Seller Privacy Policy
Compliant with Digital Personal Data Protection (DPDP) Act, 2023 & IT (Reasonable Security Practices) Rules, 2011
1. Scope & Overview
This Privacy Policy describes how Quick (quicksin.in) collects, processes, stores, and protects personal and business data provided by registered merchants, seller representatives, and prospective vendors. By using the Quick Seller Portal, you consent to the data practices described herein.
2. Information We Collect
To onboard, verify, and process financial payouts for sellers, Quick collects the following data categories:
- Personal & Business Identification: Merchant full name, business name, registered address, official email, phone number, PAN card details, Aadhaar number (redacted/masked), and passport/Voter ID details.
- Tax & Regulatory Data: GSTIN certificate details, FSSAI license numbers, Drug licenses, and Udyam MSME registration numbers.
- Financial & Bank Info: Bank account holder name, account number, IFSC code, cancelled cheque images, and settlement transaction history.
- Technical & System Logs: Device IP address, browser type, operating system, login timestamps, and API call logs.
- Customer Fulfillment Data: Order details, dispatch manifests, buyer shipping addresses provided strictly for logistics fulfillment.
3. Purpose of Processing & Usage
Seller data is collected strictly for lawful purposes including:
- Onboarding verification and statutory Know Your Customer (KYC) compliance.
- Facilitating order routing, dispatch generation, and customer communication.
- Processing bank account settlement payouts, commission calculation, and tax withholding (TDS/TCS).
- Detecting, preventing, and investigating fraud, illegal activity, or catalog violations.
- Filing statutory tax returns (GSTR-8, Form 16A) with Indian income tax and GST authorities.
4. Data Sharing & Third-Party Disclosure
Quick strictly does not sell seller personal data. Information is disclosed only to:
- Logistics & Delivery Partners: Sharing buyer shipping details with assigned courier partners for package delivery.
- Payment Gateways & Banking Partners: Transmitting bank account details securely to verified payment aggregators (Cashfree, Razorpay, Paytm) for payout processing.
- Statutory & Regulatory Authorities: Reporting transaction summaries and tax details to GSTN, Income Tax Department, or law enforcement under legal mandate or court order.
5. Data Security & Storage Controls
Quick implements robust administrative, technical, and physical security measures, including AES-256 encryption at rest, TLS 1.3 encryption in transit, strict access control, and firewalls to safeguard financial and KYC data stored on servers within Indian data centers.
6. Data Retention Period
Financial records, tax deduction receipts, GST invoices, and merchant KYC records are retained for a minimum mandatory statutory period of 8 years as required by Indian income tax, GST, and corporate accounting laws, post which records are permanently purged.
7. Data Principal Rights & Grievances
Under the DPDP Act 2023, sellers have the right to request access to their personal data, request correction of inaccurate business details, or log data protection grievances with our Data Protection Officer at support@quicksin.in.