Privacy Policy for Swaha Swadha Spiritual Services

1. Information We Collect

Personal Information:

Name, contact details (phone number, email address), date of birth, address

Birth details (date, time, location) for astrological services

Details related to service bookings (type of pooja, venue, schedule)

Payment information and transaction details

Identification for age verification when required

Images, videos, or audio provided during consultations or classes

Non-Personal Information:

Browser type, device information, IP addresses, usage patterns on website or app

Location data for delivery and service customization (with consent)

2. Why We Collect Information

To provide and personalize spiritual services such as pooja ceremonies, astrology consultation, Vastu advice, and counselling.

To schedule, confirm, and deliver services efficiently and accurately

To manage transactions, payments, refunds, and customer support

To send important updates, reminders, promotional offers, and newsletters (with opt-in consent)

To comply with legal, tax, and regulatory obligations

To enhance website/app functionality and improve user experience

3. Purpose of Collection

Ensuring correct and personalized service delivery based on individual requirements and birth details

Facilitating secure payment processing and record-keeping

Communicating with users regarding service status, changes, and support

Verifying user identity and eligibility, particularly age restrictions

Marketing and informing customers about new services, festivals, and promotions (subject to user consent)

Maintaining operational integrity and security of the platform

4. How We Store Your Information

All personal data is stored securely on encrypted servers located in India,with data protection standards.

Access to personal data is restricted to authorized employees and verified service providers bound by confidentiality agreements

Payment data is processed through certified secure payment gateways; no sensitive payment details are stored on our servers

Physical documents or identification proofs, if collected, are securely stored and destroyed post-verification as per data minimization principles

Data backups and security protocols are in place to prevent unauthorized access, accidental loss, or damage

5. Data Retention and Deletion

Personal information is retained only as long as necessary to fulfill service obligations and legal compliance

Users may request access to their data or request deletion by contacting the support team; all requests will be processed within stipulated regulatory timelines

Aggregate analytics data (non-personally identifiable) may be retained indefinitely for business insights

6. Sharing of Information

We do not sell or trade personal information to third parties

Information may be shared with verified third-party service providers involved in service delivery, payment processing, or regulatory compliance

Legal disclosure may be made under valid court orders, government requests, or fraud prevention

Anonymized, aggregated data may be used for marketing, trend analysis, or platform improvement without revealing user identities

7. Your Rights

Right to access, correct, or update your personal information

Right to withdraw consent where processing is consent-based

Right to data portability in a commonly used electronic format

Right to lodge complaints with data protection authorities for any breaches

8. Security Measures

Use of SSL encryption for all online transactions and communications

Regular security audits and staff training on data privacy

Incident response protocols for potential data breaches

9. Contact Details

For any questions, concerns, or requests related to privacy and data protection, users can contact:

Email: info@swahaswadha.com

Phone: +91-92209-44407

This Privacy Policy is subject to periodic updates. Users will be notified of material changes via website notices or direct communication before changes take effect.

This detailed privacy policy ensures transparency, protects user rights, and complies with applicable data protection laws relevant to the spiritual services domain in India.

Swaha Swadha employs comprehensive security measures to protect users’ personal and sensitive information, ensuring confidentiality, integrity, and availability of data at all times. These measures reflect industry best practices and comply with relevant data protection laws, providing users with trust and confidence in using the platform’s spiritual services.

Security Measures Used by Swaha Swadha

1. Data Encryption

All user data transmitted between users’ devices and Swaha Swadha’s servers is encrypted using Secure Socket Layer (SSL)/Transport Layer Security (TLS) protocols. This ensures that sensitive information such as personal details, birth data, and payment information is securely transmitted, preventing interception or unauthorized access during transit.

Sensitive data stored by Swaha Swadha, including user profiles and service records, is encrypted at rest using advanced encryption standards (AES), adding a layer of protection against data breaches.

