Privacy policy
What we collect, why, how it is protected and what you can ask us to do about it. Last updated DD Month YYYY.
Have this reviewed before you publish it
Drafted to reflect the Digital Personal Data Protection Act, 2023, but it is not legal advice and the rules under that Act are still being operationalised. Have it reviewed and complete the placeholders before relying on it.
Who we are
Wealthymind Research Private Limited, CIN U66190GJ2025PTC170746, office 5th Floor, Binori B Square 3, 524, Sindhubhavan Road, Bodakdev, Ahmedabad, Gujarat 380059, is the data fiduciary for the personal data described here. For any privacy question, contact info@wmrpl.com.
What we collect
- Contact and identity data — name, company, role, email address, telephone number.
- Enquiry content — what you tell us about your business and your funding requirement.
- Engagement records — correspondence, meeting notes, engagement letters, invoices and payment references.
- Transaction information — the financial, commercial and corporate information you provide for a fundraising or diligence mandate, which may include personal data about your directors, shareholders and employees.
- Technical data — IP address, browser type and pages visited, where our hosting provider logs it.
We do not ask for and do not want your banking credentials, passwords or OTPs. Please never send them to us.
Why we use it
- To respond to your enquiry and assess whether we can help.
- To carry out an advisory or Due Diligence engagement, including preparing transaction materials and approaching prospective investors or lenders on your instructions.
- To invoice and to maintain accounting and tax records.
- To meet legal obligations, including any client Due Diligence or anti-money-laundering checks that apply.
- To send occasional updates about our services, where you have not opted out. Every such message carries an unsubscribe route.
Legal basis
We process personal data on the basis of the consent you give, the performance of our engagement with you, and our legal obligations. Where processing rests on consent you may withdraw it, though that may mean we can no longer act for you.
Confidentiality of transaction information
Information you share for a mandate is treated as confidential and is used only for that mandate. Specifically:
- first approaches to prospective investors are made on an anonymised basis, without naming your business;
- identifying information and detailed materials are released only after a non-disclosure agreement is in place and only to parties you have approved;
- data room access is granted per party and withdrawn when a party leaves the process;
- we do not share your information with other clients, and we do not use it for any purpose beyond your mandate.
Who we share it with
We do not sell personal data. We share it only with:
- prospective investors and lenders, on your instructions and subject to the confidentiality terms above;
- other advisers on your transaction — legal, audit, tax, technical — where coordination requires it;
- service providers who operate our email, hosting, document storage and accounting, under contract and only as needed;
- a court, regulator or other authority where we are legally obliged to disclose.
How long we keep it
We keep engagement records for as long as the relationship lasts and afterwards for the period required by company law, tax and limitation rules — generally 8 years (confirm with your advisers). Enquiries that do not lead to an engagement are deleted within N months. After that, records are deleted or anonymised.
Your rights
- Access — ask what personal data we hold about you.
- Correction — have inaccurate or incomplete data corrected.
- Erasure — ask us to delete data we no longer need, subject to our retention obligations.
- Withdrawal of consent — where processing rests on consent.
- Nomination — nominate someone to exercise your rights.
- Grievance — raise a concern with us, and escalate to the Data Protection Board once it is constituted.
Write to info@wmrpl.com to exercise any of these. We respond within N working days.
Security
We apply reasonable technical and organisational safeguards: access on a need-to-know basis, permissioned document storage, encryption of this site in transit, and periodic review of who holds access to what. No system is perfectly secure; if a breach affects your data we will notify you and the relevant authority as required.
Cookies
This website sets no cookies of its own and no third-party advertising or tracking cookies. It stores nothing in your browser. Our hosting provider may log standard request data such as IP address and page requested. If analytics are added later, this section and a consent notice will be updated first.
Children
Our services are directed at businesses, not individuals under 18, and we do not knowingly collect data from children.
Changes
We will publish any revised policy on this page with a new "last updated" date and notify material changes to clients directly.