners and other individuals (collectively "User", "you", or "your") to manage our relationship with you and fulfil our obligations to you through the use of the Services (as defined below) and/or your interactions with the Company.

Subject to the provisions of this Privacy Policy, the applicable Terms and all applicable laws, the Company may collect, receive, store, deal in, handle and/or share Personal Information (as defined hereinafter) including Sensitive Personal Data (as defined hereinafter) and Non-Personal Information (as defined hereinafter) pertaining to the Users online and/or offline use of the Services. This Privacy Policy outlines the Information the Company may process and/or use to improve the User experience while using the Services.

You must be in a position to provide informed consent prior to providing any Information required for the use of the Services. You agree that by purchasing our Services, accessing our Website and Platform, you consent to us collecting, receiving, storing, possessing, dealing with, sharing and/or handling your Information in accordance with the terms of this Privacy Policy. Accordingly, you are required to read and understand this Privacy Policy, before submitting any Information. Please note that your access to the Services is conditional upon your consenting to this Privacy Policy.

Definitions

For the purposes of this Privacy Policy, unless the context otherwise requires:

"Account" shall mean the online account created on the Platform by the User for use of the Services (as defined below).

"Force Majeure Event" shall mean any event that is beyond the reasonable control of the Company and shall include, without limitation, sabotage, fire, flood, explosion, act of God, civil commotion, pandemics, strikes or industrial action of any kind, riots, insurrection, war, acts of government, computer hacking, unauthorized access to your mobile or storage device, crashes, breach of security and encryption, power or electricity failure or unavailability of adequate power or electricity, or any unauthorized act of third party service provider engaged by the Company in accordance with this Privacy Policy.

"Data Subject" shall mean any individual person who can be identified, directly or indirectly, via an identifier such as a name, an ID number, contact details, or location data.

"Information" shall mean collectively Non-Personal Information (as defined below) and Personal Information (as defined below).

"Non-Personal Information" shall mean and include:

  • the type of device used by the User;
  • the website that referred you to the Platform and the exit page; and
  • unique identifiers, which are used to collect and store information about an app or device, such as preferred language, time zone, screen size, browser and other settings.

"Personal Information" means any information relating to the Users which, either directly or indirectly, in combination with other information available or likely to be available with the Company, is capable of identifying such Users, and includes Sensitive Personal Data (as defined below) of the User. Personal Information shall include, for example, name, mobile number, the internet protocol address and/or geographic location of the User, any files consisting of audio, visual, and/or audio-visual information provided by the User to the Company, or which the Company gains access to pursuant to or in connection with the User using the Services.

"Platform" means the Website and any other feature or tool provided and operated by Sentry, including any application that may be launched by Sentry..

"Services" means technology platform, logistics aggregation, and delivery enablement tools offered by the Company, including but not limited to order management, courier allocation, shipment tracking, API services, and related software solutions

"Sensitive Personal Data" means such personal information relating to passwords, financial information such as bank account or credit card or other payment instrument details, physical, mental or physiological health condition, sexual orientation, medical records and history, biometric information, etc.

"Third Party" means any person or entity other than you, or the Company.

"User" (or, "you", "your", and "yourself") means any individual who is a natural person aged 18 (eighteen) years or above, and who is competent and capable of contracting within the meaning of the Indian Contract Act, 1872 and accesses our Website and/or purchases the Services. Such an individual, where applicable, includes the parent/legal guardian or any other authorized individual who facilitates the use of the Services for a minor user.

Information Collection

When Do We Collect Information and What Types of Information Do We Collect?

Personal Information

While using our Services, we may ask you to provide us with certain personally identifiable information (also known as PII or Personal Information) that can be used to contact or identify you. Personally Identifiable Information may include, but is not limited to:

  • Email address
  • First name and Last name
  • Phone number
  • Address, State, Province, ZIP/Postal code, City
  • KYC Details / Documents
  • Geographical Location
  • Payment Information
  • Customer Personal Information
  • Shipping and delivery information

You may also be required to provide us with Personal Information of another Data Subject, in such scenario, you must ensure that you are authorized to do so and that such Data Subject is informed about this Policy.

