Privacy Policy

1. INTRODUCTION & SCOPE

This Privacy Policy ("Policy") governs how Axis Link Exports Private Limited (hereinafter referred to as "Axis Link," "Company," "we," "our," or "us") collects, processes, uses, stores, shares, and protects your personal data.

 

This Policy applies to:

  1. Our website (www.axislink.com)
  2. Our mobile applications
  3. Email communications
  4. Customer portals and dashboards
  5. Direct business interactions
  6. Third-party platforms where we operate

Legal Entity: Axis Link Exports Private Limited
Nature of Business: D2C Distribution, Freight Forwarding, Regulatory Compliance Services
Principal Place of Business: [Bengaluru, Karnataka, India]
Data Protection Officer Contact: 

dpo@axislink.com


Customer Support Email: 

hello@axislink.com

This Policy is designed to comply with:

  1. Digital Personal Data Protection Act, 2023 (DPDPA)
  2. Information Technology Act, 2000
  3. Consumer Protection Act, 2019 & E-Commerce Rules, 2020
  4. Information Technology (Intermediary Guidelines and Digital Media Ethics Codes) Rules, 2021
  5. Applicable logistics and export regulation standards (FFFAI, FIATA)

2. INFORMATION WE COLLECT

A. Contact & Business Information

When you register, inquire, or conduct business with us, we collect:

  1. Full legal name, business name, and entity type
  2. Email address and telephone number
  3. Business address and registered office location
  4. Company registration details (CIN, GST, PAN, IEC)
  5. Banking and financial information (for payment processing)
  6. Authorized representative details

B. Product & Service Information

  1. Product/commodity details and specifications
  2. Target market information and expansion plans
  3. Shipment details (origin, destination, weight, value, HS codes)
  4. Logistics requirements and preferences
  5. Compliance documentation and certifications
  6. Quality certifications and product testing reports

C. Communication Data

  1. Emails, chat messages, and support tickets
  2. Call recordings (with prior consent)
  3. Meeting notes and interaction records
  4. Feedback, complaints, and suggestions
  5. Newsletter subscriptions and communication preferences

D. Financial & Transaction Data

  1. Invoice details and payment history
  2. Billing address and payment method details
  3. Transaction amounts and dates
  4. Refund and chargeback information
  5. Pricing negotiations and quotation requests

E. Document & Regulatory Information

  1. Business licenses and regulatory certifications
  2. Passports, identity documents (for authorized signatory verification)
  3. Trade documentation (commercial invoices, packing lists)
  4. Compliance certificates and testing reports
  5. Insurance documents and coverage details

A. Website & Digital Interaction Data

  1. IP address and device identifiers
  2. Browser type and version
  3. Operating system and device specifications
  4. Page views, click patterns, and navigation behavior
  5. Time spent on pages and feature usage
  6. Referral sources and exit pages
  7. Search queries and filter selections

B. Location Information

  1. GPS location (if you enable location services)
  2. City/region derived from IP address
  3. Warehouse and fulfillment center preferences
  4. Port and logistics hub information

C. Technical Information

  1. Session identifiers and cookies
  2. Log files containing access timestamps
  3. Error reports and crash diagnostics
  4. Performance metrics and speed data
  5. Device storage information

We may receive personal data from:

  1. Distributors & Partners: When you register through our partner network
  2. Payment Processors: Transaction verification and fraud prevention
  3. Logistics Providers: Shipment tracking and delivery confirmation
  4. Compliance Services: Regulatory status and certification databases
  5. Business Databases: Credit checks, background verification (with consent)
  6. Social Media: If you link accounts or engage on social platforms
  7. Government Agencies: Regulatory and compliance verification
  8. Insurance Providers: Claims and coverage information

We may collect the following with explicit, informed consent:

  1. Financial account details (bank account numbers, credit card information)
  2. Identity document numbers (Aadhaar, PAN, Passport)
  3. Biometric data (if required for secure authentication)
  4. Health information (for product compliance - e.g., food safety)
  5. Criminal or legal history (background verification only)

You have the right to refuse sharing sensitive data. Refusal may prevent access to specific services but will not prevent general website usage.

