Overview
This Privacy Policy explains how Hanu Agro ("we", "us", or "our"), operating the brand "Gaon Se Ghar" through this website, collects, uses, discloses, and safeguards your personal information when you visit our website, create an account, or purchase products from us.
We are committed to protecting your privacy in accordance with applicable Indian laws including the Information Technology Act, 2000, the IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, and the Digital Personal Data Protection Act, 2023.
By accessing or using our website, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree, please do not use our services.
Data We Collect
We collect only the information needed to deliver your orders and keep your account secure:
- Account information: your full name, email address (optional), and mobile phone number — used for sign-up, login, and One-Time-Password (OTP) verification.
- Delivery addresses: pincode, state, district, town, street, house/flat details, and contact mobile number for each saved address.
- Order information: products purchased, quantities, prices, coupons used, order status, and invoices.
- Payment data: we do not store your full card number, CVV, UPI PIN, net-banking credentials, or any other sensitive payment details. Payments are processed directly by our PCI-DSS compliant payment gateway partner (see "Payments" section). We only retain the transaction ID, payment mode (e.g. UPI, card, netbanking), and payment status for your order records.
- Device & usage data: IP address, browser type, device type, pages visited, time spent, and approximate geolocation (only if you grant location permission in your browser for address auto-fill).
- Communications: messages you send us through email, support forms, or reviews.
How We Use Your Data
We use the information we collect for the following purposes:
- Process, fulfil, and deliver your orders and send related order/shipping updates.
- Authenticate your account via OTP and maintain a secure login session.
- Provide customer support and respond to queries, complaints, or refund requests.
- Improve our website, products, and services based on usage analytics.
- Detect and prevent fraud, abuse, chargebacks, and unauthorised access.
- Comply with applicable laws, tax regulations, and legal obligations.
- Send transactional SMS/email (order updates, OTPs) — these are essential for service and cannot be opted out of.
- Send occasional promotional updates about offers or new products — only with your consent and you may opt out at any time.
Consent
By registering, placing an order, or otherwise using our website, you consent to the collection, use, and disclosure of your information as described in this Privacy Policy.
You may withdraw your consent at any time by emailing us at support@gaonseghar.com. Please note that withdrawing consent may limit our ability to provide certain services (e.g. account-based features, order fulfilment).
Payments
All online payments on our website are processed by Razorpay Software Private Limited, a RBI-regulated, PCI-DSS Level 1 certified payment aggregator. When you make a payment:
- You are redirected to or interact with Razorpay's secure payment interface.
- Your full card number, CVV, UPI PIN, or banking credentials are submitted directly to Razorpay and are never stored on our servers.
- We receive only a payment confirmation (transaction ID, amount, status, payment mode) after the transaction is completed.
- Refunds, where applicable, are processed back to the original payment method via Razorpay according to our Refund & Cancellation Policy.
For details on how Razorpay handles your payment data, please refer to Razorpay's Privacy Policy.
Data Retention
We retain your personal data only for as long as necessary:
- Account data — as long as your account is active. You may request deletion at any time.
- Order & invoice records — retained for a minimum of 8 years as required under Indian tax and accounting laws (GST, Income Tax Act).
- Payment transaction records — retained as required by RBI/payment-aggregator regulations.
- Session tokens & OTPs — deleted automatically after expiry (1 hour for access tokens, 10 minutes for OTPs).
- Marketing preferences — retained until you opt out.
Data Security
We implement reasonable security practices and procedures to protect your data, including:
- All communication between your browser and our servers happens over HTTPS / TLS encryption.
- Session tokens are stored as HttpOnly cookies, inaccessible to JavaScript (protection against XSS).
- OTPs expire after 10 minutes and are limited to 5 verification attempts.
- Refresh tokens and sensitive identifiers are encrypted (AES) at rest in our database.
- Role-based access control — staff access is limited to personnel who need it for legitimate business purposes.
- Regular security reviews and timely application of critical patches.
Despite our best efforts, no system is entirely secure. If you suspect any unauthorised activity on your account, please notify us immediately at support@gaonseghar.com.
Your Rights
Subject to applicable law, you have the following rights with respect to your personal data:
- Right to access — request a copy of the personal data we hold about you.
- Right to correct — update your name, email, or addresses at any time from your profile page.
- Right to erasure — request deletion of your account and associated data (subject to legal/tax-record retention obligations).
- Right to data portability — request your data in a commonly used, machine-readable format.
- Right to opt out — unsubscribe from promotional messages at any time.
- Right to withdraw consent — for any data processing that relies on your consent.
- Right to grievance redressal — lodge a complaint with our Grievance Officer (see below).
To exercise any of these rights, email us at support@gaonseghar.com from your registered email or mobile number. We will respond within 30 days.
Children's Privacy
Our services are not intended for individuals under the age of 18 years. We do not knowingly collect personal information from minors. If you are a parent or guardian and believe your child has provided us with personal data, please contact us and we will delete the information promptly.
Governing Law & Jurisdiction
This Privacy Policy is governed by and construed in accordance with the laws of India. Any dispute arising out of or in relation to this Policy shall be subject to the exclusive jurisdiction of the competent courts located in India.
Changes to this Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, services, or applicable laws. When we make material changes, we will update the "Last updated" date at the top of this page and, where appropriate, notify you via email or a notice on our website.
We encourage you to review this page periodically for the latest information.
Grievance Officer
In accordance with the Information Technology Act, 2000 and the rules made thereunder, the name and contact details of the Grievance Officer are:
Name: Grievance Officer, Hanu Agro (Gaon Se Ghar)
Email: support@gaonseghar.com
Working hours: Monday to Saturday, 10:00 AM – 6:00 PM IST
We will acknowledge your complaint within 48 hours and endeavour to resolve it within 30 days of receipt.
Contact Us
For any general questions about this Privacy Policy or our data practices:
Hanu Agro
(operating the brand "Gaon Se Ghar")
Email: support@gaonseghar.com