While you can browse some sections of our website without creating an account or registering as a member, certain activities do require registration. We collect personally identifiable information from you when you set up an Account or register on our website. We use your contact information to send you marketing materials that may be of your interest.

You can choose not to provide any Personal Information that we may request of you, but, in general, the Personal Information we request is required in order to provide you with access to and use of the Services, and the lack of such information may prevent us from doing so and impact the service capability and certain features of the Services.

Non- Personal Identification/ Other Information

It is clarified that any data which does not reveal your specific identity, does not relate to an identified or identifiable individual, information that is publicly available, information about software and hardware usage, information in relation to the products you purchase or who you purchase them from, or any anonymised or aggregated data ("Other Information") is not considered as PII or Personal Information.

We may ask you to provide certain additional information about yourself on a case-to-case basis in relation to our Services. This will also include passwords created for using our Services, and other information related to Password recovery, or any biometric information.

Non-Personal Technical Information

In addition, the Platform may collect certain Information automatically, including, but not limited to information relating to your website interactions, clickstream information to, through, and from our website (including date and time), products viewed or searched for; page response times, download errors, length of visits to certain pages, page interaction information (such as scrolling, clicks, and mouse-overs), or methods used to browse away from the page ("Usage Data"). This Usage Data may also include information such as:

  • The type of handheld device used;
  • The handheld's device unique device ID;
  • The IP address of such handheld device;
  • Such handheld's device operating system;
  • The type of internet browsers you use; and
  • You standard web log information.

We primarily use device and browser data to determine the source of our web traffic for purposes of enhancing user experience and marketing efforts.

Information Collected when you Install our app on your website or Shopify account

While providing various Services, we may collect any and all of the following information depending upon the nature of Service you have opted for:

  • Order details, customer information (names, email addresses, and phone numbers) and shipping addresses in order to fulfil your orders and facilitate cash on delivery services.
  • Product Information like product names, inventory levels, product dimensions and other similar and necessary information to select the optimal courier partner.
  • Fulfilment Information including tracking numbers, carrier information and delivery status to provide real-time updates to the Users (sellers and ultimate end users).

Cookie Policy

What are Cookies?

A cookie is a small file which asks permission to be placed on a computer's or device's hard drive. Once you agree, the file is added, and the cookie helps analyze web traffic or let's know when you visit a particular site. Cookies allow web applications to respond to you as an individual. The web application can tailor its operations to your needs, likes and dislikes by gathering and remembering information about your preferences.

How do we Use Cookies?

We use traffic log cookies to identify which pages are being used. This helps us analyze data about webpage traffic and improve the website in order to tailor it to customer needs. We only use this information for statistical analysis purposes and then the data is removed from the system.

Overall, cookies help us provide you with a better platform, by enabling us to monitor which webpages you find useful and which you do not. A cookie in no way gives us access to your computer or any device or any Information about you, other than the data shared with us. You can choose to accept or decline cookies.

How to Manage Cookies?

Most web browsers automatically accept cookies, but you can usually modify your browser setting to decline cookies, if you prefer. Please refer to your web-browser provider or system guide for detailed information on disabling cookies. However, in case you choose to disable the cookies, you may be prevented from taking full advantage of the platform.

Purposes of Collecting, Storing and Using Your Information and the Manner of Such Usage

Processing Orders

The order details, customer details and product information are used to verify, process and fulfil your orders in an efficient manner along with providing cash on delivery options with call verification.

Facilitating Shipping & Delivery

Shipping fulfilment data is used to facilitate the shipping process, provide tracking information and ensure timely delivery. The order details and customer information are also used to find the optimal courier partners.

Communication With You

We use your Personal Information to communicate with you via different channels (such as by phone, email, chat, WhatsApp) in relation to our Services and to follow up with you on any requirements for our services that you have indicated an interest in. We send you transaction related updates through third party platforms such as WhatsApp to update you on the status of your order / transaction. You can always opt-out of such communication, however, you may then be unable to receive real time updates of your order status. We also use your data to notify you about changes to our website or services.