3. PURPOSE OF DATA COLLECTION

We process your data to:

A. Service Delivery & Execution

  1. Verify your identity and business credentials
  2. Process orders, quotes, and service requests
  3. Arrange D2C distribution through our network
  4. Organize freight forwarding and logistics
  5. Handle regulatory compliance and certification
  6. Provide customer support and technical assistance
  7. Generate invoices and manage payments
  8. Track shipments and provide status updates
  9. Store and retrieve transaction history

B. Compliance & Legal Obligations

  1. Comply with Indian export-import regulations (RBI, DGFT)
  2. Maintain regulatory approval documentation
  3. Respond to government inquiries and audits
  4. Verify business legitimacy and prevent fraud
  5. Maintain records required by law (GST, IEC registration)
  6. Perform anti-money laundering (AML) and KYC checks
  7. Ensure compliance with FFFAI and FIATA standards
  8. Manage dispute resolution and legal proceedings

C. Communication & Engagement

  1. Send service updates, notifications, and alerts
  2. Respond to inquiries and support requests
  3. Conduct surveys, feedback collection, and market research
  4. Send marketing communications (with consent)
  5. Provide educational content about our services
  6. Alert about service changes, maintenance, or issues

D. Business Improvement & Analytics

  1. Analyze service usage patterns and user behavior
  2. Optimize our website, application, and services
  3. Develop new features and service improvements
  4. Conduct performance and quality assessments
  5. Understand market trends and customer preferences
  6. Test new functionality and pilot programs
  7. Generate anonymised market intelligence reports

E. Fraud Prevention & Security

  1. Detect unauthorised access and fraudulent activities
  2. Monitor for suspicious transaction patterns
  3. Verify authenticity of requests and transactions
  4. Prevent data breaches and cyber attacks
  5. Secure sensitive information and data integrity
  6. Investigate complaints and security incidents

F. Marketing & Business Development

  1. Share relevant service offerings (with consent)
  2. Invite you to webinars, events, and networking sessions
  3. Create case studies and success stories (with permission)
  4. Conduct competitive analysis and market research
  5. Identify partnership and collaboration opportunities
  6. Provide industry insights and trend reports

We do NOT use your data for:

  1. Automated decision-making without human review
  2. Discrimination or unfair profiling
  3. Selling personal data to third parties
  4. Unsolicited marketing without consent
  5. Political or religious profiling
  6. Surveillance beyond business necessity

4. LEGAL BASIS FOR PROCESSING

Under the Digital Personal Data Protection Act, 2023, we process your data based on:

  1. You have provided clear, informed, written consent
  2. Consent is voluntary and can be withdrawn anytime
  3. You've confirmed purpose, scope, and duration of processing
  1. Processing is required to fulfill our services
  2. You've requested specific services requiring data
  3. Data processing is essential for contract performance
  1. Processing is mandated by government/regulatory authority
  2. Compliance with export-import laws (DGFT, RBI)
  3. Tax obligations (GST, IEC registration)
  4. Data retention required by law
  5. Court orders or legal proceedings
  1. Fraud prevention and security
  2. System security and data protection
  3. Improving our services and user experience
  4. Protecting our legal rights and interests
  5. Reasonable customer expectations for service
  1. Employment relationship and HR compliance
  2. Occupational health and safety
  3. Background verification (with consent)
  4. Employee administration and payroll

For sensitive personal data: We require explicit, informed, unconditional consent with clear affirmative action (no pre-ticked boxes).

5. DATA RETENTION & DELETION

We retain personal data only for as long as necessary to serve the stated purpose:

 

Data Category

Retention Period

Justification

Account & Contact Information

Active account + 3 years post-termination

Regulatory compliance, dispute resolution

Transaction & Payment Records

7 years

GST Act, income tax, audit requirements

Shipment & Logistics Data

5 years

Service verification, dispute handling

Compliance Documentation

10 years

DGFT, RBI, export-import regulations

Communication Records

3 years

Customer support, dispute resolution

Website Analytics

2 years

Service improvement, aggregated insights

Call Recordings

1 year

Quality assurance, dispute resolution

Marketing Preferences

Until withdrawal

Managing communication preferences

Cookies & Tracking Data

Up to 2 years

Website functionality, analytics

For E-Commerce entities with 2+ crore registered users:

