1. Introduction & Scope
ETISALAT ENTERPRISE PRIVATE LIMITED (hereinafter referred to as "the Company", "we", "us", or "our"), incorporated under the Companies Act, 2013 with CIN: U62090MH2025PTC438482, having its operational office at Shop No. 314, Third Floor, The Gelleria, Nr. Anupam Business Hub, Yogi Chowk to Kiran Chowk Road, Yogi Chowk, Surat - 395010, Gujarat, India, is deeply committed to safeguarding the privacy and security of your personal and commercial data.
This Privacy Policy explains how we collect, process, record, store, transfer, and protect your information when you access our website, utilize our payment gateway channels, merchant API endpoints, corporate payout pipelines, or engage our financial advisory services.
2. Regulatory Framework & Compliance
This policy complies with:
- The Information Technology Act, 2000, and rules framed thereunder, specifically the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 (SPDI Rules).
- The Digital Personal Data Protection Act, 2023 (DPDP Act).
- Reserve Bank of India (RBI) circulars, guidelines on Payment Aggregators (PA) and Payment Gateways (PG), and Card-on-File Tokenization (CoFT) mandates.
3. Types of Information We Collect
Depending on your relationship with us (Merchant, Partner, Advisory Client, or End-Customer), we may collect:
- Corporate Identity & KYC Data: Certificate of Incorporation, Memorandum and Articles of Association (MOA/AOA), GSTIN Certificate (e.g. 24AAICE6002F1Z4), Company PAN, Director/Promoter identity (Aadhaar, PAN), proof of registered office address, and board resolutions.
- Financial & Bank Details: Bank account numbers, IFSC codes, cancelled cheques, UPI Virtual Payment Addresses (VPAs), and transaction history.
- Transaction Data: Payment amount, timestamp, IP address, device fingerprints, transaction identifiers, merchant ID, and authorization tokens. Note: We strictly comply with RBI mandates and do not store raw card CVV or primary account numbers (PAN) unencrypted.
- Advisory & Commercial Records: Financial balance sheets, cashflow reports, credit reports, and project financing documentation supplied voluntarily for corporate financial advisory.
4. Purpose of Data Processing
Your data is processed strictly for legitimate corporate and regulatory objectives, including:
- Enabling omnichannel payment processing, merchant settlement, refunds, and dispute management.
- Conducting mandatory Customer Due Diligence (CDD) and Know Your Customer (KYC) verifications.
- Delivering strategic financial advisory, debt syndication evaluation, and tax compliance audits.
- Detecting, preventing, and prosecuting financial fraud, money laundering, and cybersecurity threats.
- Complying with statutory reporting directives from the RBI, FIU-IND, GST Department, and judicial authorities.
5. Data Security & Storage Standards
We employ multi-tiered technical, administrative, and physical safeguards:
- Data Encryption: All data in transit is encrypted using 256-bit Transport Layer Security (TLS 1.3). Sensitive records at rest are secured using AES-256 cryptographic standards.
- Data Localization: In strict compliance with RBI directives on Storage of Payment System Data, all end-to-end payment transaction logs and customer data are stored exclusively on secure servers located within the territorial borders of India.
- Access Control: Role-based access controls (RBAC) and multi-factor authentication (MFA) restrict internal access to authorized compliance personnel only.
6. Sharing and Disclosure of Information
We do not sell, rent, or trade your personal or financial information to third-party marketing brokers. Data is disclosed only to:
- Acquiring Banks, NPCI (National Payments Corporation of India), and card payment networks (RuPay, Visa, Mastercard) strictly to clear payments.
- Governmental and Regulatory Bodies (RBI, Income Tax Department, MCA, GSTN) when required by statutory law.
- Accredited professional auditors, chartered accountants, and legal counsel bound by professional confidentiality.
7. Your Legal Rights
Under applicable Indian data privacy regulations, you are entitled to:
- Request confirmation of whether we process your personal data.
- Request rectification of inaccurate, outdated, or incomplete details.
- Withdraw consent for optional advisory communications at any time.
- File a grievance with our designated Data Protection Officer.
8. Grievance Redressal Officer
In accordance with the Information Technology Act, 2000 and the rules made thereunder, the contact details of the Grievance Officer for Etisalat Enterprise Private Limited are as follows:
ETISALAT ENTERPRISE PRIVATE LIMITED
Shop No. 314, Third Floor, The Gelleria, Nr. Anupam Business Hub,
Yogi Chowk to Kiran Chowk Road, Yogi Chowk, Surat - 395010, Gujarat, India.
CIN: U62090MH2025PTC438482 | GSTIN: 24AAICE6002F1Z4
Email: business@etisalat.live
Phone: +91 9737128679