Troubleshoot And Customer Support

We also use collected data to provide customer support and respond to you about your requests, questions and comments, and update our records about you.

Identity Proof Details / Documents

We may collect your Aadhaar Card number, GSTIN, PAN Card number, or Driving License number, to verify your identity and prevent misuse of our Services. Please note that you are not obligated to provide your Aadhaar details and you can choose any other document, such as your PAN Card, or Driving License (as per the options provided) as identity proof. If you do choose to provide us with your Aadhaar number, please note that we may use it for identity verification and Aadhaar based authentication with UIDAI through third party service providers. By agreeing to provide your details you expressly consent to our use of the same.

Personalization

We use your data to understand your preferences and to enhance and customise your experience by offering tailored services.

Develop New Products and Services

We use the data collected (including Personal Information and Other Information) to evaluate, optimise, develop, and improve our business to bring you enhanced, efficient, and cost-effective products and services. This includes developing new products and services, determining the effectiveness of our sales, analysing and enhancing our products, services, websites and applications and improving and maintaining the quality of our customer services.

Data Analysis and Improving Our Services

We use your Personal Information and Other Information to perform market analysis, consumer search and analytics, trend analysis and financial analysis to develop, enhance and improve the Services we provide to you.

Information About New Offers

We would like to send you information about our products and services and any new offers that we think you might benefit from. If you have agreed to receive this information, you may always opt out at a later date by using the "Opt-out" or "Unsubscribe" functionality or by directly contacting us. We may also use your information to contact you with updates to our Services, website or mobile applications.

Post Comments & Testimonials

If you allow us to or where we have a legitimate interest, we may use your Personal Information to post comments and testimonials you provide to us on our website and other platforms.

Fraud Prevention

We use the data collected to ensure the security of our networks and information systems, identify and prevent fraud and other prohibited or illegal activities. We may also use scoring methods to identify and manage business risks such as credit risks.

Comply With Legal Obligations

In some cases, we collect and use your data to comply with legal and regulatory regulations, including customs and GST requirements.

We may use and share personal information as we believe necessary or appropriate to comply with laws that apply to our Company and to support our bank partners' compliance with applicable law, including anti-money laundering and sanctions screening rules.

We may use and share personal information to respond to lawful requests and legal process, such as to respond to subpoenas or requests from government authorities. We may use personal information and disclose it to law enforcement, government authorities, and private parties as we believe necessary or appropriate to:

  • protect our or others' rights, privacy, safety or property (including by making and defending legal claims);
  • audit our internal processes for compliance with legal and contractual requirements;
  • enforce the terms and conditions that govern the Services; and
  • prevent, identify, investigate and deter fraudulent, harmful, unauthorized, unethical or illegal activity, including cyberattacks and identity theft.

Storing and Sharing of Personal Data

Your information will be primarily stored in electronic form. However, certain data may also be stored in physical form.

We will only share your Personal Data with third parties where required by law or to our employees, contractors, designated agents, or third-party service providers who require it to assist us with administering our relationship with you, including providing services to us or on our behalf. Third-party service providers include, but are not limited to, those who may host our website, store data, provide back-up services, provide customer support, process customer payments, provide data analytic services, conduct surveys or obtain your feedback.

We require all of our third-party service providers, by written contract, to implement appropriate security measures to protect your Personal Data consistent with our policies and any data security obligations applicable to us as your service provider. We do not permit our third-party service providers to use your Personal Data for their own purposes; we only permit them to use your Personal Data for specified purposes in accordance with our explicit instructions. Details about our trusted third-party service providers is available upon written request.

The Company will take all steps reasonably necessary to ensure that your data is treated securely and in accordance with this Privacy Policy. Before we engage any third-party vendor, we check their security practices and regularly conduct their security and privacy assessments. These third parties have access to your Personal Information only to perform these tasks on our behalf and are obligated not to disclose or use it for any other purpose whatsoever.

We may also disclose your Personal Data to third parties for the following purposes:

service providers, vendors, and other processors – We could share your Personal Data with service providers, agents, vendors, contractors, or any other processors who conduct functions on behalf of our company.