  1. Personal data retained maximum 3 years from last interaction
  2. Data erased unless customer logs in or interacts within period
  3. 48-hour notification provided before erasure
  4. Customers can save data by logging in or contacting support

You can request deletion of your personal data at any time:

Mandatory Deletion

  1. Consent withdrawn and no legal basis remains
  2. Purpose fulfilled and no legal requirement exists
  3. Unlawful processing or breach of your rights
  4. Stated retention period has expired

Subject to Verification

  1. Ongoing legal or contractual obligations
  2. Active disputes or investigations
  3. Regulatory or compliance requirements
  4. Essential fraud prevention purposes

Deletion Timeframe: 30 days from verified request (extended to 60 days for complex cases)

After deletion, we may retain anonymized or aggregated data that cannot identify you. This data is:

  1. Not linked to your identity
  2. Used only for analytics and improvement
  3. Retained indefinitely for business intelligence

6. SHARING OF PERSONAL DATA

We share your data internally with:

Departments & Functions

  1. Customer Service Team: To assist with inquiries and support
  2. Operations Team: To execute orders and arrange logistics
  3. Finance & Billing: To process payments and manage invoices
  4. Compliance & Legal: To ensure regulatory adherence
  5. Marketing Team: For communications (with your consent)
  6. IT & Security: To maintain system security and prevent fraud

Authorized Representatives

  1. Your designated contact persons and signatories
  2. Legal representatives and power-of-attorney holders
  3. Nominated representatives after death or incapacity

We share your data with external partners ONLY for specific purposes:

A. Essential Service Partners

Partner Type

Information Shared

Purpose

Contractual Protection

Logistics & Freight Partners

Name, address, consignment details, contact

Shipment coordination & delivery

Data Processing Agreement

Customs & Port Agencies

Business details, HS codes, product specs

Regulatory compliance & clearance

Legally Mandated

Payment Processors

Name, contact, transaction amount

Payment processing & verification

PCI-DSS Compliance

Distributors (D2C Network)

Business profile, market preferences

Service delivery & fulfillment

Confidentiality Agreement

Insurance Providers

Shipment details, value, consignee

Coverage & claims management

Insurance Policy

Regulatory Bodies

Business details, compliance records

Government compliance

Legally Required

Email Service Providers

Email address, communication preferences

Transactional emails

Data Processing Agreement

B. Controlled Disclosure

The following parties receive limited, controlled data:

Analytics & Website Services

  1. Google Analytics (anonymized behavior data only)
  2. Website hosting providers (technical infrastructure)
  3. CDN providers (performance optimization)

Fraud & Security Services

  1. Fraud detection services (transaction patterns, anonymized)
  2. Identity verification services (with consent)
  3. Cybersecurity monitoring services

Business Intelligence & Research

  1. Market research agencies (anonymized insights only)
  2. Industry associations (aggregated statistics)
  3. Media and content partners (with explicit permission)

We NEVER share without explicit consent:

  1. Your financial account details (credit card, bank account)
  2. Identity document numbers (Aadhaar, PAN, Passport)
  3. Sensitive health or personal information
  4. Data obtained under confidentiality agreements
  5. Information marked as confidential or proprietary

India-Based Processing (Default)

  1. All data primarily processed in India
  2. Servers and infrastructure within Indian territory
  3. Compliant with DPDPA restrictions on data localization

International Transfers (When Required)

  1. Limited transfer to overseas partners (distributors, logistics providers, compliance services)
  2. Transfer ONLY to countries where adequate safeguards exist
  3. Explicit legal basis provided (contract, regulatory requirement)
  4. Transfer limited to essential information only
  5. Your consent obtained where legally required

Countries Where We May Transfer Data:

  1. UK, EU (GDPR compliant)
  2. USA (Standard Contractual Clauses)
  3. Other countries with Government adequacy determinations
  4. Subject to data importer's compliance with Indian law

We maintain a Data Sharing Register documenting:

  1. Third parties who receive your data
  2. Purpose of data sharing
  3. Categories of data shared
  4. Frequency and duration of access
  5. Data protection commitments of third parties

