Privacy Policy

Last updated: 27 August 2025
1) Who we are
This Privacy Policy explains how Vedastika PAT Industries (“Vedastika”, “we”, “us”, “our”) collects, uses, shares, protects, and stores your information when you visit www.vedastika.com (the “Website”), place an order, contact us, or interact with us on any channel we control.
Data Controller: Vedastika PAT Industries, [Legal address]
Contact: [privacy@vedastika.com]
By using the Website, you agree to this Privacy Policy and our Terms of Use. If you do not agree, please discontinue use.
2) Scope & legal basis
This Policy is an electronic record under the Indian Contract Act, 1872 and is published under the Information Technology Act, 2000, including the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 and the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021.
Where applicable, we also reference principles from the UK/EU GDPR and the California Consumer Privacy Act (CCPA/CPRA).
We may update this Policy from time to time. Your continued use of the Website means you accept the revised Policy.
3) What we collect
We collect information in three ways: (a) provided by you, (b) collected automatically, and (c) received from third parties.
A. Personal Information you provide
  • Identity & Contact: name, email, phone number, billing and shipping address.
  • Order & Support: order notes, queries, messages to customer support, returns/exchange details.
  • Marketing preferences: your choices for newsletters, SMS, or WhatsApp updates.
  • User-generated content: product reviews, testimonials, survey responses.

We do not request sensitive personal data (e.g., health, biometrics, passwords to other services). Payment card/UPI/Net-banking details are handled by PCI-DSS-compliant payment gateways and are not stored in our systems.

B. Information collected automatically
  • Device/Technical: IP address, browser type/version, operating system, time zone, language, device identifiers.
  • Usage: pages viewed, products added to cart, referring/exit pages, on-site actions, session duration.
  • Cookies & similar tech: small files to remember your preferences, enable checkout, analytics, and personalisation. See “Cookies” below.
C. Information from third parties
  • E-commerce platform: We use Shopify to power our store; Shopify provides hosting, checkout, anti-fraud and analytics services.
  • Payment partners: payment status/confirmations from our payment gateways.
  • Logistics partners: tracking updates for deliveries/returns.
  • Marketing/analytics providers: aggregated campaign performance and site usage metrics.
4) How we use your information (purposes & legal bases)
We process information for the following purposes (legal basis in brackets):
  1. To operate our Website and store: account creation, browsing, cart, checkout, order processing, returns, customer support. (Contract / Legitimate interests)
  2. To deliver your order: packing, shipping, delivery updates, returns/refunds. (Contract)
  3. Payments & fraud prevention: verifying transactions, preventing misuse or unauthorised activity. (Legitimate interests / Legal obligation)
  4. Customer service: responding to queries/complaints and after-sales support. (Contract / Legitimate interests)
  5. Personalisation & analytics: remembering preferences, improving pages and product discovery. (Legitimate interests / Consent where required)
  6. Marketing: sending offers, new launches, newsletters (only if you opt-in; you can opt-out any time). (Consent / Legitimate interests where permitted)
  7. Legal & compliance: tax, accounting, audit, responding to lawful requests. (Legal obligation)
5) Sharing your information
We do not sell your personal information. We share it only as needed:
  • Shopify (store hosting, checkout, security, analytics).
  • Payment gateways (to process payments securely).
  • Logistics/courier partners (to deliver your order).
  • IT/service providers (cloud hosting, email/SMS services, customer support tools).
  • Professional advisers (auditors, accountants, lawyers) and authorities when required by law.
  • Business transfers: in case of merger, acquisition or restructuring, your data may transfer to the new entity subject to this Policy.
All service providers are bound by contractual obligations to handle data securely and only as instructed by us.
6) International transfers
Our store runs on Shopify infrastructure which may process data in multiple jurisdictions (including outside India). Where required, we use appropriate safeguards (e.g., standard contractual clauses) to protect your information.
7) Cookies & similar technologies
Cookies help the site function (e.g., cart, checkout), remember preferences, and measure performance.
Types we use:
  • Strictly necessary (essential for checkout and security)
  • Performance/analytics (to improve our site)
  • Functional (remembering preferences)
  • Advertising (showing relevant offers if you consent)
Managing cookies: You can block or delete cookies in your browser settings. If you block essential cookies, parts of the site may not work. Some browsers offer “Do Not Track”; we will honour it where technically feasible.
8) Retention
We keep personal information only as long as necessary for the purposes outlined or to meet legal/accounting requirements. Typical periods:
  • Orders & invoices: up to 8 years (tax/audit).
  • Customer service records: up to 24 months after resolution.
  • Marketing consents: until you withdraw consent or your account becomes inactive for a reasonable period.
    When retention ends, we delete or irreversibly anonymise the data.
9) Security
We use reasonable administrative, technical, and physical safeguards to protect your information (e.g., access controls, encryption in transit, secure networks). No method of transmission or storage is 100% secure; we cannot guarantee absolute security.
10) Your rights
Subject to applicable law, you may have the right to:
  • Access the personal information we hold about you.
  • Correct inaccurate or incomplete information.
  • Delete your information (where no longer required).
  • Restrict or object to certain processing, including direct marketing.
  • Withdraw consent at any time (this does not affect prior processing).
  • Data portability (receive a copy in a structured, commonly used format, where applicable).
To exercise your rights, email [privacy@vedastika.com] with the subject “Privacy Request”. We may need to verify your identity. We aim to respond within 30 days.
California (CCPA/CPRA)
California residents may request to know, delete, and correct personal information, and opt-out of “sale” or “sharing” of personal information. We do not sell personal information. To make a request, contact [privacy@vedastika.com].
UK/EU (GDPR)
Where GDPR applies, our legal bases are listed in Section 4. You may lodge a complaint with your local supervisory authority, but please contact us first so we can help.
11) Children
Our Website is not intended for children below the age of legal consent to contract in their jurisdiction. We do not knowingly collect personal information from children. If you believe a child has provided information, please contact us to delete it.
12) Third-party links & apps
Our Website may link to third-party sites or use third-party apps (for analytics, marketing, chat, etc.). Their privacy practices are governed by their own policies. Please review those policies before using their services.
13) Communications & opt-out
  • Transactional messages (order, shipping, service) are necessary and will be sent to you.
  • Marketing messages (email/SMS/WhatsApp) are sent only with your consent. You can unsubscribe from each channel at any time or email [privacy@vedastika.com].
14) Grievance Officer (India)
In accordance with the IT Act, the details of our Grievance Officer are:
Name: [Grievance Officer Name]
Address: [Full postal address]
Email: [grievance@vedastika.com] (or [privacy@vedastika.com])
Hours: Mon–Sat, 10:00–18:00 IST
If our customer care does not acknowledge your query within 36 hours, please write to the Grievance Officer with “Privacy Grievance” in the subject line.
15) Contact us
Questions about this Policy or your data?
Email: [privacy@vedastika.com]
Postal: [Vedastika PAT Industries, Full address]