Privacy Policy

Last updated: March 25, 2025

In order to receive information about your Personal Data, the purposes and the parties the Data is shared with, contact the Owner.

Owner and Data Controller.

SHRIRAM VERITECH SOLUTIONS PVT LTD  

PLOT NO 39, ECOTECH EXTN, PART I,

GREATER NOIDA - 201306

UTTAR PRADESH

INDIA

Owner contact email: support@veritechplus.com 

This Privacy Policy describes Our policies and procedures on the collection, use and disclosure of Your information when You use the Service and tells You about Your privacy rights and how the law protects You.

SHRIRAM VERITECH SOLUTIONS PRIVATE LIMITED and subsidiaries (“we”, “us”, “our”, “SHRIRAM VERITECH SOLUTIONS PVT.LTD.”) are committed to protecting your privacy. This Privacy Policy (“Policy”) describes our practices in connection with information privacy on Personal Data we process through your individual use of the following services, products, and related mobile applications (collectively, the “Products”):

• VERITECH+ Mobile Application

When you use VERITECH Plus services by using Mobile Application, you trust us with some of your information. We understand this big responsibility on our shoulders, and we are always working hard to keep your information safe and secure, and give you control over your data. We are already certified ISO 27001, independently certified for protecting privacy of Personally Identifiable Information (PII) under GDPR readiness, and working on a few other major data privacy certifications

Interpretation and Definitions

Interpretation

The words of which the initial letter is capitalized have meanings defined under the following conditions. The following definitions shall have the same meaning regardless of whether they appear in singular or in plural.

Definitions

For the purposes of this Privacy Policy:

Account means a unique account created for You to access our Service or parts of our Service.

Affiliate means an entity that controls, is controlled by or is under common control with a party, where "control" means ownership of 50% or more of the shares, equity interest or other securities entitled to vote for election of directors or other managing authority.

Application refers to Veritech Plus, the software program provided by the Company.

Company (referred to as either "the Company", "We", "Us" or "Our" in this Agreement) refers to Shriram Veritech Solutions Pvt. Ltd., Plot No. 39, Ecotech Extension -1, Greater Noida, Near Asian Paint Company, Noida, Uttar Pradesh 201306.

Country refers to: Uttar Pradesh, India

Device means any device that can access the Service such as a Mobile device, a cellphone or a digital tablet.

Personal Data is any information that relates to an identified or identifiable individual.

Service refers to the Application.

Service Provider means any natural or legal person who processes the data on behalf of the Company. It refers to third-party companies or individuals employed by the Company to facilitate the Service, to provide the Service on behalf of the Company, to perform services related to the Service or to assist the Company in analyzing how the Service is used.

Usage Data refers to data collected automatically, either generated by the use of the Service or from the Service infrastructure itself (for example, the duration of a page visit).

You: means the individual accessing or using the Service, or the company, or other legal entity on behalf of which such individual is accessing or using the Service, as applicable.

Controller: means a controller as defined under the GDPR.

Data Protection Laws: means all international, federal, national and state privacy and data protection laws and regulations to the extent applicable to Veritech and the Services.

Data Breach: means any loss or unauthorized access, acquisition, theft, destruction, disclosure or use of User Data that occurs while such User Data is in possession of or under the control of Shriram Veritech solutions.

GDPR: means the EU General Data Protection Regulation 2016/679.

Personal Data: means information relating to an identified or identifiable natural person.  An identifiable natural person is a natural person who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.

Process or “Processing”: means any operation or set of operations that are performed upon User Data, whether or not by automatic means, such as collection, accessing, processing, use, recording, organization, storage, adaptation or alteration, retrieval, consultation, use, disclosure, dissemination, transmittal, alignment or combination, blocking, erasure, destruction or otherwise used as set out in the applicable Data Protection Laws.

Processor: means a processor as defined under the GDPR.

Services: means Veritech+ Services, solutions and products and Digital Authentication Service provider.