You can request this register at: 

dpo@axislink.com

7. DATA SECURITY & PROTECTION

We implement comprehensive technical and organizational security measures:

A. Technical Security Controls

  1. Encryption: AES-256 encryption for data in transit and at rest
  2. SSL/TLS: Secure HTTPS protocol for website communications
  3. Firewalls: Enterprise-grade firewalls and intrusion detection
  4. Access Control: Role-based access control (RBAC) and multi-factor authentication
  5. Database Security: Encrypted databases with restricted access
  6. Regular Backups: Automated daily backups with off-site replication
  7. Vulnerability Management: Regular security audits and penetration testing

B. Organizational Security Measures

  1. Employee Training: Annual data protection and privacy training
  2. Access Restrictions: Limited access to sensitive data (need-to-know basis)
  3. Confidentiality Agreements: All employees and contractors sign NDAs
  4. Secure Disposal: Certified data destruction for hardware and documents
  5. Incident Response Plan: Documented and tested breach response procedures
  6. Vendor Management: Contractual data protection requirements for all third parties

C. Physical Security

  1. Facility Access: Restricted access to offices and server facilities
  2. Surveillance: CCTV monitoring of sensitive areas
  3. Environmental Controls: Fire suppression, climate control systems
  4. Disaster Recovery: Redundant systems and business continuity plans
  1. Use strong, unique passwords (minimum 12 characters)
  2. Enable two-factor authentication (2FA) for accounts
  3. Never share login credentials with anyone
  4. Change passwords regularly (every 90 days recommended)
  5. Disable 2FA only through verified account recovery process

We are committed to security but acknowledge:

  1. No system is 100% secure
  2. Data breach risks exist despite our measures
  3. User behavior (weak passwords, phishing) creates vulnerabilities
  4. You are responsible for protecting your account credentials
  5. You access our services at your own risk

To protect your data:

  1. Keep your password confidential and secure
  2. Log out after using our services
  3. Use secure networks (avoid public WiFi for sensitive transactions)
  4. Report suspicious activity immediately
  5. Update your browser and software regularly
  6. Don't share personal or financial information via email

8. YOUR RIGHTS AS DATA PRINCIPAL

Under the Digital Personal Data Protection Act, 2023, you have the following rights:

You can request:

  1. All personal data we hold about you
  2. Categories of data being processed
  3. Sources of your data
  4. Purposes of processing
  5. Recipients of your data
  6. Retention period

How to Request: Email 

dpo@axislink.com

 with subject "Data Access Request"
Response Timeline: 30 days (may extend to 60 days for complex requests)
Format: Digital copy (email) or physical copy (additional charges apply)

You can request:

  1. Correction of inaccurate data
  2. Completion of incomplete information
  3. Update of outdated details
  4. Clarification of ambiguous data

Examples:

  1. Correct misspelled business name
  2. Update changed contact information
  3. Fix wrong address or email
  4. Update company registration details

How to Request: Email corrections to 

hello@axislink.com

 with supporting documents
Processing Time: 30 days from verification

You can request deletion when:

  1. You withdraw consent and no legal basis remains
  2. Data collection was unlawful
  3. Purpose has been fulfilled
  4. You object to processing (grounds vary)
  5. Data is no longer necessary for stated purpose
  6. Retention period has expired

 

You cannot request deletion when:

  1. Legal obligation requires retention (tax, compliance)
  2. Active dispute or litigation exists
  3. Fraud investigation is ongoing
  4. Regulatory examination is pending
  5. Essential for contract performance

How to Request: Email 

dpo@axislink.com

 with subject "Data Deletion Request"
Processing Time: 30-60 days

You can request:

  1. Your personal data in structured, commonly-used format (CSV, JSON)
  2. Transfer of data to another service provider
  3. Direct transmission to third party (if technically feasible)

What is NOT included:

  1. Derived insights or analytics
  2. Aggregated data
  3. Confidential business information
  4. Information held for legal compliance

How to Request: Email 

dpo@axislink.com

 with subject "Data Portability Request"
Response Time: 30 days from verification
Format: Machine-readable format (CSV, JSON, XML)

You can withdraw consent at any time:

  1. For specific processing activities
  2. For all non-essential processing
  3. Without penalty or discrimination
  4. With immediate effect

Limitation: Withdrawal doesn't affect past processing (before withdrawal)

How to Withdraw:

  1. Email: 
  2. dpo@axislink.com
  3. Dashboard: Manage Preferences section
  4. Letter: Send to our registered office

You have the right to:

  1. Know what data we collect and why
  2. Understand our processing activities
  3. Receive clear, accessible explanations
  4. Get information in your preferred language
  5. Access this privacy policy anytime

Information Provided In: English (primary) | Hindi | Regional languages (on request)

You can nominate:

  1. Another person to exercise your rights after death
  2. Legal representative or power of attorney holder
  3. Guardian or caregiver (if incapacitated)

Nomination Process: Submit written nomination to 

dpo@axislink.com

 with legal documentation

You can object to:

  1. Processing based on legitimate interest
  2. Marketing communications and newsletters
  3. Automated decision-making
  4. Use of data for analytics or profiling

Exceptions: Objection may be limited when processing is legally required

If your rights are violated, you have recourse through:

Internal Redressal

  1. Contact: 
  2. dpo@axislink.com
  3. Response: 30 days
  4. Appeal process available

External Complaint

  1. File complaint with Data Protection Board of India (when established)
  2. File complaint with relevant regulatory authority
  3. Pursue legal action in courts of India

9. COOKIES & TRACKING TECHNOLOGIES

Cookies are small text files stored on your browser that help us:

  1. Remember your preferences and login status
  2. Understand how you use our website
  3. Improve site performance and functionality
  4. Deliver relevant content and advertising

Cookie Type

Purpose

Duration

Can Be Disabled

Session Cookies

Maintain login status, form data

Browser session

Yes

Authentication

Remember login credentials

30 days

Yes

Preferences

Language, theme, display settings

1 year

Yes

Analytics

Website usage, visitor behavior

2 years

Yes

Marketing

Ad tracking, interest-based ads

2 years

Yes

Security

CSRF protection, fraud detection

Session

No*

Performance

Page load speed, error tracking

Session

Yes

*Security cookies cannot be disabled as they are essential for site protection

We allow the following third parties to place cookies:

Google Analytics: Website traffic analysis (analytics.google.com)
Facebook Pixel: Advertising and conversion tracking (facebook.com)
LinkedIn Insight: Professional audience analysis (linkedin.com)

For Essential Cookies: Automatic (no consent needed)

  1. Security cookies
  2. Authentication cookies
  3. Session management

 

For Non-Essential Cookies: Explicit consent required

  1. Analytics cookies
  2. Marketing/advertising cookies
  3. Preference cookies
  4. Performance optimization

 

Consent Management: When you first visit our website, you'll see a Cookie Consent Banner:

  1. Accept All: Allow all cookies
  2. Reject Non-Essential: Use only essential cookies
  3. Manage Settings: Choose specific cookie types
  4. Privacy Policy Link: Learn more about cookies

You can disable cookies through:

  1. Browser Settings: Go to Preferences > Privacy > Cookies
  2. Cookie Management Tools: Use third-party cookie management services
  3. Opt-Out Tools: Google Analytics opt-out, Facebook ad preferences
  4. Do Not Track: Enable "Do Not Track" signal in browser

Impact: Disabling cookies may affect website functionality and personalization.

We may use pixel tags and web beacons to:

  1. Track email open rates
  2. Measure conversion success
  3. Understand user journey
  4. Detect fraudulent activity

These are small, transparent images embedded in emails or pages.

10. THIRD-PARTY LINKS

Our website may contain links to third-party sites:

  1. Distributor websites
  2. Government regulatory portals (DGFT, Customs)
  3. Payment gateways and financial institutions
  4. Industry partner websites
  5. Social media platforms

We are NOT responsible for:

  1. Third-party privacy practices or policies
  2. Data collection by external websites
  3. Security of third-party platforms
  4. Content accuracy or legality
  5. Cookies or tracking used by third parties

Before sharing data with linked sites, review their privacy policies:

  1. Check their data protection commitments
  2. Understand their data sharing practices
  3. Verify their security measures
  4. Review their data retention policies

 

We recommend:

  1. Reading third-party privacy policies carefully
  2. Disabling cookies for external sites
  3. Using different passwords for different platforms
  4. Checking privacy settings before engaging

11. CHILDREN & MINORS

Our services are NOT intended for children under 18 years. We do not knowingly collect data from minors.