Business Affiliates and Subsidiaries – We may reveal the Personal Data you provide on our website to any of our existing or future company affiliates, divisions, or subsidiaries. These entities and affiliates may market to you as a result of such sharing unless you explicitly opt-out.

Advertisers and Analytics Providers – We share information with advertisers and analytics providers who help us to execute and evaluate relevant advertising. The data we share with them is often collected through cookies and any other tracking mechanisms employed on our website.

Business Partners – Disclosure and sharing of your Personal Information may be made to business partners (whose privacy practices we do not have control over or are responsible/liable for) with whom we offer our products and services, third-party vendors who provide services or functions on our behalf. We may also disclose and share aggregated and non-personally identifiable information developed using the information you provide with our business partners, clients, and the public. Further, we may authorize third-party vendors to collect and analyze information on our behalf, including information necessary to operate our Website's features.

Business-Purpose Third Parties – We may disclose information to third-parties for business purposes, including those that directly or indirectly affect or enable commercial transactions. These business-purpose disclosures will be done under-documented contracts describing the purpose for disclosure and requiring recipients to maintain personal information confidentiality. Further, the contracts will prohibit the use of shared information for any other purpose other than what's specified in the contract.

Legal Responses – We may share your Personal Data to comply with the law, court order, judicial proceedings, or any other legal process like responding to a subpoena or court order. Your information may also be disclosed concerning legal proceedings, like when our company is defending its rights in a court of law.

Business Transactions – We may transfer the Personal Information you share with us to complete business transactions. The transfer process may involve sharing the information you provide us with auditors, lenders, and third-party advisors who may include business consultants and attorneys.

Protection Purposes – We may share your information when we deem it necessary to prevent, investigate, or take action regarding suspected fraud, illegal activities, potential threats to a person's safety, Terms of Use or Policy violations, or as evidence in litigations that involve our Company.

Security of Data

Security Practices in place

The security of your Personal Information is important to us. The Company strives to ensure the security of this Personal Information and to protect it against unauthorized access or unauthorized alteration, disclosure, loss, misuse or destruction. The Company adopts reasonable security practices and procedures, including physical, managerial, operational and technical security measures, as mandated under applicable laws for the protection of your Personal Information. Provided that your right to claim damages shall be limited to the right to claim only statutory damages under the Information Technology Act, 2000 and you hereby waive and release the Company and all the Company's entities from any claim of damages under contract or under tort, to the extent permissible under applicable laws. If we become aware that your Personal Information has been accessed or disclosed in a manner not in accordance with this Privacy Policy, we will use reasonable efforts to notify you of the nature and extent of such access or disclosure (to the extent we know of such access or disclosure) as soon as reasonably possible and as permitted by, and in accordance with, applicable laws.

Limitation of Access to Information and Confidentiality Obligations

The Company allows employees, agents, contractors, and other Third Parties access to Personal Information only on a need-to-know basis. All service providers, and other Third Parties, who are permitted to process Personal Information based on the Company's instructions are subject to a duty of confidentiality and are required to be compliant with and demonstrate compliance with this Privacy Policy and applicable data protection laws.

Links to Third Party Solutions

Some solutions may link you or enable you to obtain certain services from third parties, including for the purpose of making a payment or to share content through social media. When you do so, your Personal Information may be collected by those third parties, and not by us. We recommend that when you obtain such solutions from third parties, you review their privacy policy as the security of your data will be subject to their privacy terms rather than this Privacy Policy. We will not be responsible or liable in any manner with respect to how such third-party sites collect and/ or use your information. We shall not be liable in any way for direct or indirect damages caused by a wrongful or improper use of the personal information by a third party.

At all times you shall comply with safety standards, for instance by avoiding all non-authorized access to your login and access code. You are solely responsible for the use of the Website on your computer, IP-address and identification data, as well as for its confidentiality. You should not share your user name, OTP, or other security information for your account with anyone.

