Privacy Policy
Introduction
Welcome to Kerygo (“we,” “our,” or “us”). We operate the B2B directory platform located at https://kerygo.com, connecting users with garment manufacturers, apparel printers, and textile service providers across India.
Your privacy is paramount. This policy outlines how we handle your data in compliance with the GDPR, UK GDPR, and the Indian Digital Personal Data Protection (DPDP) Act.
Information We Collect
a) Information You Provide Voluntarily
- Account Data: Name, email address, and phone/WhatsApp number.
- Professional Listing Data: Business name, physical address, service capabilities, and professional contact details provided for directory visibility.
b) Automatically Collected Information
- Technical Logs: IP addresses, browser types, device identifiers, and operating systems.
- Usage Data: Search patterns, pages visited on kerygo.com, and time spent on manufacturer profiles.
c) Cookies and Tracking
We use cookies to ensure site functionality and analyze performance:
- Session Cookies: Deleted automatically when you close your browser.
- Persistent Cookies: Retained on your device for up to 12 months to remember your preferences.
Legal Basis for Processing
Under the GDPR and DPDP Act, we process your data based on the following legal grounds:
- Contract: To fulfill our service of hosting your business listing or facilitating buyer inquiries.
- Consent: For marketing communications and non-essential cookies.
- Legitimate Interests: To maintain a secure, fraud-free, and accurate professional directory.
Public Business Listings
Kerygo is a public directory. Information submitted as part of a business listing — including business name, location, services, and contact details — is intended for public display to help businesses generate leads and connect with buyers.
- Source of Data: We collect listing data directly from business owners or from publicly available professional sources.
- Your Control: Business owners retain the absolute right to claim, modify, or request the removal of their listing from our directory at any time.
International Data Transfers
To ensure high availability and performance for kerygo.com, your data is stored and processed across the following jurisdictions:
- Primary Infrastructure: Our production servers are located in India.
- Backup Infrastructure: Our redundancy servers are located in Singapore.
Neither India nor Singapore currently holds EU adequacy status under GDPR. For users in the EEA and UK, these cross-border transfers are governed by the 2021 EU Standard Contractual Clauses (SCCs) as incorporated in our agreement with Hostinger International Ltd. (Cyprus). This ensures your data receives a level of protection equivalent to EEA standards, regardless of server location.
Data Security
We implement rigorous technical and organizational measures (TOMs) to protect your data, including:
- Encryption in Transit: All data transferred between your browser and our servers is protected via SSL/TLS encryption.
- Encryption at Rest: Stored data is protected using AES-256 encryption.
- Access Control: Strict role-based access permissions and multi-factor authentication (MFA) for all administrative tasks.
- Integrity Measures: We use WordPress nonces, honeypot fields, and regular security scanning to prevent unauthorized access and spam submissions.
Your Rights
Regardless of your location, you may exercise the following rights regarding your personal data:
Request a copy of your personal data in a structured, machine-readable format.
Request that we rectify any inaccurate or incomplete personal data we hold about you.
Request erasure of your personal data — the “Right to be Forgotten” — where applicable.
Request that we limit how we use your data in certain circumstances.
Object to our use of your data where we rely on Legitimate Interests as the legal basis.
Lodge a complaint with a Data Protection Authority (DPA) in your jurisdiction at any time.
To exercise any of these rights, please contact us at hello@kerygo.com. We will respond within 30 days as required under GDPR.
Data Retention
| Data Type | Retention Period |
|---|---|
| Active Accounts | Retained for the duration of your active relationship with Kerygo. |
| Inactive Accounts | Personal data is automatically anonymized or deleted after 24 months of continuous inactivity. |
| Business Listings | Retained as long as the business remains operational or until a verified removal request is received. |
Children’s Privacy
Kerygo is a B2B platform intended exclusively for business use. We do not knowingly collect, process, or store personal data from individuals under the age of 16. If you believe a minor has submitted personal data to us, please contact us immediately at hello@kerygo.com and we will delete it promptly.
Changes to This Policy
We may update this Privacy Policy periodically to reflect changes in our practices, infrastructure, or applicable law.
- Minor Changes: Will be reflected by updating the “Last Updated” date at the top of this page.
- Material Changes (e.g. how we share your data or new types of processing): Registered users will be notified via the email address associated with their account prior to the change taking effect.