If we discover we've collected data from someone under 18:

  1. We will obtain verifiable parental consent
  2. We will delete data if consent cannot be obtained
  3. We will notify the parent/guardian immediately

For minors aged 13-18 with parental consent:

  1. Parent/guardian must provide express written consent
  2. Parental contact information must be verified
  3. Parents can request data deletion anytime
  4. Additional privacy protections apply

Valid methods of parental consent:

  1. Notarized parental consent letter
  2. Credit card transaction (verification method)
  3. Government-issued ID verification
  4. Video call verification with guardian

12. INTERNATIONAL DATA TRANSFERS

Primary Data Location: India (DPDPA compliant)

  1. Website data stored in Indian servers
  2. Customer databases maintained in India
  3. Processing centers based in India
  4. Backup systems within Indian territory

Data may be transferred outside India when:

  1. Service Requirement: International distributors or logistics partners need access
  2. Legal Obligation: Government or regulatory authority mandates
  3. Contractual Necessity: International supplier or customer requires data
  4. Explicit Consent: You have consented to cross-border transfer

We transfer data only to countries with:

  1. Adequate data protection laws (GDPR-equivalent)
  2. Government adequacy determinations by India
  3. Standard Contractual Clauses (SCCs)
  4. Binding Corporate Rules (BCRs)
  5. Your explicit informed consent

Low-Risk Countries (GDPR equivalent or better):

  1. United Kingdom
  2. European Union member states
  3. Switzerland
  4. Japan
  5. South Korea

 

Medium-Risk Countries (with SCCs or consent):

  1. United States
  2. Canada
  3. Australia
  4. New Zealand

 

Other Countries: Transfer requires explicit consent and documented safeguards

You can:

  1. Request information about transfer destinations
  2. Ask about safeguards protecting your data
  3. Withdraw consent for international transfer
  4. Request data be retained in India
  5. Understand transfer necessity and purpose

13. DATA BREACH NOTIFICATION

We maintain incident response procedures to:

  1. Detect unauthorized data access quickly
  2. Investigate breach scope and impact
  3. Mitigate further data exposure
  4. Notify affected individuals
  5. Cooperate with regulatory authorities

A breach includes:

  1. Unauthorized access to personal data
  2. Accidental disclosure of confidential information
  3. Loss or theft of data storage devices
  4. Ransomware or malware attack
  5. Insider theft or misuse
  6. Third-party security failure
  7. System configuration vulnerabilities

If breach affects you:

Action

Timeline

Initial Detection & Containment

Immediate (24 hours)

Investigation & Assessment

Within 7 days

Regulatory Notification

As required by law

Individual Notification

Without unreasonable delay (within 30 days typically)

Public Disclosure (if required)

As mandated by regulatory authority

Our breach notification will include:

  1. Nature and extent of breach
  2. Categories of data affected
  3. Your rights and remedies
  4. Steps we're taking to prevent recurrence
  5. Contact information for questions
  6. Recommended protective measures

We will notify relevant authorities:

  1. Data Protection Board of India (when established)
  2. Sectoral regulators (DGFT, RBI if applicable)
  3. Law enforcement (if criminal activity suspected)
  4. Affected institutions (credit card issuers, banks)

We accept responsibility for:

  1. Breaches in our systems or processes
  2. Third-party breaches we caused or enabled
  3. Failures in our security measures

Not our responsibility:

  1. Breaches caused by your actions (weak password, phishing fall victim)
  2. Third-party breaches beyond our control
  3. Consequences beyond our reasonable foresight

If your data is compromised:

  1. Credit Monitoring: Complimentary credit monitoring (if financial data exposed)
  2. Password Reset: Forced password change for account security
  3. Identity Theft Insurance: Coverage for identity theft losses
  4. Legal Assistance: Support for resolving breach consequences
  5. Compensation: Damages claim if you suffer provable losses

