This Privacy Policy ("Policy") outlines in detail how IJA Private Limited and its affiliates (collectively, "Company," "we," "us," or "our") collect, use, disclose, store, protect, and dispose of your personal information when you access, download, install, register on, browse, or otherwise use the IJA Customer Mobile Application (including all versions for iOS and Android devices), the IJA website, associated web portals, APIs, and any related systems, features, or services (collectively, the "Platform"). This Policy applies to all individuals or entities ("User," "Customer," or "you") who interact with the Platform, whether as registered users, guests, or through any integrated features.
Our commitment to privacy is rooted in transparency, security, and compliance with applicable data protection laws, including but not limited to the Digital Personal Data Protection Act, 2023 (DPDP Act), the Information Technology Act, 2000 (as amended), the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, and other relevant Indian regulations. We process your data responsibly to provide a seamless e-commerce experience for bathware, sanitaryware, and allied products, while respecting your rights and choices.
By accessing or using the Platform, you explicitly consent to the collection, processing, and sharing of your information as described herein. If you do not agree with any aspect of this Policy, you must immediately stop using the Platform and delete any installed applications. This Policy forms an integral part of the IJA Customer Application Terms and Conditions and should be read in conjunction with them.
We reserve the right to modify this Policy at any time to reflect changes in our practices, legal requirements, or technological advancements. Updates will be posted on the Platform with a revised "Last Updated" date. We may notify you of significant changes via email, in-app notifications, or other means. Your continued use of the Platform after such changes constitutes your acceptance of the revised Policy. We encourage you to review this Policy regularly to stay informed about how we handle your data.
Last Updated: January 06, 2026
To operate the Platform effectively and provide personalized services, we collect various types of information. We categorize this data to ensure clarity and minimize collection to what is necessary. The specific data collected depends on your interactions with the Platform (e.g., browsing vs. ordering). Below is a comprehensive breakdown:
Personal Information: Identifiable data provided voluntarily by you, which may include
Sensitive Personal Data: We generally do not collect sensitive data (e.g., financial data beyond what's necessary, health information, biometric data, or religious beliefs). If required for specific features (e.g., accessibility accommodations), we will seek your explicit consent and handle it with heightened security.
Device and Technical Information: Automatically collected to ensure Platform functionality and security
Usage and Behavioral Data: Insights into how you interact with the Platform:
Transaction and Service Data: Related to your commercial activities:
Communication and Marketing Data: From your engagements:
Third-Party and Aggregated Data: Obtained from external sources:
We do not collect data from children under 13 without verifiable parental consent. For users aged 13-18, we require guardian approval where applicable.
Data collection occurs through multiple channels to ensure a smooth user experience. We use industry-standard methods with transparency:
Direct Collection: When you voluntarily provide information, such as during:
Automated Collection: Via technologies embedded in the Platform:
Device Permissions: With your consent, we access:
Third-Party Collection: From partners:
We collect only the minimum data required and inform you via pop-ups or notices when seeking permissions.
Your data enables us to deliver high-quality services while balancing our legitimate interests. Uses are based on legal grounds like consent, contract performance, legal obligations, or legitimate interests (e.g., fraud prevention). Detailed purposes include:
Core Operations:We do not use automated decision-making that significantly affects you without human oversight or your consent.
We share data judiciously, with contractual safeguards to protect privacy:
Internal Sharing: Within our affiliates for unified operations.
Service Providers: With vetted third parties (e.g., cloud hosts like AWS, CRM tools like Salesforce) bound by data processing agreements.
Business Ecosystem: Limited details with dealers/influencers for order facilitation (e.g., delivery address).
Legal and Regulatory: To authorities for compliance (e.g., GST audits) or in response to subpoenas.
Business Transactions: During mergers/acquisitions, with data protected.
With Your Consent: For integrations or referrals.
No data is sold or rented. International transfers (if to servers outside India) use approved mechanisms like binding corporate rules.
We employ robust measures to safeguard data:
Technical: Encryption (AES-256 at rest, TLS 1.3 in transit), multi-factor authentication, intrusion detection.
Administrative: Access restricted to need-to-know, regular training, incident response plans.
Physical: Secure data centers with 24/7 monitoring.
Breach Response: Notification within 72 hours as per DPDP Act, with remedial actions.
While we strive for security, absolute protection cannot be guaranteed.
Retention periods are minimized:
Active data: While account is open, plus 6 months post-closure.
Transaction records: 7-10 years for legal/tax purposes.
Anonymized data: Indefinitely for research.
Deletion requests are honored promptly, except for legal holds.
You have extensive rights under DPDP Act:
Access, correction, erasure, portability, objection, and consent withdrawal.
Opt-out of marketing via unsubscribe links or app settings.
Cookie management through browser tools.
Exercise rights by contacting the DPO.
We use cookies for essential functions, analytics, and ads. Categories: strictly necessary, performance, functional, targeting. Third-party cookies (e.g., from Google) are managed separately. Consent is obtained via banners; withdrawal possible anytime.
Links to external sites are not governed by this Policy. Review their terms.
No data collection from under-13s without parental consent. For 13-18, additional safeguards apply.
Data may be stored/processed outside India with equivalent protections.
For inquiries, rights exercises, or complaints:
Data Protection Officer: Parth Shekhar Sati
Email: contactforhelp@ijaworld.com
Phone: 8130940691
Address: Flat No. 135, Plot No. 30, Rohit Apartment, Sec 10, Dwarka Sec-6, South West Delhi, New Delhi, Delhi, India - 110075
Grievance Officer (per IT Rules): Parth Shekhar Sati (same details). We aim to respond within 30 days.
