Back to Sendder
SENDDER · BUS-IN PARCEL
Legal

Privacy Policy

Last updated: 12 August 2026

1. What this policy covers

This Privacy Policy explains how Sendder Bus-In Parcel (“Sendder”, “we”) collects, uses, discloses, and safeguards personal data when you use sendder.in, sendderpartner.com, sendderadmin.com, or any Sendder API. By using the platform you consent to this policy in accordance with the Digital Personal Data Protection Act, 2023 (“DPDP Act”) and IT Rules 2011.

2. What we collect

  • Identity & contact: full name, mobile number, email (if provided), GST number (vendors).
  • Booking details: pickup / drop addresses, PIN codes, parcel weight & dimensions, contents description, photos (for AI dimension estimation), bilty numbers.
  • Payment metadata: Razorpay order/payment IDs, amount, status. We do not store card, UPI, or bank account credentials.
  • Device & usage: IP address, user-agent, timestamps, approximate location (for GPS tracking during transit), and interaction logs.
  • Communication logs: in-app chat between vendor and customer, notifications, OTP requests.

3. Why we collect it

  • To route your parcel to the correct vendor and address.
  • To calculate accurate pricing.
  • To keep you informed via SMS, email, and in-app notifications.
  • To process payments and refunds through Razorpay.
  • To prevent fraud, misuse, or violation of our Terms.
  • To comply with legal obligations (tax, KYC, law enforcement).
  • To improve our service through analytics on aggregated, anonymised data.

4. Who sees your data

  • The vendor you’re booked with — sees your name, phone, pickup / drop address only after they accept the booking. Not visible before acceptance.
  • Payment partners: Razorpay Software Private Limited.
  • Communication partners: MSG91 (SMS), Resend (email).
  • Infrastructure partners: MongoDB Atlas, Emergent (hosting), Cloudflare (edge).
  • AI partners: Google (Gemini vision for parcel size estimation) and Anthropic (Claude for the Ops AI). Photos submitted for AI analysis are processed transiently and not used to train third-party models.
  • Law enforcement / regulators: when compelled by valid legal process.

We do not sell your data to advertisers.

5. Data retention

  • Account & booking data: retained for the life of your account plus 3 years (statutory requirement).
  • OTPs: 10 minutes.
  • Chat messages: retained until account deletion or 2 years, whichever is earlier.
  • Financial records (invoices, payment IDs): retained for 8 years per Indian tax law.

6. Your rights (DPDP Act 2023)

  • Right to access the data we hold about you.
  • Right to correction of inaccurate data.
  • Right to erasure of data once it is no longer needed for legal purposes.
  • Right to nominate someone to exercise these rights on your behalf.
  • Right to grievance redressal (see contact below).

Send data requests to saaypvt@gmail.com. We respond within 30 days.

7. Security

We use HTTPS end-to-end, JWT authentication, bcrypt / cryptographic hashing where relevant, and access controls that restrict data to the smallest set of personnel who need it. Despite our best efforts, no online service can be 100% secure — in the event of a breach that affects your data, we will notify you within 72 hours in accordance with the DPDP Act.

8. Cookies & local storage

We use browser localStorage to persist your login session (JWT), the current booking draft, and UI preferences. We do not use third-party advertising cookies. Analytics, if any, are pageview-only and anonymised.

9. Children

Sendder is not intended for anyone under 18. We do not knowingly collect data from children.

10. Changes to this policy

We may update this policy from time to time. Material changes will be notified via SMS / email or a banner in the app. The “Last updated” date at the top always reflects the current version.

11. Grievance Officer

Name: Sendder Grievance Officer
Email: saaypvt@gmail.com
Response window: within 30 days as per Indian IT Rules 2011.