Privacy Policy
Last updated: December 28, 2025
This Privacy Policy explains how BioBoax (“BioBoax”, “we”, “us”, or “our”) collects, uses, discloses, and protects your information when you use our SaaS platform and websites, including our digital business card builder and related services (the “Service”). By accessing or using BioBoax, you agree to this Privacy Policy.
1. Information We Collect
- Account information
- Name, email address, password, phone number, profile photo, company name, and other details you provide when registering or updating your account.
-
- Billing and subscription data
- Billing name, address, tax details, and payment-related information processed via third‑party payment gateways (e.g., Razorpay, Stripe, PayPal, etc., depending on what we enable). We do not store full card details on our servers.
-
- VCard / profile content
- Information you add to your BioBoax vCards such as designation, bio, social links, address, services, testimonials, business hours, gallery, products, videos, map location, and other custom fields.
-
- Usage and log data
- IP address, browser type, device information, operating system, pages visited, features used, referral URLs, timestamps, and other analytics data for security and performance monitoring.
-
- Communication data
- Messages and inquiries submitted through your vCards or landing pages (e.g., contact forms, appointment or enquiry forms), and your communications with our support team.
-
- Cookies and similar technologies
- Cookies, pixels, and local storage used for authentication, session management, analytics, preferences, and marketing where applicable.
-
2. How We Use Your Information
We use your information to:
- Provide, operate, and maintain the BioBoax Service (account creation, vCard management, subscription management, multi‑user support).
-
- Personalize your experience, including templates, themes, and custom domains/subdomains if enabled.
-
- Process subscriptions, invoices, and payments via payment gateways.
-
- Communicate with you about technical notices, security alerts, support, billing, and important updates.
-
- Monitor, analyze, and improve performance, features, security, and user experience.
-
- Enforce our Terms and Conditions and protect the rights, property, and safety of BioBoax, our users, and the public.
-
- Comply with legal obligations under applicable data protection laws, including India’s DPDP Act and other regional privacy rules where relevant.
-
3. Legal Bases (Where Applicable)
Depending on your region, our processing is based on:
- Performance of a contract (providing the Service).
- Your consent (e.g., cookies, marketing communications).
- Legitimate interests (security, fraud prevention, analytics, product improvement).
- Legal obligations (tax, accounting, compliance).
-
4. How We Share Your Information
We may share information with:
- Service providers / processors
- Hosting providers, email services, analytics tools, payment gateways, SMS providers, and other vendors who help us operate BioBoax under appropriate data protection contracts.
-
- Other users / public
- Information you include in your vCard (name, email, contact details, social links, etc.) may be publicly accessible via URL, QR code, or NFC card, depending on your settings.
-
- Business transfers
- In case of a merger, acquisition, or sale of assets, your data may be transferred as part of that transaction, subject to this Policy.
-
- Legal and compliance
- When required by law, regulation, legal process, or enforceable governmental request, or to enforce our Terms and protect rights and security.
-
We do not sell your personal data to third parties.
5. International Data Transfers
Your information may be transferred to and processed in countries other than your own, where data protection laws may differ. Reasonable safeguards (such as contractual protections) are used where required by law.
6. Data Retention
We retain personal data for as long as:
- Your account is active;
- Necessary to provide you the Service;
- Needed to comply with legal, tax, accounting, and security obligations; or
- Needed to resolve disputes and enforce agreements.
-
You may request deletion of your account; certain information may remain in backups or be retained as required by law.
7. Your Rights
Depending on your jurisdiction, you may have rights to:
- Access and obtain a copy of your personal data;
- Correct or update inaccurate information;
- Request deletion of certain data;
- Restrict or object to processing in specific circumstances;
- Withdraw consent where processing is based on consent;
- Lodge a complaint with a data protection authority.
-
You can exercise many of these rights via your account settings or by contacting us.
8. Security
We use reasonable technical and organizational measures such as encryption, access controls, and monitoring to protect personal data against unauthorized access, loss, or misuse. However, no system is completely secure, and you are responsible for safeguarding your login credentials.
9. Children’s Privacy
BioBoax is not intended for children under 13 (or higher age where local law requires). We do not knowingly collect personal data from children; if you believe a child has provided data, contact us to delete it.
10. Third‑Party Links
The Service may link to third‑party websites, apps, and integrations. Their privacy practices are governed by their own policies, and we are not responsible for them.
11. Changes to This Policy
We may update this Privacy Policy from time to time. The “Last updated” date will be revised and, where required, you will be notified through the Service or by email. Continued use after changes indicates acceptance.
12. Contact Us
For questions or requests regarding this Privacy Policy: