A privacy policy, written the way we'd want to read one.
This applies whenever you browse, shop, or otherwise interact with KANVI at kanvi.co. It explains what information we may collect, and how it's handled — in plain language wherever the law allows.
Effective [EFFECTIVE DATE]. Where something here still needs legal confirmation, it's marked clearly rather than guessed at.
Five categories. One relationship.
Hover — or tap — a category to see what it actually contains.
Each purpose, tied to what it requires.
Required, and optional — clearly separated.
Illustrative only — not yet connected to a live consent system.
Three safeguards. One system.
Administrative Safeguards
Protection also depends on who can access information — and why.
Access to personal information should be limited to people who need it for legitimate business purposes, such as processing orders, providing customer support, managing returns or operating KANVI's services.
Personal information should only be accessed and used where it is relevant to the work being performed.
Where KANVI works with service providers, information should be shared only where reasonably necessary for them to provide their service.
Access with purpose. Not access by default.
Technical Safeguards
The systems carrying information matter too.
KANVI relies on website, hosting, payment and other technology providers to operate its online services.
Appropriate technical measures should be used to reduce risks such as unauthorized access, alteration, disclosure or loss of personal information.
Where payment processing is handled by an external payment provider, sensitive payment information should be handled according to the actual checkout implementation rather than unnecessarily duplicated by KANVI.
No internet transmission, website, database or electronic storage system can be guaranteed to be completely secure.
Protected carefully. Never described as infallible.
Organizational Safeguards
Information should move only where the service requires it.
Different information may be needed for different parts of the KANVI experience — such as order information for fulfilment, contact details for delivery or customer support, and transaction-related information for processing purchases.
Service providers should receive only the information reasonably necessary for the function they perform.
How personal information is handled should evolve as KANVI's services, technology and business relationships change.
Personal information should not be kept indefinitely simply because it can be stored. Retention should remain connected to legitimate operational, legal, accounting, fraud-prevention or dispute-resolution needs.
Necessary information. Necessary purpose. Necessary access.
THREE LAYERS.
ONE RESPONSIBILITY.
KANVI uses reasonable administrative, technical and organizational safeguards designed to protect personal information against unauthorized access, use, alteration, disclosure or loss. The safeguards we use may evolve as our services and technology change.
No method of transmission over the internet or method of electronic storage is completely secure. We therefore cannot guarantee absolute security.
Service providers, not a marketplace for your data.
We share information with providers who help us operate — payment processing, delivery and logistics, website infrastructure, and analytics, where used. We do not sell personal information. [confirm before publishing]
Handled by payment providers, not stored by us.
Payment details are generally processed by third-party providers rather than stored directly. [Insert actual payment infrastructure].
Different information, different reasons to keep it.
Hover, tap, or tab through a point on the line below.
What you can ask of us.
Prepared with India's Digital Personal Data Protection Act, 2023 in mind — final procedures pending legal confirmation.
Access
You may request information about the personal data KANVI holds or processes about you, subject to applicable law.
Correction
You may request correction or updating of personal information that is inaccurate or incomplete.
Deletion
You may request deletion of eligible personal information, where applicable and subject to information KANVI may be legally required to retain.
Consent
Where our processing relies on your consent, you may be able to withdraw it, subject to applicable requirements.
Grievance
You may contact KANVI regarding a privacy concern or an unresolved request. [Grievance Officer contact — pending]
Not directed at minors.
KANVI's services are not directed at children. Applicable age thresholds: [legal confirmation required].
Their practices, not ours.
Our site may link to third-party services with their own privacy practices.
Updates will be reflected here.
Material changes will be indicated by an updated effective date above.
How to reach us about this policy.
For privacy-related questions, contact [PRIVACY EMAIL].
[LEGAL ENTITY NAME]
[REGISTERED ADDRESS, IF REQUIRED]