1. Introduction
Welcome to Koko Materials ("we," "our," or "us"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform for purchasing building materials including tiles, faucets, pipes, bricks, cement, and related products.
By accessing or using our services, you agree to the terms outlined in this Privacy Policy. If you do not agree with our practices, please do not use our platform.
2. Information We Collect
2.1 Personal Information
We collect the following types of personal information based on your user role:
| User Type |
Information Collected |
| Clients |
Name, email address, phone number, delivery address, district, city, state, PIN code, profile image |
| Dealers/Suppliers |
Company name, company address, GST number, tax ID, contact person details, phone number, email, location coordinates, dealer strength level |
| Employees |
Name, email, phone number, address, employee ID, role designation |
| Sales Personnel |
Name, email, phone number, assigned territory, referral code |
2.2 Transaction Information
- Order Details: Products purchased, quantities, prices, delivery addresses, order status
- Payment Information: Payment method, transaction IDs (processed securely through Easebuzz Payment Gateway)
- Cart Data: Items added to cart, wishlist preferences, product comparisons
- Quotation Requests: Custom quotation details, specifications, delivery requirements
2.3 Location Information
- Geographic coordinates (latitude/longitude) for delivery optimization
- Address details including city, district, state, and PIN code
- Location data obtained through Google Maps API for accurate delivery
2.4 Technical Information
- IP address, browser type, device information
- Session data and authentication tokens
- Cookies and similar tracking technologies
- Activity logs and usage patterns
2.5 Communication Data
- Email correspondence and support tickets
- SMS notifications and OTP verification codes
- Product reviews and ratings
- Chat messages with customer support
3. How We Use Your Information
We use the collected information for the following purposes:
- Order Processing: To process, fulfill, and deliver your orders
- Account Management: To create and manage your user account, including role-based access control
- Payment Processing: To securely process payments through our integrated payment gateway
- Communication: To send order confirmations, delivery updates, promotional offers, and important notifications
- Authentication: To verify your identity through OTP (SMS and email) during registration and password reset
- Location Services: To calculate delivery distances, shipping costs, and provide location-based dealer recommendations
- Personalization: To customize your shopping experience based on preferences and browsing history
- Analytics: To analyze platform usage, improve our services, and optimize user experience
- Referral Program: To manage referral codes and track dealer referrals
- Compliance: To comply with legal obligations, resolve disputes, and enforce our terms
4. Third-Party Services
We integrate with the following third-party services that may collect and process your data:
- Easebuzz Payment Gateway: For secure payment processing (PCI-DSS compliant)
- Google Maps API: For location services, geocoding, and delivery route optimization
- Google reCAPTCHA: For bot prevention and security verification
- SMS Gateway (2Factor): For sending OTP verification codes
- Email Service Provider: For transactional and promotional emails
- Phone Validation API: For verifying phone number authenticity
Note: These third-party services have their own privacy policies. We recommend reviewing their policies to understand how they handle your data.
5. Data Sharing and Disclosure
We may share your information in the following circumstances:
- With Dealers: Order details are shared with assigned dealers for fulfillment
- With Delivery Partners: Shipping address and contact information for delivery purposes
- With Payment Processors: Transaction details for payment processing
- With Service Providers: Third-party vendors who assist in platform operations
- Legal Requirements: When required by law, court order, or government regulations
- Business Transfers: In case of merger, acquisition, or sale of assets
- With Your Consent: Any other sharing with your explicit permission
We do not sell your personal information to third parties for marketing purposes.
6. Data Security
We implement industry-standard security measures to protect your information:
- SSL/TLS encryption for data transmission
- Secure password hashing and storage
- Token-based authentication for API access
- Regular security audits and vulnerability assessments
- Access controls and role-based permissions
- Session management with idle timeout (10 minutes)
- Single session enforcement to prevent unauthorized access
While we strive to protect your data, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security but continuously work to enhance our security measures.
7. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Maintain your session and keep you logged in
- Remember your preferences and settings
- Analyze site traffic and user behavior
- Provide personalized content and recommendations
- Prevent fraudulent activity and enhance security
You can control cookie preferences through your browser settings. However, disabling cookies may limit certain features of our platform.
8. Your Rights and Choices
You have the following rights regarding your personal information:
- Access: Request a copy of your personal data
- Correction: Update or correct inaccurate information through your profile settings
- Deletion: Request account deletion (subject to legal retention requirements)
- Opt-Out: Unsubscribe from promotional emails and SMS notifications
- Data Portability: Request your data in a structured, machine-readable format
- Withdraw Consent: Revoke consent for data processing where applicable
To exercise these rights, please contact us using the information provided in the "Contact Us" section below.
9. Account Deletion
You can request permanent deletion of your account at any time. Upon deletion:
- All your personal information will be permanently removed
- Access to your account will be revoked
- Active orders and subscriptions will be canceled
- Purchase history will be erased
Note: Dealer accounts are soft-deleted (marked inactive) to maintain order history integrity. Some data may be retained for legal compliance, fraud prevention, and dispute resolution.
10. Data Retention
We retain your information for as long as necessary to:
- Provide our services and maintain your account
- Comply with legal, tax, and accounting obligations
- Resolve disputes and enforce agreements
- Prevent fraud and abuse
Order and transaction data are retained for 7 years as per applicable tax regulations. Inactive accounts may be deleted after 3 years of inactivity.
11. Children's Privacy
Our services are not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a minor, please contact us immediately.
12. International Data Transfers
Your information may be transferred to and processed in locations outside your country of residence. We ensure appropriate safeguards are in place to protect your data in accordance with this Privacy Policy and applicable laws.
13. Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or business operations. We will notify you of significant changes through:
- Email notification to your registered email address
- Prominent notice on our platform
- In-app notifications
Your continued use of our services after changes become effective constitutes acceptance of the updated policy.
14. Compliance with Laws
We comply with applicable data protection laws including:
- Information Technology Act, 2000 (India)
- Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011
- GST regulations for business transactions
- Payment Card Industry Data Security Standard (PCI-DSS) for payment processing
Acknowledgment: By using Koko Materials platform, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy.