Privacy Policy
Last updated: June 2026. This Privacy Policy explains how Human Before Resource Private Limited ("Zaruro," "we," "us," or "our") collects, uses, discloses, and protects your personal information when you use our website, mobile application, and services.
1. Information We Collect
We collect several types of information to provide and improve our services:
Personal Information You Provide
- Account Information: Full name, phone number, email address, residential address, and profile photo when you create an account.
- Booking Information: Service address, preferred appointment times, special instructions, and service history.
- Payment Information: Payment method details (processed securely by our payment partner Cashfree — we never store full card numbers, CVV, or bank account details).
- Communication Data: Messages you exchange with service professionals, support inquiries, feedback, and survey responses.
- Identity Verification: Government-issued ID details when required for verification purposes.
Information Collected Automatically
- Device Information: Device model, operating system version, unique device identifiers, IP address, and mobile network information.
- Usage Data: Pages visited, services viewed, booking behavior, search queries, time spent on platform, and referral sources.
- Location Data: Approximate location based on IP address for service area verification. Precise location is collected only with your explicit consent.
- Cookies and Similar Technologies: We use cookies, web beacons, and local storage to enhance user experience, analyze trends, and remember preferences.
2. How We Use Your Information
We use your information for the following purposes:
- Service Delivery: To process bookings, match you with appropriate service professionals, send booking confirmations and reminders, and facilitate communication between you and professionals.
- Account Management: To create and maintain your account, verify your identity, and manage your preferences.
- Payment Processing: To facilitate payments, generate invoices, process refunds, and prevent fraudulent transactions.
- Communication: To send service-related notifications (OTPs, booking updates), respond to your inquiries, and provide customer support.
- Improvement and Analytics: To analyze usage patterns, improve our platform, develop new features, and personalize your experience.
- Legal Compliance: To comply with applicable laws, regulations, legal processes, and enforceable governmental requests.
- Fraud Prevention: To detect, investigate, and prevent fraudulent activity, unauthorized transactions, and security incidents.
3. How We Share Your Information
We share your information only in the following circumstances:
- Service Professionals: Your name, phone number, service address, and booking details are shared with the professional assigned to fulfill your booking.
- Payment Processors: Payment information is shared with Cashfree Payments (India) Private Limited for transaction processing. Cashfree is PCI-DSS compliant and handles all sensitive payment data.
- Service Providers: We engage trusted third-party vendors for cloud hosting, analytics, SMS delivery, customer support tools, and email services. These providers are contractually bound to protect your data.
- Legal Authorities: We may disclose information if required by law, court order, or governmental regulation, or if such disclosure is necessary to protect our rights, property, or safety.
- Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity.
We do not sell your personal information to third parties for their marketing purposes.
4. Data Security
We implement comprehensive security measures to protect your information:
- Encryption in Transit: All data transmitted between your device and our servers is encrypted using TLS 1.3 protocol.
- Encryption at Rest: Sensitive data stored on our servers is encrypted using AES-256 encryption.
- Access Controls: Strict role-based access controls limit employee access to user data. Multi-factor authentication is required for all administrative accounts.
- Regular Audits: We conduct periodic security assessments, vulnerability scans, and penetration testing.
- Monitoring: Our systems are monitored 24/7 for unauthorized access attempts and security incidents.
While we take reasonable precautions, no method of electronic storage or transmission is 100% secure. We encourage you to protect your account credentials and notify us immediately of any unauthorized use.
5. Data Retention
We retain your personal information for the following periods:
- Active Accounts: Your data is retained for as long as your account remains active.
- Booking Records: Retained for 6 years to comply with tax, legal, and regulatory requirements.
- Communication Records: Support inquiries and correspondence are retained for 3 years.
- Deleted Accounts: After account deletion, we retain minimal data as required by law, after which it is permanently deleted within 90 days.
6. Your Rights and Choices
Depending on applicable law, you may have the following rights regarding your personal information:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate or incomplete data.
- Deletion: Request deletion of your personal data, subject to legal retention requirements.
- Portability: Request a portable copy of your data in a commonly used format.
- Withdraw Consent: Withdraw consent at any time where we rely on consent as a legal basis.
- Opt-out of Communications: Unsubscribe from promotional emails and SMS by following the opt-out instructions in the communication.
To exercise these rights, email support@zaruro.com. We will respond within 30 days.
7. Children's Privacy
Our services are not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that a child under 18 has provided us with personal data, we will take steps to delete such information. If you believe a child has provided us with personal data, please contact us immediately.
8. Third-Party Services
Our platform integrates with third-party services including:
- Cashfree Payments — Payment gateway and processing
- Cloudinary — Image and file storage
- Cloudflare — Content delivery and security
- Google Analytics — Usage analytics (anonymized data)
These third parties have their own privacy policies governing the use of your data. We encourage you to review their policies.
9. Cookies and Tracking
We use cookies and similar technologies for essential platform functionality, analytics, and personalization. You can control cookie preferences through your browser settings. Disabling certain cookies may affect platform performance.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be notified via email or through a prominent notice on our platform. Your continued use of the platform after changes constitutes acceptance of the updated policy.
11. Grievance Officer
In compliance with the Information Technology Act, 2000 and the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, we designate the following Grievance Officer:
Grievance Officer
Email: support@zaruro.com
Response Time: Within 48 hours
12. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy, please contact us:
Email: support@zaruro.com
Grievance: support@zaruro.com
Phone: +91 96419 32222
Office: Human Before Resource Private Limited, Newtown, Kolkata, West Bengal, India