Sub-Processor: shall mean an entity engaged by SVSPL to assist it in Processing the User Data in fulfillment of its obligations with regard to the Services.

Third Party: is any person or entity other than Shriram Veritech Solutions and Client and Client’s Users.

User Data: means all data relating to a User that is (i) provided to Veritech by Client or User or (ii) otherwise obtained, accessed, developed, or produced by Veritech.  User Data may include Personal Data.

 

Collecting and Using Your Personal Data

Information Gathering, Processing and Usage

In connection with operation of the Mobile Application and providing our services to you, we may collect the following types of user information (“Information”):

Types of Data Collected

Personal Data

While using Our Service, We may ask You to provide Us with certain personally identifiable information that can be used to contact or identify You. Personally identifiable information may include, but is not limited to:

Email address

First name and last name

Phone number

Usage Data

Usage Data

Usage Data is collected automatically when using the Service.

Usage Data may include information such as Your Device's Internet Protocol address (e.g. IP address), browser type, browser version, the pages of our Service that You visit, the time and date of Your visit, the time spent on those pages, unique device identifiers and other diagnostic data.

When You access the Service by or through a mobile device, We may collect certain information automatically, including, but not limited to, the type of mobile device You use, Your mobile device unique ID, the IP address of Your mobile device, Your mobile operating system, the type of mobile Internet browser You use, unique device identifiers and other diagnostic data.

We may also collect information that Your browser sends whenever You visit our Service or when You access the Service by or through a mobile device.

Information Collected while Using the Application

While using Our Application, in order to provide features of Our Application, We may collect, with Your prior permission:

Information regarding your location

Pictures and other information from your Device's camera and photo library

SMS Auto Read for login and new registration by using OTP auto read feature.

We use this information to provide features of Our Service, to improve and customize Our Service. The information may be uploaded to the Company's servers and/or a Service Provider's server or it may be simply stored on Your device.

You can enable or disable access to this information at any time, through Your Device settings.

Use of Your Personal Data

The Company may use Personal Data for the following purposes:

To provide and maintain our Service, including to monitor the usage of our Service.

To manage Your Account: to manage Your registration as a user of the Service. The Personal Data You provide can give You access to different functionalities of the Service that are available to You as a registered user.

For the performance of a contract: the development, compliance and undertaking of the purchase contract for the products, items or services You have purchased or of any other contract with Us through the Service.

To contact You: To contact You by email, telephone calls, SMS, or other equivalent forms of electronic communication, such as a mobile application's push notifications regarding updates or informative communications related to the functionalities, products or contracted services, including the security updates, when necessary or reasonable for their implementation.

To provide You with news, special offers and general information about other goods, services and events which we offer that are similar to those that you have already purchased or enquired about unless You have opted not to receive such information.

To manage Your requests: To attend and manage Your requests to Us.

For business transfers: We may use Your information to evaluate or conduct a merger, divestiture, restructuring, reorganization, dissolution, or other sale or transfer of some or all of Our assets, whether as a going concern or as part of bankruptcy, liquidation, or similar proceeding, in which Personal Data held by Us about our Service users is among the assets transferred.

For other purposes: We may use Your information for other purposes, such as data analysis, identifying usage trends, determining the effectiveness of our promotional campaigns and to evaluate and improve our Service, products, services, marketing and your experience.

We may share Your personal information in the following situations:

Retention of Your Personal Data

The Company will retain Your Personal Data only for as long as is necessary for the purposes set out in this Privacy Policy. We will retain and use Your Personal Data to the extent necessary to comply with our legal obligations (for example, if we are required to retain your data to comply with applicable laws), resolve disputes, and enforce our legal agreements and policies.

The Company will also retain Usage Data for internal analysis purposes. Usage Data is generally retained for a shorter period of time, except when this data is used to strengthen the security or to improve the functionality of Our Service, or We are legally obligated to retain this data for longer time periods.

