Data Retention Policy
At Yugalinks Global Connect Pvt Ltd, we are committed to managing user data responsibly. This Data Retention Policy outlines how long we retain user data, the conditions for its deletion, and the measures we take to ensure secure data management in compliance with relevant regulations, including the Information Technology Act, 2000, and GDPR for EU-based users.
Policy Commitment
We retain user data only as long as necessary to fulfill legal, business, and operational requirements. Once the data is no longer needed, we securely delete or anonymize it to protect user privacy.
Scope of the Policy
This policy applies to all personal and business data collected, stored, and processed through Yugalinks Global Connect Pvt Ltd, including data from buyers, sellers, partners, and affiliates.
Data Retention Periods
The duration for which we retain data depends on the nature of the information and legal obligations. Key retention periods include:
- User Account Information: Retained for as long as the user has an active account. Deleted within 90 days of account closure or inactivity.
- Transaction Data: Retained for up to 7 years to comply with legal, tax, and audit requirements.
- Communication Records: Customer support and correspondence are kept for 2 years to track service quality and resolve disputes.
- Export Documentation: Retained for up to 7 years to comply with Indian export regulations and international trade laws.
- Marketing Data: Retained for 3 years unless the user opts out of communications.
Secure Data Deletion Methods
When data is no longer needed, we use secure deletion processes to protect confidentiality:
- Digital Data: Permanently deleted using industry-standard data erasure protocols.
- Physical Records: Shredded and disposed of securely.
- Backup Data: Removed during regular backup purging cycles.
User Rights and Data Deletion Requests
Users have the right to request deletion of their personal data when it is no longer required. Requests can be submitted to our Data Protection Officer (DPO) and will be processed within 30 days, except where legal obligations prevent immediate deletion.
Exceptions to Data Deletion
Certain data may be retained beyond the standard retention period under specific conditions:
- To comply with legal and regulatory requirements
- To resolve ongoing disputes or enforce agreements
- For fraud prevention and security investigations
Data Anonymization
When possible, we anonymize data to retain useful information without compromising user privacy. Anonymized data is stripped of identifiable information and may be used for analytics and research.
Data Access and Review
Access to retained data is strictly controlled and limited to authorized personnel. Regular reviews are conducted to ensure compliance with retention policies and data minimization practices.
Policy Review and Updates
This policy is reviewed annually and updated as required to align with evolving legal requirements and industry standards. Changes to this policy will be communicated to users through our platform.