2. Secure Payment Processing

Swaha Swadha integrates with certified payment gateways that comply with Payment Card Industry Data Security Standard (PCI DSS). This ensures that payment data is handled securely and that payment card information is neither stored nor processed directly on Swaha Swadha’s servers.

Tokenization is employed to minimize payment data exposure by replacing sensitive payment details with non-sensitive tokens during transaction processing.

3. Access Controls and Authentication

Strict access controls are in place to limit data access to only authorized personnel and verified service providers involved in service delivery.

Role-based access ensures that employees can only access the data necessary for their roles.

Multi-factor authentication (MFA) is used for administrative access to critical systems, adding an extra layer of security beyond passwords.

4. Regular Security Audits and Vulnerability Management

Swaha Swadha conducts periodic internal and external security audits, vulnerability assessments, and penetration testing to identify and remediate security weaknesses in the platform, infrastructure, and applications.

Timely patching and updating of software and security systems are performed to protect against known vulnerabilities.

5. Secure Data Storage and Backup

User data is stored on secure, encrypted cloud servers located in regions with robust data protection regulations.

Regular data backups are created to ensure business continuity and disaster recovery in case of data loss or system failures.

Backups are securely stored, with access limited to authorized personnel.

6. Confidentiality and Non-Disclosure Agreements

All employees, contractors, and service providers who handle user data are required to sign confidentiality and non-disclosure agreements, legally binding them to protect user information and maintain privacy.

7. Incident Response and Breach Notification

Swaha Swadha has a formal incident response plan to promptly address any data breaches or security incidents.

In case of a confirmed data breach, affected users are notified in accordance with applicable data protection laws, along with steps to mitigate potential impacts.

8. Privacy by Design and Data Minimization

Security is integrated into the design and development of Swaha Swadha’s platform and services.

Only necessary user data is collected and retained for the minimal duration needed, reducing exposure risks.

9. User Awareness and Support

Users are informed about best security practices, including the importance of secure passwords and safe communication channels.

Swaha Swadha provides secure official channels for communication (verified phone, email, WhatsApp numbers) to prevent fraud and phishing.

These multi-layered security measures collectively protect user information against unauthorized access, misuse, and data loss, building a secure environment for spiritual engagement and consultations on the Swaha Swadha platform.

In case of any data leak or data theft involving Swaha Swadha users’ information, the grievance officer to be contacted is detailed below to facilitate prompt registration, acknowledgement, investigation, and resolution of complaints:

Data Security Grievance Officer of Swaha Swadha
Title: Data Security & Privacy Grievance Officer
Email: info@swahaswadha.com
Phone: +91-92209-44407

Role and Responsibilities

Receive, document, and acknowledge user complaints related to data privacy breaches, unauthorized access, data leakages, or thefts.

Coordinate investigation efforts with Swaha Swadha’s IT and security teams to assess incident impact and initiate containment and mitigation steps.

Communicate regularly with affected users about the status and outcomes of their complaints.

Liaise with legal authorities and regulatory bodies as mandated by applicable laws like the Information Technology Act and Data Protection regulations.

Guide users about precautionary measures post-incident, such as password changes and monitoring accounts.

Ensure adherence to applicable privacy laws, including timely notifications to affected parties if required.

Propose and implement corrective actions and security enhancements within the organization.

How to File a Complaint

Users may file complaints by emailing or calling the grievance officer at the above contact details.

Complaints should include clear details of the incident, affected data or accounts, user contact information, and any supporting evidence.

User anonymity and confidentiality will be respected, and all communications will be handled sensitively.

Response Time

Acknowledgment of grievance receipt will be made within 48 hours.

Initial investigation feedback will be shared within 7 business days.

Full resolution timelines will vary depending on incident complexity but will be communicated transparently.

By providing these dedicated contacts and procedures, Swaha Swadha demonstrates commitment to user data security, trustworthiness, and regulatory compliance ensuring that any data security grievance is addressed swiftly and responsibly.