The Office of Suman Das

Suman Das I सुमन दास I সুমন দাস

Privacy Policy

Effective Date: February 27, 2025

Last Updated: February 27, 2025

Welcome to sumandas.org (“Website,” “I,” “my,” or “me”). This Privacy Policy explains how The Office of Suman Das (“OSD”) collects, uses, discloses, and protects your personal information when you access this website and related services.

By using this Website, you acknowledge and agree to this Privacy Policy.

1. Legal Compliance and Applicability

This Privacy Policy is governed by Indian law, including:

  • The Information Technology Act, 2000 (IT Act, 2000)
  • The Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 (SPDI Rules)
  • The Digital Personal Data Protection Act, 2023 (DPDP Act, once enforced)
  • Any other applicable data protection regulations under Indian law

This policy applies to all users accessing this Website from India and other countries.

2. Changes to This Privacy Policy

I may update this Privacy Policy periodically. Any changes will be notified by:

  1. Updating the “Last Updated” date.
  2. Posting a notice on the homepage.
  3. Sending an email notification if required.

I recommend reviewing this Privacy Policy regularly.

3. Information Collected

A. Information You Provide

I collect and store the following information voluntarily provided by you:

  • Personal Information: Name, email, phone number, postal address, etc.
  • Financial Information: Donation/payment details (processed securely by third-party payment gateways).
  • Communication Data: Messages, feedback, or inquiries submitted via contact forms, emails, or social media.

B. Information Collected Automatically

When you visit the Website, certain data may be collected automatically:

  • Log Data: IP address, browser type, access times, pages viewed, referring site, etc.
  • Device Information: Type of device, operating system, and network details.
  • Cookies & Tracking Technologies: Used to enhance user experience and analyze website traffic.

C. Sensitive Personal Data (SPDI Rules, 2011)

I do not collect Sensitive Personal Data such as passwords, biometric data, or medical records unless explicitly required for specific services (e.g., donation verification). Such data will be handled with strict confidentiality and security.

D. Information from Third-Party Sources

I may collect data from:

  • Publicly available sources.
  • Social media platforms (when you interact with me).
  • Service providers who help with website analytics, marketing, or payment processing.

4. Legal Basis for Processing Personal Data

As per Indian law, I collect and process your personal data based on:

  1. Consent: You provide explicit consent when submitting your data.
  2. Contractual Obligation: If you engage in transactions with me, your data is processed accordingly.
  3. Legal Compliance: Certain data is retained for tax, legal, or regulatory obligations.
  4. Legitimate Interests: To improve the Website, prevent fraud, and engage with the community.

5. How Your Information Is Used

Your data is used for the following purposes:

  1. Providing and Improving the Website – Enhancing functionality and user experience.
  2. Communication – Sending newsletters, updates, and important notifications.
  3. Fundraising & Donations – Processing contributions securely through authorized payment gateways.
  4. Community Engagement – Facilitating participation in forums, petitions, and social service initiatives.
  5. Legal & Compliance Requirements – Ensuring compliance with Indian laws and responding to legal requests.
  6. Security & Fraud Prevention – Detecting and preventing fraud or misuse of the Website.
  7. Third-Party Integrations – Using analytics and other tools for operational efficiency.

6. Sharing & Disclosure of Information

I do not sell or rent your personal data. However, information may be shared in the following cases:

A. With Trusted Service Providers

  • IT service providers, email platforms, and analytics providers.
  • Payment processors for secure donation handling.

B. Legal Obligations

  • If required by Indian law, regulatory authorities, or court orders.
  • To comply with tax and audit obligations.

C. With Your Consent

  • When you provide explicit authorization to share your data.

D. Aggregated or Anonymized Data

  • Non-identifiable data may be used for research, advocacy, or statistical analysis.

7. Data Retention & Security Measures

A. Data Retention

  • Personal data is retained only as long as necessary for legal, contractual, or operational purposes.
  • Donation records will be stored as per Indian tax laws and audit requirements.

B. Data Security

I follow reasonable security practices as per SPDI Rules, 2011, including:

Encryption for sensitive data.

Access Controls to restrict unauthorized access.

Regular Security Audits to detect vulnerabilities.

8. User Rights Under Indian Law

Under the IT Act, 2000 and SPDI Rules, 2011, you have the following rights:

  1. Right to Access – Request a copy of your personal data.
  2. Right to Correction – Rectify inaccurate or incomplete data.
  3. Right to Withdraw Consent – Withdraw consent for data processing.
  4. Right to Opt-Out – Unsubscribe from newsletters and marketing communications.
  5. Right to Deletion – Request deletion of personal data (subject to legal obligations).

To exercise these rights, email: contact@sumandas.org

9. Data Breach Notification

In the event of a data breach, the following actions will be taken:

  1. The nature and impact of the breach will be assessed.
  2. Affected users will be notified within 72 hours if their data is compromised.
  3. Corrective measures will be implemented, and a report will be sent to Indian Computer Emergency Response Team (CERT-In) if required.

10. Cookies & Tracking Technologies

This Website uses cookies to:

✔ Improve website performance.

✔ Analyze user behavior for better experience.

✔ Provide secure login and personalization features.

Managing Cookies:

  • You can disable cookies in your browser settings.
  • Some functionalities may be affected if cookies are disabled.

11. Third-Party Websites & Social Media

This Website may contain links to external websites and social media platforms. I do not control their privacy practices. Please review their privacy policies before sharing any data.

12. Contact Information

If you have any questions about this Privacy Policy, contact me at:

📌 Suman Das

📧 Email: contact@sumandas.org

🌐 Website: www.sumandas.org