Limitation of Liability

While we constantly endeavour to take all reasonable and appropriate steps to ensure the security of any Personal Information which we hold and prevent unauthorized access or disclosure of the same, internet and computer networks are not fully secure, and we cannot provide any absolute assurance regarding the security of your Personal Information. Hence, you agree and acknowledge that, notwithstanding anything contained in this Privacy Policy or elsewhere, to the fullest extent permissible under applicable laws, the Company shall not be held responsible for any loss, damage, or misuse, of your Personal Information to the extent it is attributable to a force majeure event.

Data of Children (Below 18 Years of Age)

Our Services are not aimed at children (under the age of 18) and do not provide information specifically targeting children. If you are under 18 you may use our website and our Services only with the involvement of a parent or legal guardian. However, if you have visited our website or used our Services, we may store your details as set out in this Privacy Policy.

We do not knowingly collect personal information through the Services from children younger than the legally qualifiable age under applicable data privacy laws in different jurisdictions. If we become aware that we have unknowingly collected personally identifiable information from a child younger than indicated age prevalent in the appropriate jurisdiction, we will make reasonable efforts to delete such information from our records.

Data Retention

Except as otherwise permitted or required by applicable law or regulation, we will only retain your Personal Data for as long as necessary to fulfil the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements.

Under some circumstances we may anonymize your Personal Data so that it can no longer be associated with you. We reserve the right to use such anonymous and de-identified data for any legitimate business purpose without further notice to you or your consent.

DPIA Obligations

The Parties acknowledge that, where required under applicable data protection laws, a Data Protection Impact Assessment ("DPIA") must be conducted prior to initiating any processing activity that is likely to result in a high risk to the rights and freedoms of data subjects.

The user agrees to provide all reasonable assistance and cooperation to the Company, at no additional cost, in the preparation and completion of any DPIA, including but not limited to:

  • Providing a detailed description of the envisaged data processing operations;
  • Supplying relevant information about the nature, scope, context and purposes of the processing.
  • Evaluating the necessity and proportionality of the processing;
  • Assisting in identifying and assessing the risks to individuals;
  • Proposing and implementing appropriate technical and organisational safeguards to mitigate such risks.

Where appropriate, the Company may consult with supervisory authorities prior to processing and shall notify the User of any changes required as a result of such consultation. The company shall, in good faith, implement any additional measures requested to ensure ongoing compliance with applicable data protection laws.

Data Breach Notification and Escalation

Notification Obligation

In the event of any actual or suspected Personal Data Breach affecting Personal Data processed under this Agreement, the Company shall:

  • Notify the user in writing without undue delay and in any event within 24 (twenty-four) hours of becoming aware of the breach;
  • Include, to the extent known at the time:
    • a description of the nature of the breach;
    • the categories and approximate number of data subjects affected;
    • the categories and approximate volume of personal data affected;
    • the likely consequences of the breach; and
    • the measures taken or proposed to address the breach and mitigate its possible adverse effects.

Investigation and Containment

Upon discovery of a breach, the company shall immediately:

  • Initiate an internal investigation to determine the scope, root cause, and impact of the breach;
  • Take all necessary steps to contain and mitigate the breach;
  • Maintain detailed records of the breach and corrective actions taken

Ongoing Updates

The Company shall:

  • Provide regular updates (at least once every 12 hours until containment, or as otherwise agreed) to the user on investigation status, mitigation efforts, and impact assessment;
  • Cooperate fully with any investigation or inquiry conducted by the Company or any regulator.

Escalation & Point of Contact

The Company shall escalate the matter immediately to the following:

Primary Contact: Devanshu Mishra, Founders Office, devanshu.mishra@goswift.in

If no response is received from the primary contact within 4 hours, escalation must occur to:

Escalation Officer: Debanshu Sinha, Director, debanshu@goswift.in

Regulatory & Data Subject Notification

Where required by applicable law, the Company shall be responsible for notifying:

  • Relevant data protection authorities (e.g., within 72 hours as per GDPR; as soon as practicable under DPDP Act), and
  • Affected data subjects, if there is a likely risk to their rights or freedoms.

The User shall assist in preparing such notifications, including impact assessments and suggested remedial measures.

