Privacy Policy
1. Overview
69Shop.in ("we", "us", "our") respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and protect information when you use our multi-vendor e-commerce marketplace at 69shop.in and shop69-1.web.app (the "Platform").
By using the Platform, you consent to the practices described in this policy. We comply with applicable Indian data protection laws including the Information Technology Act, 2000, and the Digital Personal Data Protection Act, 2023.
2. Information We Collect
Information you provide directly:
- Account information: Name, email address, phone number, password (hashed by Firebase)
- Profile information: Display name, profile photo, delivery addresses
- Order information: Shipping address, payment method selection, order notes
- Communication: Messages sent through the buyer-seller chat system
- Reviews and ratings: Product reviews, star ratings, photos uploaded with reviews
- Support requests: Customer support tickets, enquiry forms
Information for sellers (KYC):
- Business name and type
- PAN number and GST registration number
- Bank account details for payouts
- Identity verification documents
Information collected automatically:
- Browser type, device information, and operating system
- Pages visited, products viewed, and search queries
- Cart and wishlist activity
- IP address and approximate location (for service area validation)
- Session duration and interaction patterns
3. How We Use Your Information
| Purpose | Data Used | Legal Basis |
|---|---|---|
| Account creation and authentication | Email, password, name | Contract performance |
| Order processing and delivery | Address, phone, payment info | Contract performance |
| Customer support | Account details, order history | Legitimate interest |
| Product recommendations | Browsing history, search queries | Legitimate interest |
| Seller verification (KYC) | PAN, GST, bank details | Legal obligation |
| Communication (email, push notifications) | Email, device tokens | Consent |
| Analytics and improvement | Usage data, search analytics | Legitimate interest |
| Fraud prevention | IP address, device info, transaction patterns | Legitimate interest |
4. Information Sharing
We do not sell your personal data to third parties. We share information only in these situations:
- With sellers: When you place an order, the seller receives your name, delivery address, and phone number to fulfil the order
- Payment processors: Razorpay processes your payment information securely. We do not store your card details
- Shipping partners: Name and delivery address are shared with logistics providers (Bluedart, Delhivery, DTDC) for shipment
- Service providers: Firebase (Google) for authentication, database, hosting, and cloud functions
- Email service: EmailJS and Gmail SMTP for transactional emails (order confirmations, status updates)
- Legal requirements: When required by law, court order, or government authority
5. Data Storage and Security
Your data is stored using the following infrastructure:
- Database: Google Cloud Firestore (asia-south1 region, Mumbai, India)
- Authentication: Firebase Authentication (managed by Google, industry-standard encryption)
- File storage: Firebase Cloud Storage (profile photos, product images, KYC documents)
- Local storage: Cart data, wishlist, and preferences are stored in your browser's localStorage
Security measures we implement:
- SSL/TLS encryption for all data in transit
- Firebase Security Rules that enforce role-based access control
- Passwords are never stored in plaintext (Firebase Auth uses bcrypt hashing)
- Seller KYC documents are stored with restricted access permissions
- Server-side validation on all Cloud Functions
- Financial data (transactions, wallets) is writable only by Cloud Functions
6. Cookies and Local Storage
We use browser localStorage (not traditional cookies) to store:
- Shopping cart contents
- Wishlist items
- Recently viewed products
- User preferences (theme, notification settings)
- Search history
- Loyalty tier information
Firebase Authentication uses session cookies for maintaining your login state. These are essential for the Platform to function and cannot be disabled while using the Platform.
You can clear your localStorage data at any time through your browser settings. This will reset your cart, wishlist, and preferences.
7. Your Rights
Under applicable Indian data protection laws, you have the right to:
- Access: Request a copy of the personal data we hold about you
- Correction: Request correction of inaccurate or incomplete data
- Deletion: Request deletion of your account and associated data
- Data portability: Request your data in a structured, machine-readable format
- Withdraw consent: Opt out of marketing communications and push notifications
- Grievance redressal: File a complaint about data handling practices
To exercise any of these rights, email us at info@69shop.in or support@69shop.in. We will respond within 30 days.
8. Data Retention
- Active accounts: Data is retained as long as your account is active
- Deleted accounts: Personal data is deleted within 90 days of account deletion request. Order records are retained for 7 years for tax and legal compliance
- Seller KYC documents: Retained for the duration of the seller relationship and 5 years after account closure
- Chat messages: Retained for 2 years after the last message
- Analytics data: Anonymized and retained indefinitely for business insights
9. Children's Privacy
The Platform is not intended for children under 18 years of age. We do not knowingly collect personal information from children under 18. If you believe a child has provided us with personal data, please contact us at info@69shop.in and we will delete such information.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated date. For material changes, we will notify registered users via email. Continued use of the Platform after changes are posted constitutes acceptance of the revised policy.
11. Contact Us
For privacy-related questions or concerns:
- Privacy Officer email: info@69shop.in
- General support: support@69shop.in
- Website: https://69shop.in