Privacy Policy
Last updated: June 15, 2026
1. Introduction
DigiGini Corp Pvt Ltd ("DigiGini", "we", "us", or "our") operates the DigiGini platform, including Bookz and HRMate, accessible at digigini.com and via our mobile applications. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our services. By accessing or using DigiGini, you consent to the practices described in this policy. If you do not agree, please discontinue use of our services.
2. Information We Collect
- Account Information:When you register, we collect your name, email address, phone number, business name, GSTIN, business address, and industry type.
- Business Data:Data you enter into the platform — invoices, customers, vendors, products, inventory records, employee details, salary information, attendance logs, and financial transactions — is stored on your behalf.
- Billing Information:Payment details (card number, UPI ID, bank account) are collected and processed securely by our payment partner, Razorpay. DigiGini does not store raw card data.
- Usage and Device Data:We automatically collect IP address, browser type, device identifiers, operating system, pages visited, features used, time spent, and error logs to improve our service.
- Communications:If you contact our support team via email, phone, or chat, we retain those records to resolve issues and improve service quality.
3. How We Use Your Information
- Service Delivery:To operate, maintain, and provide all features of DigiGini, including GST report generation, payroll processing, inventory tracking, and attendance management.
- Account Management:To create and manage your account, authenticate logins, and process subscription payments.
- Communications:To send transactional emails (invoices, receipts, OTPs), product updates, security alerts, and customer support responses. You may opt out of marketing emails at any time.
- Product Improvement:To analyse usage patterns, diagnose errors, and develop new features. We use anonymised and aggregated data for analytics.
- Legal Compliance:To comply with applicable Indian laws, including the Information Technology Act 2000 and GST regulations, and to respond to lawful requests from government authorities.
- Fraud Prevention:To detect, investigate, and prevent fraudulent transactions, abuse, and violations of our Terms of Service.
4. Legal Basis for Processing
We process your personal data on the following grounds: (a) Performance of Contract — processing is necessary to provide the services you have subscribed to; (b) Legitimate Interests — to improve our products, prevent fraud, and ensure platform security; (c) Legal Obligation — where processing is required by law; and (d) Consent — where you have explicitly agreed, such as receiving marketing communications.
5. Data Sharing and Disclosure
We do not sell, rent, or trade your personal data to any third party. We share data only in the following limited circumstances:
- Service Providers:We engage trusted third parties to perform functions on our behalf: Amazon Web Services (cloud hosting and storage), Razorpay (payment processing), SendGrid/AWS SES (email delivery), Firebase (mobile push notifications), and Google Analytics (anonymised usage analytics). Each is bound by confidentiality obligations and processes data only as instructed.
- Business Transfers:In the event of a merger, acquisition, or sale of assets, your data may be transferred. We will provide notice before your data becomes subject to a different privacy policy.
- Legal Requirements:We may disclose information if required by law, court order, or a government authority, or if we believe in good faith that disclosure is necessary to protect our rights, your safety, or the safety of others.
- Aggregated Data:We may share anonymised, aggregated statistics (e.g., industry-level benchmarks) that do not identify any individual or business.
6. Data Storage and Security
All data is stored on AWS servers located in India (ap-south-1 region). We implement industry-standard security measures including: TLS 1.3 encryption for all data in transit; AES-256 encryption for data at rest; role-based access controls (RBAC) so employees can access only the data required for their role; automated daily encrypted backups with 30-day retention; multi-factor authentication for internal admin access; and regular vulnerability assessments and penetration testing. Our infrastructure is hosted in ISO 27001 certified data centres. Despite these measures, no system is completely secure, and we cannot guarantee absolute security of your data.
7. Data Retention
We retain your account and business data for as long as your account is active or as needed to provide services. If you cancel your account, we will delete your personal data within 30 days, except where retention is required by law (for example, financial records may be retained for 7 years as required under Indian tax regulations). Anonymised and aggregated data may be retained indefinitely for analytics purposes.
8. Data Ownership and Portability
You own your business data entirely. DigiGini acts as a data processor on your behalf. You can export all your data — including invoices, customer records, inventory, employee data, and payroll reports — at any time from your account settings in standard formats (CSV, Excel, PDF). We do not restrict data export.
9. Cookies and Tracking Technologies
We use the following types of cookies and similar technologies:
- Essential Cookies:Required for authentication, session management, and core platform functionality. These cannot be disabled.
- Performance Cookies:Used to collect anonymised data about how users interact with the platform to help us improve it.
- Preference Cookies:Store your settings and preferences (e.g., language, theme) to personalise your experience.
We do not use advertising or cross-site tracking cookies. You can control cookie preferences through your browser settings, though disabling essential cookies may affect platform functionality.
10. Your Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Access:Request a copy of the personal data we hold about you.
- Correction:Request correction of inaccurate or incomplete data.
- Deletion:Request deletion of your personal data, subject to legal retention obligations.
- Restriction:Request that we restrict processing of your data in certain circumstances.
- Portability:Receive your data in a machine-readable format.
- Objection:Object to processing based on legitimate interests or for direct marketing.
- Withdraw Consent:Withdraw consent at any time where processing is based on consent, without affecting lawfulness of prior processing.
To exercise any of these rights, contact us at [email protected]. We will respond within 30 days.
11. Children's Privacy
DigiGini is a business software platform intended solely for use by businesses and individuals aged 18 and above. We do not knowingly collect personal data from anyone under 18. If you believe we have inadvertently collected data from a minor, please contact us immediately at [email protected].
12. Links to Third-Party Services
Our platform may contain links to third-party websites or integrate with third-party services (e.g., government GST portals, bank APIs). This Privacy Policy applies only to DigiGini. We are not responsible for the privacy practices of third-party services, and we encourage you to review their policies before sharing data.
13. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or an in-app notice at least 14 days before the changes take effect. Continued use of DigiGini after the effective date constitutes acceptance of the updated policy. The "Last updated" date at the top of this page reflects the most recent revision.
14. Grievance Officer
In accordance with the Information Technology Act 2000 and IT (Intermediary Guidelines and Digital Media Ethics Code) Rules 2021, the name and contact details of the Grievance Officer are provided below. Any grievance, complaint, or concern about the processing of your personal data may be directed to: Grievance Officer: Shubham Shrivastava DigiGini Corp Pvt Ltd, B-HUB, 5th Floor, Maurya Lok Complex, Patna, Bihar 800001 Email: [email protected] Phone: +91-9709803090 We will acknowledge your grievance within 24 hours and resolve it within 30 days of receipt.
15. Contact Us
For any privacy-related questions, requests, or concerns: Email: [email protected] Phone: +91-9709803090 Address: DigiGini Corp Pvt Ltd, B-HUB, 5th Floor, Maurya Lok Complex, Patna, Bihar 800001