No Unauthorized Disclosure

The User shall not make any public announcement or notification regarding the breach without prior written consent from the Company, except where legally required, in which case prior intimation shall be provided.

Costs and Liability

Unless the breach was caused solely by the Company, all reasonable costs incurred by the User in relation to investigation, containment, and mitigation of the breach shall be borne by the User.

Rights Available to You as Data Subjects

You may exercise any of the rights described in this section by sending an email to hello@gosentry.in. Please note that we may ask to verify your identity before taking further action on your request.

Rectification of Inaccurate or Incomplete Information.

You may contact us at the email address provided above to review your Personal Information and/or update, correct or amend inaccurate, deficient or incomplete Personal Information, and we will make reasonable efforts to update the same (to the extent feasible for the Company).

Please note that while you have the right to ask us to correct inaccurate, deficient or incomplete Personal Information concerning you, you are responsible for keeping your Personal Information up-to-date, to the extent you can update the same within your Account.

Data Retention and Erasure.

If you no longer want the Company to use your Personal Information to provide the Services (or any part thereof) to you, or you wish to close your Account, you can request that we erase this Personal Information and close your Account. Provided, however, any requests for erasure, or closure of Account, will be acted upon in accordance with applicable laws and may adversely impact the Company's ability to provide the Services to you. You hereby agree and acknowledge that a mere request for erasure does not guarantee an immediate erasure of Personal Information, and all such requests will be acted upon in accordance with applicable laws.

Please note that if you request the erasure of your Personal Information:

  • we may retain some of your Personal Information as necessary for protecting our legitimate business interests, such as fraud detection and prevention and enhancing safety. For example, if we suspend an Account for fraud or safety reasons, we may retain certain information from that Account to prevent that User from opening a new Account in the future.
  • we retain User information for a period of 180 (One Hundred and Eighty) days after cancellation or termination of such User accounts to comply with applicable laws.
  • we will not be required to delete any information which has been de-identified or disassociated with personal identifiers such that it can no longer be used to reasonably identify a particular individual.
  • the Company will not be able to provide you with the Services (or any part thereof) and you should cease and desist from using the Services.

Consent; Withdrawing Consent and Restriction of Processing.

In the event you do not consent to sharing your Personal Information with us for provision of the Services (or any part thereof), we reserve the right to restrict or deny the provision of such Services (or any part thereof).

Where you have provided your consent to the processing of your Personal Information by the Company you may withdraw your consent by sending a communication to our email address at hello@gosentry.in specifying in reasonable detail the consent you are withdrawing. Please note that the withdrawal of your consent does not affect the lawfulness of any processing activities based on such consent before its withdrawal. If you withdraw your consent and restrict processing of any Personal Information, the Company may not be able to provide you with the Services (or any part thereof) and you may be required to cease to use the Services (or any part thereof).

Please note that if you withdraw your consent to process your Personal Information in accordance with the Privacy Policy, we will not be required to delete any such information which has been anonymized, de-identified or disassociated with personal identifiers such that it can no longer be used to reasonably identify a particular individual.

Grievance Officer

If you find any discrepancies or have any grievances in relation to the Services, or the collection, processing, storage, use, disclosure and transfer of your Personal Information under this Privacy Policy or any other applicable terms and conditions or policies of the Company, as may be applicable, please contact the following:

Name: Debanshu

E-mail: legal@goswift.in

Working Days: Monday to Friday

Working Hours: 9 AM to 5 PM

We will strive to address your feedback and concerns in a timely and effective manner and within the time period prescribed under applicable law. The details of the grievance officer may be changed by us from time to time by updating this Privacy Policy.

Changes to this Policy

We may update the Company's Privacy Policy from time to time. The revised and most current version of the policy will be updated and posted on the website directly. If we make material changes to the Policy, we will provide notification by updating the "Last Updated" date at the top of the Policy and posting the new Policy to our website or other Services. You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.

Your Consent

By using our website, applications, or our Services, you consent to our Privacy Policy. You will also be asked to review and consent to our Privacy when you create an account with us.

Chart a course for sustainable business growth