Legal

Privacy Policy

Last updated: 29 June 2026

1. Introduction

This Privacy Policy describes how TAXINPHO (a sole proprietorship of Nirmala Agrawal, Trade License No. TL/BLR/2023-07-14/033462, Balangir, Odisha) ("we", "us", "TAXINPHO") collects, uses, stores, and shares your personal information when you use the TAXINPHO platform. This policy complies with the Information Technology Act, 2000, the IT (Reasonable Security Practices) Rules 2011, and the Digital Personal Data Protection Act, 2023.

2. Information We Collect

Account information: Name, email address, hashed password, firm details (firm name, PAN, GSTIN), and phone number provided at registration.

Customer data: Information you upload about your clients, including names, contact details, GSTINs, PANs, addresses, invoice data, return data, and uploaded documents. This data belongs to you.

Payment data: We do NOT store your card numbers or UPI credentials. Payments are handled by our PCI-DSS compliant payment gateway. We only retain the transaction ID and amount.

Usage data: IP address, browser type, device information, and pages visited, collected via standard server logs for security and analytics.

3. How We Use Your Data

  • To provide and operate the TAXINPHO service
  • To authenticate you and prevent fraud
  • To process subscription payments and send invoices
  • To send service notifications (e.g., expiry reminders, security alerts)
  • To respond to your support requests
  • To improve the Service based on aggregate, anonymised usage patterns

4. AI Processing

When you use AI features (HSN finder, WhatsApp draft, client insight, etc.), we send the minimum necessary context to our AI provider (OpenAI / Anthropic via the Emergent LLM gateway). We do NOT send your full client list, passwords, or sensitive financial data unless required by the specific feature. AI providers do not use your data for training when accessed through our enterprise API gateway.

5. Data Sharing

We do NOT sell, rent, or trade your personal information. We share data only with:

  • Payment gateway (Razorpay / Cashfree / etc.) — only payment-related fields, for processing your subscription
  • Cloud hosting provider (currently Emergent Cloud, India region) — to store your data securely
  • AI provider (Emergent LLM gateway) — only when you use AI features, with the minimum context required
  • Law enforcement — only when legally compelled by a valid court order or government notice

6. Data Security

We use industry-standard security measures:

  • TLS 1.3 encryption for all data in transit
  • Bcrypt-hashed passwords (never stored in plaintext)
  • Role-based access control (only authorised team members access your data)
  • Encrypted database at rest
  • Daily automated backups
  • Server-side audit logs of all sensitive operations

7. Data Retention

We retain your data for as long as your account is active. Upon account closure, data is held for 30 days for recovery, then permanently deleted from live systems within 90 days. Backups are purged within 180 days. Some transactional records (invoices, GST documents) may be retained longer if required by Indian tax law.

8. Your Rights

Under Indian data-protection law, you have the right to:

  • Access your personal data we hold
  • Correct inaccurate information
  • Export your data in a portable format (CSV/JSON)
  • Request deletion (subject to legal retention requirements)
  • Withdraw consent for non-essential processing

To exercise any of these rights, emailtaxinpho@gmail.comfrom your registered email address. We respond within 30 days.

9. Cookies

We use only essential cookies for authentication (storing your session token). We do NOT use third-party advertising or tracking cookies.

10. Children

TAXINPHO is intended for users 18 years and older. We do not knowingly collect data from minors. If you believe a minor has provided us data, please email us and we will delete it.

11. International Users

Our servers are located in India. By using TAXINPHO, you consent to your data being processed in India under Indian law. Cross-border transfers occur only via our AI provider and only when you use AI features.

12. Changes to This Policy

We may update this Policy. Material changes will be notified via email and in-app banner. Continued use after the effective date constitutes acceptance.

13. Grievance Officer

In accordance with the IT Act 2000 and DPDP Act 2023, you may contact our Grievance Officer for any complaints:
Name: Adv Mrinal Agrawal (Managing)
Email: taxinpho@gmail.com
Phone: +91 95564 72222 / +91 88950 06864
Address: TAXINPHO, Shree Krishna Kutir, Shree Ram Colony, Thikadar Para, Balangir, Odisha - 767001, India
Response time: within 30 days
TAXINPHO

TAXINPHO is the all-in-one practice management OS built for Indian Chartered Accountants. Manage clients, file returns, raise GST invoices, and grow your firm — powered by AI.

A registered trade-licensed business of Nirmala Agrawal (Proprietor), Balangir, Odisha. License No: TL/BLR/2023-07-14/033462

© 2026 TAXINPHO · Proprietor: Nirmala Agrawal. All rights reserved.

Made in India 🇮🇳 · Built for Chartered Accountants

Made with Emergent