Transfer of Your Personal Data

Your information, including Personal Data, is processed at the Company's operating offices and in any other places where the parties involved in the processing are located. It means that this information may be transferred to — and maintained on — computers located outside of Your state, province, country or other governmental jurisdiction where the data protection laws may differ than those from Your jurisdiction.

Your consent to this Privacy Policy followed by Your submission of such information represents Your agreement to that transfer.

The Company will take all steps reasonably necessary to ensure that Your data is treated securely and in accordance with this Privacy Policy and no transfer of Your Personal Data will take place to an organization or a country unless there are adequate controls in place including the security of Your data and other personal information.

Delete Your Personal Data

You have the right to delete or request that We assist in deleting the Personal Data that We have collected about You.

Our Service may give You the ability to delete certain information about You from within the Service.

You may update, amend, or delete Your information at any time by signing in to Your Account, if you have one, and visiting the account settings section that allows you to manage Your personal information. You may also contact Us to request access to, correct, or delete any personal information that You have provided to Us.

Please note, however, that We may need to retain certain information when we have a legal obligation or lawful basis to do so.

Disclosure of Your Personal Data

Business Transactions

If the Company is involved in a merger, acquisition or asset sale, Your Personal Data may be transferred. We will provide notice before Your Personal Data is transferred and becomes subject to a different Privacy Policy.

Law enforcement

Under certain circumstances, the Company may be required to disclose Your Personal Data if required to do so by law or in response to valid requests by public authorities (e.g. a court or a government agency).

Other legal requirements

The Company may disclose Your Personal Data in the good faith belief that such action is necessary to:

Security of Your Personal Data

The security of Your Personal Data is important to Us, but remember that no method of transmission over the Internet, or method of electronic storage is 100% secure. While We strive to use commercially acceptable means to protect Your Personal Data, We cannot guarantee its absolute security.

When mentioning the use of the SMS auto-read feature in your app's privacy policy, you need to clearly explain how the feature works, what data it accesses, and how that data will be used, stored, and protected.You must at least 12 years of age to use our veritech plus mobile app services. Here's a general outline of what you might want to include:

Privacy Policy Clause for SMS Auto-Read Feature:

SMS Auto-Read Feature

To enhance the functionality of our application, we may use the SMS Auto-Read feature, which automatically reads incoming text messages (SMS) on your device. The data accessed through this feature may include the content of your messages, sender details, and any other information contained in the SMS.

How SMS Data is Used:

Our app requires access to your SMS messages to automatically retrieve One-Time Passwords (OTPs) for easy and secure login. We will only use this data temporarily for authentication purposes and will never share it with third parties. You can disable this feature at any time in the app's settings.

By ensuring User Consent & Transparency, you not only protect user privacy but also build trust with your audience. It’s essential to clearly articulate how the permissions will enhance their app experience while being transparent about any data collection and usage.

Data Access and Security:

Permissions:

To enable the SMS Auto-Read feature, the app may request permission to access your SMS messages. You are free to grant or deny this permission, but denying it may limit certain features of the app.

If you grant permission, the app will only access SMS messages that are necessary for its intended functionality.

Data Retention:

SMS content will be used only for the duration of the app’s functionality. After use, your SMS data will not be retained, unless explicitly stated otherwise for specific services (e.g., if you opt-in for certain features).

User Control:

You have control over the SMS Auto-Read feature and can disable it at any time through the app’s settings. Additionally, you may revoke SMS access permission in your device’s settings.

Make sure that you update the policy according to your app's specific use case, jurisdiction, and legal requirements, as privacy regulations like GDPR, CCPA, etc., may impose additional obligations. It's also a good practice to consult a legal expert to ensure compliance with applicable laws.

GPS Location Data

Our application may collect and use your GPS location to provide location-based services, such as directions, nearby places, or other location-aware features. By granting the app access to your device’s GPS, you allow us to access your real-time location information.

