Prince Pure
Version draft-2026-05-19 · effective 19 May 2026
Draft — pending legal review. This text is a working version. The published policy with legal sign-off will replace it before public launch.

Privacy Policy

Effective: to be set when legal signs off.

Data Fiduciary: M/s Prince Jewellery (operating as Prince Pure),

having its principal place of business in India. All references to "we",

"us", "the brand" or "Prince Pure" mean the same legal entity.

1. Why we have this policy

India's Digital Personal Data Protection Act, 2023 ("DPDP Act") requires

us to tell you, in clear language, what personal data we collect, why we

collect it, how long we keep it, who we share it with, and what rights

you have. This page is that disclosure. If anything below is unclear,

please write to our Grievance Officer at the address in §10.

2. What we collect

When you fill in a capture form at one of our events, attend our store,

purchase from us, or sign up to a scheme, we may collect:

and the area / locality you live in.

wedding date if you choose to share these.

email messages, and the channels you are willing to be reached on.

vouchers you redeemed (collected through our point-of-sale system).

receipt that we hand you in return.

marketing activity — your PAN / GSTIN, bank account, and IFSC. These

are stored encrypted at rest.

We do not collect Aadhaar numbers, biometric data, financial

account passwords, or any data classified as Sensitive Personal Data

under the DPDP Act unless explicitly required by law and disclosed to

you at the point of collection.

3. Why we collect it (purposes)

enrollment, your old-gold receipt.

(birthday wishes, festival greetings, scheme updates, event invites).

individuals out for profiling without their consent.

4. Lawful basis

Your consent, given by ticking the consent box on our capture form,

is the primary lawful basis. For statutory record-keeping (e.g. PMLA

reporting on gold transactions above the threshold) we rely on the

legitimate purpose of legal compliance.

5. Who we share data with

(SMS), Amazon SES (email). These vendors are bound by their own DPDP-

compliant data-processing agreements with us.

applicable law.

We do not sell your personal data to third parties for advertising.

6. How long we keep your data

(7) years from the date of your last interaction with us. Seven years

is the jewellery-industry norm for audit + PMLA inquiry windows.

per Income-tax Act record-retention requirements.

bought anything): for three (3) years, after which we anonymise the

record and retain only aggregate statistics.

When the retention period expires, we erase or anonymise the data.

7. Your rights

Under the DPDP Act you have the right to:

or contact our Grievance Officer.

A customer self-service portal that lets you exercise these rights

yourself is on our roadmap. Meanwhile please contact the Grievance

Officer — we respond within thirty (30) days.

8. How we protect your data

account, IFSC) are stored using authenticated symmetric encryption.

/ TLS 1.2 or higher.

relevant to their role. Access is logged.

9. Cookies and tracking

We use only the cookies necessary to keep you logged in and to

maintain your session. We do not use third-party analytics cookies or

advertising trackers on customer-facing pages.

10. Grievance Officer

We respond to grievances within thirty (30) days of receipt.

11. Changes to this policy

When we change this policy materially we will publish a new version

here with a new effective date. Old versions are kept for audit.

12. Contact us

For any data-protection or privacy query, write to

privacy@princejewellery.com.