14. CHANGES TO THIS POLICY

We may update this Privacy Policy to:

  1. Reflect legal or regulatory changes
  2. Improve clarity and transparency
  3. Address new privacy risks
  4. Align with business changes
  5. Implement customer feedback

We will notify you of material changes by:

  1. Publishing updated policy on website
  2. Sending email to primary contact address
  3. Displaying prominent notice on login
  4. Requesting reconfirmation of consent (if required)

Notice Period: 30 days before material changes take effect

  1. Review updated policy anytime at 
  2. www.axislink.com/privacy
  3. Request comparison with previous version
  4. Ask questions about changes via 
  5. dpo@axislink.com
  6. Opt-out before new provisions take effect (if applicable)

Continuing to use our services after policy update constitutes acceptance of the new terms. If you disagree with changes, you may:

  1. Request data deletion
  2. Terminate your account
  3. Stop using our services

15. CONTACT US

Email: 

dpo@axislink.com

Phone: [Customer Support Number]
Address: [Company Address], Bengaluru, Karnataka, India
Response Time: Within 7 business days

For Data Subject Requests: Include:

  1. Your full name and contact information
  2. Specific request type (access, deletion, correction, etc.)
  3. Description of your request
  4. Preferred response format
  5. Supporting documents (if applicable)

Email: 

hello@axislink.com


Phone: +91-XXXXXXXXXX
Chat: Available on website (business hours)
Office Hours: Monday-Friday, 9:00 AM - 6:00 PM IST

File Complaint:

  1. Send detailed complaint to 
  2. dpo@axislink.com
  3. Include incident date, data affected, impact
  4. Provide supporting documents
  5. Include preferred resolution
  6. Reference this policy if applicable


Complaint Resolution Process:

  1. Acknowledgment within 24 hours
  2. Investigation by Data Protection Officer
  3. Updates every 7 days
  4. Final response within 30-45 days
  5. Appeals process if unsatisfied

If we don't resolve your concern:

Data Protection Board of India
(Once established and operational)

  1. Website: [To be announced by Government]
  2. Email: [To be announced by Government]

Relevant Sectoral Regulators:

  1. DGFT (Directorate General of Foreign Trade)
  2. RBI (Reserve Bank of India)
  3. MEITY (Ministry of Electronics and Information Technology)

Consumer Complaint Portals:

  1. National Consumer Dispute Redressal Commission (NCDRC)
  2. State Consumer Dispute Redressal Commission
  3. District Consumer Dispute Redressal Commission

16. DEFINITIONS

Personal Data: Any information related to an identified or identifiable natural person or business.

Data Principal: The person to whom personal data relates (equivalent to "data subject" in GDPR).

Data Fiduciary: The organization collecting and processing data (us - equivalent to "data controller" in GDPR).

Data Processor: Third party processing data on our behalf under contractual agreement.

Processing: Collection, storage, use, analysis, sharing, or deletion of personal data.

Consent: Free, specific, informed, unambiguous, and voluntary agreement with clear affirmative action.

Legitimate Interest: Valid business reason for processing not requiring consent (fraud prevention, security, etc.).

Data Breach: Unauthorized access, disclosure, or loss of personal data.

Sensitive Personal Data: Financial info, identity documents, health data, biometric data requiring explicit consent.

17. ACKNOWLEDGMENT & CONSENT

✓ You have read and understood this Privacy Policy
✓ You consent to our processing of your personal data as described
✓ You understand your rights and our responsibilities
✓ You accept the terms and conditions
✓ You can withdraw consent anytime

Last Updated: January 28, 2026
Version: 1.0
Next Review: January 28, 2027

This Privacy Policy is governed by the laws of India and complies with the Digital Personal Data Protection Act, 2023, Information Technology Act 2000, and Consumer Protection Act 2019.

For questions or to exercise your rights, contact our Data Protection Officer at 

dpo@axislink.com

Contact Us

Get in Touch With Us

In sed pellentesque felis. Nulla facilisi. Maecenas at dui posuere, pulvinar quam sit amet, laoreet justo.

Our Phone

+1 (234) 567 890 00

Our Email

hauler.info@mail.com