How We Use GPS Location Data:

Google Services and Location Data:

Permissions and Control:

Data Security:

Data Retention:

Privacy Policy Clause for Camera and Media Files:

Camera and Media Files Access

Our application may request access to your device’s camera and media files (including photos, videos, and audio) in order to provide certain features and services. Below is an outline of how we collect, use, and protect this data.

Camera Access:

Access to Media Files:

How We Use Camera and Media Data:

Data Security:

Permissions:

Data Retention:

 

Data Privacy

Compliance with Laws. SHRIRAM VERITECH Solutions is committed to complying with its obligations under all Data Protection Laws. For purposes of the GDPR, Client is considered the Controller and VERITECH is its Processor; if Client is considered a Processor for purposes of the GDPR, then VERITECH is considered its Sub-Processor.

Distribution of User Data. Users should provide Shriram Veritech Solutions only with Personal Data that is requested by Veritech or that is otherwise necessary for SHRIRAM VERITECH Solutions to provide the Services.  SHRIRAM VERITECH Solutions is not responsible for any other Personal Data.  Client will not provide SHRIRAM VERITECH Solutions with Personal Data unless Client has obtained all required consents from Users.

Limitations on Use of Personal Data. SHRIRAM VERITECH Solutions shall not Process User Data other than for the purposes specified by Users. SHRIRAM VERITECH Solutions shall not Process User Data for the benefit of any Third Party. SHRIRAM VERITECH Solutions shall access only the User Data that it needs to perform the Services (i.e., no more than necessary). SHRIRAM VERITECH Solutions will not store User Data longer than necessary to achieve the permitted purposes specified by User. SHRIRAM VERITECH Solutions does share aggregate or anonymous data (including personal data that has been stripped of personally-identifying characteristics) with third parties.

Restrictions. Except with a User’s prior, written approval, on a case-by-case basis, SHRIRAM VERITECH Solutions will not: (a) use User Data other than as necessary for SHRIRAM VERITECH Solutions to provide the Services, (b) disclose, sell, assign, lease or otherwise provide User Data to Third Parties (other than to its affiliates or Sub-Processors) except to the extent required or permitted by Data Protection Laws, or (c) merge User Data with other data, modify or commercially exploit any User Data.

Sensitive Personal Data. Clients and Users are advised never to provide SHRIRAM VERITECH Solutions with Sensitive Personal Data. “Sensitive Personal Data” means (a) information that reveals a natural person’s racial or ethnic origin, political opinions, religious or philosophical beliefs, or trade-union membership, (b) information or data concerning a natural person’s health or sex life or sexual orientation; or (c) genetic data or biometric data about a natural person.

Data Security

Security Program Requirements. SHRIRAM VERITECH Solutions will maintain a security program that contains administrative, technical, and physical safeguards appropriate to the complexity, nature, and scope of its activities. SHRIRAM VERITECH Solutions security program shall be designed to protect the security and confidentiality of User Data against unlawful or accidental access to, or unauthorized processing, disclosure, destruction, damage or loss of User Data.  At a minimum, SHRIRAM VERITECH Solutions security program shall include: (a) limiting access of User Data to Authorized Persons; (b) implementing network, application, database, and platform security; (c) means for securing information transmission, storage, and disposal within SHRIRAM VERITECH Solutions possession or control; (d) means for encrypting User Data stored on media within SHRIRAM VERITECH Solutions possession or control by using modern acceptable cyphers and key lengths, including backup media; (e) means for encrypting User Data transmitted by SHRIRAM VERITECH Solutions over public or wireless networks by using modern acceptable cyphers and key lengths; and (f) means for keeping firewalls, routers, servers, personal computers, and all other resources current with appropriate security-specific system patches.

Regular Reviews. SHRIRAM VERITECH Solutions shall ensure that its security measures are regularly reviewed and revised to address evolving threats and vulnerabilities.

