Introduction

vLedger is committed to protecting your privacy and ensuring the security of your personal data. This document outlines our compliance with the General Data Protection Regulation (GDPR) and our commitment to data protection best practices.

Data Protection by Design: We have implemented privacy and security measures at every stage of our development process.

Data We Collect

  • Account Information: Name, email, phone number, business details
  • Invoice Data: Client details, product/service information, pricing
  • Transaction History: Invoice history, payment records
  • Usage Data: How you interact with our platform
  • Device Information: IP address, browser type, device type

We do NOT collect: Sensitive personal information, payment card details (processed by third-party payment gateways), or biometric data.

Data Protection Measures

  • Encryption: All data is encrypted in transit using TLS/SSL
  • Access Control: Strict access controls and authentication measures
  • Regular Backups: Automated backups with encrypted storage
  • Security Audits: Regular security assessments and vulnerability scans
  • Data Minimization: We only collect data necessary for providing our services

Your Rights

  • Right to Access: You can view all data we hold about you
  • Right to Rectification: Correct inaccurate or incomplete data
  • Right to Erasure: Request deletion of your data (subject to legal requirements)
  • Right to Restrict Processing: Limit how we use your data
  • Right to Data Portability: Export your data in a machine-readable format
  • Right to Object: Object to data processing for certain purposes
To exercise your rights: Contact us at privacy@vledger.in or use the Data Request tool in your account settings.

Data Retention

We retain your data for as long as necessary to provide our services and comply with legal obligations. Specifically:

  • Active Accounts: Data is retained while your account is active
  • Inactive Accounts: Data is retained for 2 years after account closure
  • Legal Requirements: Certain data may be retained for up to 7 years to comply with tax laws and regulations

Third-Party Data Sharing

We only share your data with trusted third parties when necessary to provide our services:

  • Payment Gateways: For processing payments (Razorpay, etc.)
  • Email Services: For sending invoices and notifications
  • Cloud Providers: For hosting and data storage
  • Analytics Tools: For improving our service (anonymized data only)

We do not sell your data to any third parties.

Data Breach Notifications

In the event of a data breach, we will:

  • Notify affected users within 72 hours of detection
  • Provide details of the breach and the data affected
  • Recommend measures to protect your account
  • Report to relevant authorities as required by law

Children's Privacy

vLedger is not intended for children under 16 years of age. We do not knowingly collect data from children. If you believe we have collected data from a child, please contact us immediately.

Contact Information

For any GDPR-related questions or requests:

  • Email: privacy@vledger.in
  • Address: 328, Sadalpur, Varanasi (UP) India - 221011
  • Data Protection Officer: Prem Chandra Patel
GDPR Compliance Date: 11-09-2026
Last Updated: 11-09-2026