Privacy Policy
What we collect, why we collect it and the control you have — written in plain English, for card owners and the people who visit their cards.
In short
A plain-English summary — the full text below is what applies.We never sell your data
Not to advertisers, data brokers or anyone else.
Your leads are yours
Enquiries from your card go to you, not to us.
Passwords are hashed
We can't read your password, and card numbers never reach us.
You're in control
Ask to see, correct, get a copy of or delete your data.
Who we are and what this covers
DigitalCarda (“DigitalCarda”, “we”, “us”) lets businesses and professionals in India create, share and manage digital business cards. This policy explains what personal data we collect, why we collect it, who we share it with and the choices you have.
It applies to our website, your dashboard, the public cards we host and our emails. We handle personal data in line with India's Digital Personal Data Protection Act, 2023 and the Information Technology Act, 2000.
Information we collect
- Account details: your name, email address, mobile number, business name and a password (stored only as a secure hash). If you sign in with Google, we receive your name, email and profile photo from Google.
- Card content: everything you add to your cards — photos, logos, services, products, gallery images, social links, addresses and contact details. Most of this is meant to be public, because it appears on your card.
- Payment records: the plan you bought, the amount, dates and the transaction reference. Card, UPI and bank details are entered on Razorpay's secure checkout — they never reach our servers.
- Card visit data: when someone opens a card we record things like the time, device and browser type, approximate location, how they arrived and what they tapped (call, WhatsApp, save contact). A random visitor ID is kept in their browser so repeat visits aren't double-counted.
- Enquiries (leads): the name, phone, email and message a visitor submits through the enquiry form on a card.
- Support and communication: messages you send us by email, WhatsApp or phone, and whether our emails were delivered.
How we use it
We use personal data only to run and improve DigitalCarda:
- Create your account, host your cards and keep them online
- Show you card views, clicks and enquiries in your dashboard
- Process payments, issue receipts and manage your plan
- Send essential emails — sign-in, password resets, trial and renewal reminders
- Answer support requests
- Send product news and offers (you can opt out any time)
- Keep the platform secure and prevent fraud, spam and abuse
- Understand how features are used so we can improve them
Card visitors and leads
When a visitor sends an enquiry through your card, that information is delivered to you, the card owner. You decide how to use it and are responsible for contacting people lawfully and respectfully. We store it so it appears in your dashboard, and we don't use it to market to those visitors ourselves.
If you visited a card and want your enquiry removed, contact the business on that card, or write to us at [email protected] and we'll help.
AI writing tools
If you use our AI tools (for example to draft your “About” section or services), the details you type are sent to our AI provider, Anthropic, only to generate that text. They aren't used to advertise to you, and you can edit or discard anything the AI writes before it goes on your card.
Who we share data with
We do not sell or rent personal data. We share it only with:
- Service providers: companies that help us run DigitalCarda — server hosting, email delivery, Razorpay for payments, Google for sign-in and Anthropic for AI writing. They may use the data only to provide their service to us.
- Resellers: if your card was set up through a DigitalCarda reseller or agency, they can see and manage the cards and account they created for you.
- The public: content you publish on your card is visible to anyone with the link or QR code.
- Legal requirements: authorities, when the law requires it, or to protect the rights and safety of our users and DigitalCarda.
Payments
Payments are processed by Razorpay, which is PCI-DSS compliant. We receive a confirmation and a transaction reference — never your full card number, CVV, UPI PIN or net-banking password. Razorpay's own privacy policy applies to the details you enter on its checkout.
How we protect it
- HTTPS encryption on every page and card
- Passwords stored only as one-way hashes
- Sign-in sessions in secure, HTTP-only cookies
- Password-reset links that work once and expire in 1 hour
- Limits on repeated sign-in and reset attempts
- Access to customer data restricted to people who need it
No system is perfectly secure. If we become aware of a breach that affects your personal data, we'll inform you and the relevant authorities as the law requires.
How long we keep it
We keep your account and card data while your account is active. If your plan or trial ends, your data is kept for a period so you can renew without starting over. If you ask us to delete your account, we delete or anonymise your personal data within a reasonable time — except records we must keep by law, such as payment and tax records.
Your rights and choices
You can:
- See and update most of your details in your dashboard
- Ask for a copy of the personal data we hold about you
- Ask us to correct anything inaccurate
- Ask us to delete your account and data
- Withdraw consent and unsubscribe from marketing emails
- Nominate someone to exercise these rights on your behalf
Email [email protected] from your account email address. We may need to confirm it's you before acting, and we'll respond as soon as we can.
Children
DigitalCarda is a business tool and isn't meant for anyone under 18. We don't knowingly collect data from children. If you believe a child has given us personal data, contact us and we'll delete it.
Changes to this policy
We'll update this policy when our services or the law change. The “Last updated” date at the top shows when. For significant changes we'll also let you know by email or in your dashboard.
Contact and grievances
For privacy questions, requests or complaints, email [email protected] or call +91 95177 22444. If you're not satisfied with our response, you may approach the Data Protection Board of India.
See also our Terms & Conditions and Refund Policy.
Privacy Policy · updated September 16, 2026
Read the rest of the set
Our three policies work together — each one refers to the others.