Governing Law: Indian laws, jurisdiction in Delhi courts.
Severability: Invalid clauses do not void the Policy.
Entire Agreement: Supersedes prior versions.
By using the Platform, you confirm your understanding and agreement.
This Privacy Policy ("Policy") outlines in detail how IJA Private Limited and its affiliates (collectively, "Company," "we," "us," or "our") collect, use, disclose, store, protect, and dispose of your personal information when you access, download, install, register on, browse, or otherwise use the IJA Business Mobile Application (including all versions for iOS and Android devices), associated web portals, APIs, and any related systems, features, or services (collectively, the "Platform"). This Policy applies to all dealers, influencers, partners, or other commercial entities ("Business User," "User," or "you") who interact with the Platform, whether during onboarding, facilitation activities, or any integrated features.
Our commitment to privacy is rooted in transparency, security, and compliance with applicable data protection laws, including but not limited to the Digital Personal Data Protection Act, 2023 (DPDP Act), the Information Technology Act, 2000 (as amended), the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, and other relevant Indian regulations. We process your data responsibly to facilitate commercial activities such as product referrals, order initiations, incentive management, and ecosystem coordination within the bathware and sanitaryware industry, while respecting your rights and choices.
By accessing or using the Platform, you explicitly consent to the collection, processing, and sharing of your information as described herein. If you do not agree with any aspect of this Policy, you must immediately stop using the Platform and delete any installed applications. This Policy forms an integral part of the IJA Business Application Terms and Conditions and should be read in conjunction with them.
We reserve the right to modify this Policy at any time to reflect changes in our practices, legal requirements, or technological advancements. Updates will be posted on the Platform with a revised "Last Updated" date. We may notify you of significant changes via email, in-app notifications, or other means. Your continued use of the Platform after such changes constitutes your acceptance of the revised Policy. We encourage you to review this Policy regularly to stay informed about how we handle your data.
Last Updated: January 06, 2026
To operate the Platform effectively and support business facilitation, we collect various types of information. We categorize this data to ensure clarity and minimize collection to what is necessary. The specific data collected depends on your interactions with the Platform (e.g., onboarding vs. order facilitation). Below is a comprehensive breakdown:
Personal Information: Identifiable data provided voluntarily by you, which may include:
Sensitive Personal Data: We may collect limited sensitive data (e.g., financial account details for payouts) with explicit consent and heightened security. We avoid collecting unrelated sensitive information (e.g., health data, religious beliefs).
Device and Technical Information: Automatically collected to ensure Platform functionality and security:
Usage and Behavioral Data: Insights into how you interact with the Platform:
Transaction and Business Data: Related to your commercial activities
Communication and Marketing Data: From your engagements:
Third-Party and Aggregated Data: Obtained from external sources:
We do not collect data from individuals under 18 in a business capacity without verifiable authorization.
Data collection occurs through multiple channels to ensure a smooth business experience. We use industry-standard methods with transparency:
Direct Collection: When you voluntarily provide information, such as during:
Automated Collection: Via technologies embedded in the Platform:
Device Permissions: With your consent, we access:
Third-Party Collection: From partners:
We collect only the minimum data required and inform you via pop-ups or notices when seeking permissions.
Your data enables us to deliver efficient business services while balancing our legitimate interests. Uses are based on legal grounds like consent, contract performance, legal obligations, or legitimate interests (e.g., audit rights). Detailed purposes include:
Core Operations:We do not use automated decision-making that significantly affects you without human oversight or your consent.
We share data judiciously, with contractual safeguards to protect privacy:
Internal Sharing: Within our affiliates for unified operations.
Service Providers: With vetted third parties (e.g., cloud hosts like AWS, payment processors) bound by data processing agreements.
Business Ecosystem: Limited details with customers or other users for facilitation (e.g., referral mappings).
Legal and Regulatory: To authorities for compliance (e.g., tax audits) or in response to subpoenas.
Business Transactions: During mergers/acquisitions, with data protected.
With Your Consent: For integrations or collaborations.
No data is sold or rented. International transfers (if to servers outside India) use approved mechanisms like binding corporate rules.
We employ robust measures to safeguard data:
Technical: Encryption (AES-256 at rest, TLS 1.3 in transit), multi-factor authentication, intrusion detection.
Administrative: Access restricted to need-to-know, regular training, incident response plans.
Physical: Secure data centers with 24/7 monitoring.
Breach Response: Notification within 72 hours as per DPDP Act, with remedial actions.
While we strive for security, absolute protection cannot be guaranteed.
Retention periods are minimized:
Deletion requests are honored promptly, except for legal holds.
You have extensive rights under DPDP Act:
Exercise rights by contacting the DPO.
We use cookies for essential functions, analytics, and ads. Categories: strictly necessary, performance, functional, targeting. Third-party cookies (e.g., from Google) are managed separately. Consent is obtained via banners; withdrawal possible anytime.
Links to external sites are not governed by this Policy. Review their terms.
The Platform is not intended for individuals under 18. We do not knowingly collect data from them.
Data may be stored/processed outside India with equivalent protections.
For inquiries, rights exercises, or complaints:
Grievance Officer (per IT Rules): Parth Shekhar Sati (same details). We aim to respond within 30 days.
By using the Platform, you confirm your understanding and agreement.