Privacy Policy
Last updated 26 June 2026
Introduction
This policy explains how PhoneTech (“PhoneTech”, “we”, “us”) collects, uses, and protects your personal data when you use our website and buy open-box products, in line with India’s Digital Personal Data Protection Act, 2023.
Information we collect
- Account data: your email address, used to sign you in via a one-time magic link or Google sign-in. We do not store a password.
- Order & delivery data: the name, shipping address, and phone number you provide so we can deliver your order.
- Payment data: payments are processed by Razorpay. We receive a payment confirmation and reference; we do not collect or store your full card, UPI, or bank details on our servers.
- Usage data: basic technical information (such as device/browser type and pages viewed) needed to operate and secure the site.
How we use your information
- To process, fulfil, and deliver your orders, and provide customer support.
- To manage your account, wishlist, and order history.
- To prevent fraud and keep the service secure.
- To meet legal, tax, and accounting obligations.
- To send service messages about your orders (not marketing, unless you opt in).
Legal basis and consent
We process your data to perform our contract with you (your order), to comply with the law, and for our legitimate interest in running a secure store. Where we rely on consent, you can withdraw it at any time by contacting our grievance officer (below) — this will not affect processing already carried out.
Who we share it with
We do not sell your personal data. We share it only with providers who help us run the store:
- Razorpay — to process payments and refunds.
- Courier / logistics partners — to deliver your order.
- Supabase — our authentication and database provider, which stores your account, order, and address data on our behalf.
- Authorities, where disclosure is required by law.
Cookies
We use only essential cookies needed to sign you in and keep your cart and session working. We do not use third-party advertising or cross-site tracking cookies. If we add analytics in future, we will ask for your consent first.
Data security
Traffic to the site is encrypted in transit (HTTPS). Access to personal data is restricted, and customer records are protected by database row-level security so that you can only access your own data. Card and payment details are handled within Razorpay’s PCI-DSS-compliant environment, not on our servers. No system is perfectly secure, but we take reasonable steps to protect your information.
Data retention
We keep your account data for as long as your account is active. Order and invoice records are retained for as long as required to meet tax and legal obligations (which can be several years), after which they are deleted or anonymised.
Your rights
Under the DPDP Act you may, subject to legal limits:
- Access the personal data we hold about you and ask us to correct or complete it.
- Ask us to delete your data and close your account.
- Withdraw consent where processing is based on consent.
- Nominate another person to exercise these rights on your behalf (for example, in the event of death or incapacity).
- Raise a grievance about how we handle your data.
To exercise any of these, contact our grievance officer (below). We will acknowledge your request within 48 hours and aim to resolve it within 30 days. If you are not satisfied with our response, you may escalate to the Data Protection Board of India.
Grievance officer
If you have concerns about how your data is handled, contact our grievance officer, Grievance Officer, at [email protected]. We acknowledge grievances within 48 hours and aim to resolve them within 30 days, in line with applicable law.
Children's privacy
PhoneTech is intended for users aged 18 and over. We do not knowingly collect data from children. If you believe a minor has provided us data, contact us and we will delete it.
Changes to this policy
We may update this policy from time to time. The latest version is always posted here with its “last updated” date, and we will notify you of significant changes where required.
Contact us
For any privacy question, email [email protected] or see our Contact page.