Data Protection & GDPR
Last updated: April 2026
Our Commitment
BizBharat Pro by WENSLink Private Limited is committed to protecting the personal data of all users, including those in the European Union. We comply with the General Data Protection Regulation (GDPR) and India's Digital Personal Data Protection Act (DPDPA) 2023.
Data We Collect
- Account Data: Name, email, phone, GSTIN (provided during registration)
- Business Data: Invoices, inventory, financial records, bank statements (uploaded by user)
- Usage Data: Feature usage patterns, API call logs (anonymized)
- Communication Data: WhatsApp messages processed through our bot (business queries only)
How We Use Data
- Providing and improving our Business OS services
- GST compliance and government filing on your behalf
- AI-powered insights and recommendations
- Communication via email and WhatsApp (opt-in only)
Data Storage & Security
- Server: Hetzner Cloud, Germany (EU-hosted)
- Database: Encrypted at rest (SQLite3 WAL mode)
- SSL/TLS: All domains secured with Let's Encrypt certificates
- Backups: Daily automated backups at 2AM
- Access: Role-based access control (RBAC) with JWT authentication
Your Rights
Under GDPR and DPDPA, you have the right to:
- Access: Request a copy of all your personal data
- Rectification: Correct any inaccurate data
- Erasure: Request deletion of your data ("Right to be Forgotten")
- Portability: Export your data in standard formats (CSV, JSON)
- Objection: Opt out of marketing communications at any time
Data Retention
We retain your data for as long as your account is active. Upon account deletion, all personal data is permanently removed within 30 days. Business records required for legal compliance (GST, tax) are retained for 8 years as per Indian law.
Contact Our Data Protection Officer
Email: support@bizbharatpro.com
Address: WENSLink Private Limited, Guwahati, Assam, India