Privacy

Privacy notice: data collected, retention, and rights

Categories of personal data the editorial gateway processes, the lawfulness basis for each, the retention window the gateway publishes, and the rights the reader can exercise under DPDP Act 2023.

DPDP Act 2023 · 18-month retention · Per-category access

Categories of personal data, in six lines

The editorial gateway processes personal data only for the editorial services it publishes. The processing is grounded in the Digital Personal Data Protection Act 2023 and the lawfulness basis the gateway publishes per category. The categories are account identifiers, contact details for readers who write in, device metadata for bot detection, aggregated analytics, marketing attribution, and support correspondence.

Three signals that gate every cookie

Before the editorial gateway sets a cookie, three signals are read: the cookie consent state from the consent record, the Global Privacy Control signal from the browser, and the implicit necessary-only mode when neither consent nor GPC is present. The three signals are checked on every page load.

Lawfulness basis, per category

The lawfulness basis for each category is published in the privacy table. Account data is processed under contract. Contact data is processed under consent. Device metadata is processed under legitimate interest. Analytics is processed under consent. Marketing is processed under consent. Support data is processed under consent.

What each lawfulness basis covers

Article 6(1)(b) GDPR (contract) covers account data: the reader has signed a contract by creating an account, and the editor needs the account data to operate the account. Article 6(1)(a) GDPR (consent) covers analytics, marketing, and support correspondence: the reader can withdraw consent at any time, and withdrawal triggers a purge within 7 days. Article 6(1)(f) GDPR (legitimate interest) covers device metadata: the editor has a legitimate interest in detecting bots and abusive traffic.

A redacted data-export spreadsheet on a wooden table
DPDP Act 2023

The right to access, correct, and erase personal data is enforceable against the editorial gateway.

The editorial gateway processes personal data only for the editorial services it publishes. The processing is grounded in the Digital Personal Data Protection Act 2023 and the lawfulness basis the gateway publishes per category.

Retention windows, published in full

Account data is retained for 18 months after account closure to handle late disputes and to comply with the operator's published records window. Analytics is retained for 13 months in aggregated form. Marketing is retained for 30 days to bind the click attribution window. Support correspondence is retained for 24 months to handle delayed escalation. The retention windows are enforced through an automated purge job that runs monthly.

How the retention windows are enforced

The retention windows are enforced through an automated purge job that runs monthly. The job identifies records that have exceeded the retention window, exports the records for legal hold if any, and purges the records from the live tables. The audit log records every purge cycle with the row count and the timestamp.

Reader rights under the DPDP Act 2023

Readers have the right of access (a copy of the personal data the gateway holds), the right of correction (a correction of inaccurate data), the right of erasure (a deletion of data when the purpose is fulfilled), and the right to nominate (a nomination of another individual to exercise the rights on the reader's behalf). Rights are exercised through the privacy channel. The privacy desk responds within 30 days for full data requests.

How the DPDP rights flow works

A reader who exercises the right of access receives a copy of all personal data the editorial gateway holds within 30 days. A reader who exercises the right of correction receives a confirmation of the correction within 7 days. A reader who exercises the right of erasure receives a confirmation of the erasure within 7 days. A reader who nominates another individual receives a confirmation of the nomination within 7 days.

Published values, in one table

Categories of personal data processed by the editorial gateway

CategoryPurposeLawfulness basisRetention
AccountReader authenticationContractUntil account is closed + 18 months ContactCorrection and privacy channel repliesConsentUntil consent is withdrawn DevicePage rendering and bot detectionLegitimate interestSession AnalyticsAggregated guide usageConsent13 months MarketingOutbound click attributionConsent30 days SupportEditorial corrections, reader questionsConsent24 months

Where data is processed

Data is processed in India by the editorial gateway. Data may be processed outside India by analytics and marketing providers under a Data Processing Agreement with standard contractual clauses. The list of sub-processors is published on the privacy page. The editorial gateway requires sub-processors to honour the same retention windows the gateway publishes.

The sub-processor list

The editorial gateway publishes a sub-processor list on the privacy page. The list names every sub-processor, the data shared with the sub-processor, and the data-processing region. A reader who wants to opt out of a sub-processor category can use the contact channel; the editor will honour the opt-out within 7 days.

Children's data

The editorial gateway does not knowingly collect personal data from readers under the age of 18. The editorial gateway does not target children. The cookies the gateway sets are configured so that operators under 18 do not trigger analytics or marketing tracking. Where a parent or guardian believes the gateway has collected data on a child, the privacy desk will erase the data within 7 days of receipt of the request.

The children's data rule in detail

The editorial gateway does not target children. The cookies the gateway sets are configured so that operators under 18 do not trigger analytics or marketing tracking. A parent or guardian who believes the gateway has collected data on a child can use the privacy channel; the privacy desk will erase the data within 7 days of receipt of the request.

Editorial accountability and the DPDP rights

The privacy desk operates the DPDP Act 2023 rights requests on behalf of the editorial gateway. The accountability is logged: every request, the date, the right exercised, and the date of the response. The privacy desk responds within 7 days for cookie-specific requests and within 30 days for full data requests. A reader who wants to verify the accountability can navigate to the editorial log and find the case reference for the request.

How the editorial gateway runs the privacy audit

The editorial gateway runs the privacy audit on a quarterly cadence. The audit checks every category, every lawfulness basis, every retention window, and every reader right. The audit produces a published report that lists every category, every basis, every window, and every right. The audit report is published on the editorial responsibility page; the report carries the date of the audit and the date of the next audit. The audit report is the binding rule. A discrepancy between the audit report and the privacy notice triggers an update on the next refresh; the update is logged in the editorial log. A reader who wants to verify the privacy notice against the audit report can navigate to the editorial responsibility page.

Frequently asked

What personal data does the editorial gateway collect?

Account identifiers, contact details for readers who write in, device metadata for bot detection, and aggregated analytics. The full list is in the privacy table.

Does the editorial gateway sell personal data?

No.

How long is data retained?

Account data is retained for 18 months after closure. Analytics is retained for 13 months. Marketing is retained for 30 days.

What rights do I have under the DPDP Act 2023?

The right of access, the right of correction, the right of erasure, and the right to nominate. Rights are exercised through the privacy channel.

How do I request erasure?

Use the privacy channel. State that you are exercising the right of erasure and the email associated with any data the gateway holds.

Where is the data processed?

Data is processed in India by the editorial gateway. Data may be processed outside India by analytics and marketing providers under a Data Processing Agreement.

How do I file a complaint?

Use the privacy channel. If we cannot resolve the complaint, you may escalate to the Data Protection Board of India.

Can the editorial gateway see my browsing history off-site?

No. The editorial gateway does not run cross-site tracking. The only cross-site signal is the outbound click-id to the operator's app or site.

What happens if I file a privacy complaint with the regulator?

A reader who is not satisfied with the privacy desk's response can file a complaint with the Data Protection Board of India. The complaint is logged on the privacy page and the editor cooperates with the regulator.

How does the editorial gateway verify identity on data requests?

The privacy desk verifies identity by matching the request against the email associated with the account, the PAN associated with the KYC, or the mobile number associated with the device. The privacy desk does not retain copies of identity documents beyond the verification step.

Does the editorial gateway respond to bulk or repeat requests?

A bulk or repeat request may be processed in batches. The privacy desk responds within 30 days and may publish a single consolidated response on the privacy page.

How does the Privacy notice sit within the wider editorial network?

The privacy notice is one of the published stops in the editorial network. The wider network covers the editorial method (About), the privacy notice (Privacy), the cookie policy (Cookies), the contact channels (Contact), the DMCA procedure (DMCA), the legal framework (Legal), the editorial responsibility page, and the corrections log. Every stop in the network links to the others through the footer.

Where can I read the underlying source document?

The underlying source document is linked from the editorial log on the editorial responsibility page. The source document is the binding rule; the Privacy notice is the editorial reading. A reader who wants to verify what is written here can navigate to the editorial log and read the source document at first hand.

What if the source document changes?

A source-document change triggers an editorial-log refresh on the next editorial pass. The privacy notice is updated to reflect the change; the editorial log records the date of the change and the date of the refresh. The quarterly audit cycle picks up the change on the next pass.

Looking for cookie categories?

PLAY NOW