Data Breach Procedures

Notification. SHRIRAM VERITECH Solutions shall notify Client and any affected User of any Data Breach as soon as practicable and without undue delay after becoming aware of it.  Such notification shall at a minimum: (i) describe the nature of the Data Breach, the categories and numbers of Users concerned, and the categories and numbers of Personal Data records concerned; (ii) communicate the name and contact details of SHRIRAM VERITECH Solutions's data protection officer or other relevant contact from whom more information may be obtained; and (iii) describe the measures taken or proposed to be taken to address the Data Breach.

Remedial Actions. In the event of a Data Breach for which SHRIRAM VERITECH Solutions is responsible, SHRIRAM VERITECH Solutions will use commercially reasonable efforts to: (a) remedy the Data Breach condition, investigate, document, restore the Services, and undertake required response activities; (b) provide regular status reports to Client on Data Breach response activities; (c) assist Client with the coordination of media, law enforcement, or other Data Breach notifications; and (d) assist and cooperate with Client in its Data Breach response efforts.

Data Retention

We process your Personal Data for the minimum period necessary for the purposes set out in this Privacy Policy, unless there is a specific legal requirement for us to keep the data for a longer retention period. We determine the appropriate retention period based on the amount, nature, and sensitivity of your Personal Data, and after the retention period ends, we will destruct your Personal Data. When we are unable to do so for technical reasons, we will ensure that appropriate measures are put in place to prevent any further such use of your Personal Data.

Changes to this Privacy Policy

We may update Our Privacy Policy from time to time. We will notify You of any changes by posting the new Privacy Policy on this page.

We will let You know via email and/or a prominent notice on Our Service, prior to the change becoming effective and update the "Last updated" date at the top of this Privacy Policy.

You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.

Where Personal Data is processed for a public interest, in the exercise of an official authority vested in the Owner or for the purposes of the legitimate interests pursued by the Owner, Users may object to such processing by providing a ground related to their particular situation to justify the objection.

Users must know that, however, should their Personal Data be processed for direct marketing purposes, they can object to that processing at any time without providing any justification. To learn, whether the Owner is processing Personal Data for direct marketing purposes, Users may refer to the relevant sections of this document.

How to exercise these rights

Any requests to exercise User rights can be directed to the Owner through the contact details provided in this document. These requests can be exercised free of charge and will be addressed by the Owner as early as possible and always within one month.

Additional information about Data collection and processing

Legal action 

The User's Personal Data may be used for legal purposes by the Owner in Court or in the stages leading to possible legal action arising from improper use of this Application or the related Services.

The User declares to be aware that the Owner may be required to reveal personal data upon request of public authorities.

Additional information about User's Personal Data

In addition to the information contained in this privacy policy, this Application may provide the User with additional and contextual information concerning particular Services or the collection and processing of Personal Data upon request.

System logs and maintenance 

For operation and maintenance purposes, this Application and any third-party services may collect files that record interaction with this Application (System logs) use other Personal Data (such as the IP Address) for this purpose.

Changes to this privacy policy 

The Owner reserves the right to make changes to this privacy policy at any time by notifying its Users on this page and possibly within this Application and/or - as far as technically and legally feasible - sending a notice to Users via any contact information available to the Owner. It is strongly recommended to check this page often, referring to the date of the last modification listed at the bottom.

Should the changes affect processing activities performed on the basis of the User’s consent, the Owner shall collect new consent from the User, where required.

Report on Vulnerability

If you believe you have found a security vulnerability on Veritech Plus Mobile App, please let us know right away. We will investigate all reports and do our best to quickly fix valid issues.

Contact Us

If you have any questions about this Privacy Policy, You can contact us:

By email:  support@veritechplus.com 

By phone number: 09555527395

By mail: Plot No. 39, Ecotech Extension -1, Greater Noida,

Near Asian Paint Company, Noida,

 Uttar Pradesh 201306