Privacy Policy

How we collect, use, and protect your personal information

Last Updated: February 27, 2026

Our Commitment to Privacy

At WealthLab, we are committed to protecting your privacy and personal data. This Privacy Policy explains what information we collect, how we use it, and your rights regarding your data.

This policy complies with the Information Technology Act, 2000, the Digital Personal Data Protection Act, 2023 (DPDP Act), and applicable international data protection regulations.

1. Data Controller

The data controller for your personal information is:

WealthLab

3rd Floor, E259, Amar Colony

Lajpat Nagar, 110024

New Delhi, India

Email: contact@wealthlab.in

2. Information We Collect

2.1 Information You Provide

  • Account Information: Email address, name, password (encrypted)
  • Payment Information: Processed securely by Razorpay (PCI DSS compliant). We do not store complete credit/debit card numbers
  • Profile Data: Preferences, watchlists, tracking lists you create
  • Communication Data: Messages you send to us via email or support channels

2.2 Information Automatically Collected

  • Usage Data: Pages viewed, features used, time spent, search queries
  • Device Information: IP address, browser type, operating system, device identifiers
  • Analytics Data: Collected via Mixpanel and Google Tag Manager for product improvement
  • Cookies & Tracking: See Section 8 for details

2.3 Information We Do NOT Collect

We do NOT collect:

  • Your brokerage account credentials or trading passwords
  • Details of your actual investment portfolio or holdings
  • Sensitive personal data (health, religion, caste, biometric data)
  • Information about minors (users must be 18+)

3. How We Use Your Information

We use your personal information for the following purposes:

3.1 Service Delivery

  • Create and manage your account
  • Provide access to analytics and features
  • Process subscription payments
  • Save your preferences and watchlists
  • Deliver personalized stock screening results

3.2 Communication

  • Send subscription confirmations and receipts
  • Provide customer support
  • Notify you of service updates or changes
  • Send educational content (with your consent)

3.3 Product Improvement

  • Analyze usage patterns to improve features
  • Conduct A/B testing and product research
  • Identify and fix bugs or technical issues
  • Develop new analytics and tools

3.4 Security & Compliance

  • Prevent fraud and unauthorized access
  • Enforce our Terms of Service
  • Comply with legal obligations
  • Protect user safety and platform integrity

Legal Basis for Processing (DPDP Act): We process your data based on consent (for optional features), contract performance (to deliver subscribed services), and legitimate interests (security, product improvement).

4. How We Share Your Information

4.1 Service Providers

We share data with trusted third-party service providers:

  • Razorpay: Payment processing (PCI DSS compliant, does not share data with us beyond transaction confirmation)
  • Mixpanel: Product analytics (anonymized usage data)
  • Google Tag Manager: Website analytics and tracking
  • Cloud Hosting: Secure data storage and platform hosting

These providers are contractually obligated to protect your data and use it only for specified purposes.

4.2 Legal Requirements

We may disclose your information if required to:

  • Comply with legal obligations, court orders, or government requests
  • Enforce our Terms of Service
  • Protect our rights, property, or safety
  • Prevent fraud or illegal activity

4.3 What We Do NOT Do

We do NOT:

  • Sell your personal data to third parties
  • Share your data with advertisers
  • Use your data for purposes unrelated to the Platform
  • Provide your information to data brokers

5. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption: Data transmitted via HTTPS/TLS encryption
  • Password Security: Passwords are hashed and salted using bcrypt
  • Access Controls: Limited employee access on a need-to-know basis
  • Secure Storage: Data stored in secure, access-controlled databases
  • Regular Audits: Periodic security assessments and vulnerability testing
  • Payment Security: PCI DSS compliant payment processing via Razorpay

However, no method of transmission over the internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.

6. Data Retention

We retain your personal data for as long as necessary to:

  • Provide you with Platform services (while your account is active)
  • Comply with legal, tax, and accounting obligations
  • Resolve disputes and enforce our Terms

Retention Period: We retain account data for the duration of your active subscription plus 2 years after cancellation, unless you request earlier deletion.

After this period, data is securely deleted or anonymized. Anonymized analytics data may be retained indefinitely for product improvement.

7. Your Data Rights

Under the DPDP Act 2023 and applicable data protection laws, you have the following rights:

7.1 Right to Access

Request a copy of the personal data we hold about you.

7.2 Right to Rectification

Request correction of inaccurate or incomplete data.

7.3 Right to Deletion (Right to be Forgotten)

Request deletion of your personal data, subject to legal retention requirements.

7.4 Right to Data Portability

Request your data in a structured, machine-readable format for transfer to another service.

7.5 Right to Withdraw Consent

Withdraw consent for optional data processing activities (e.g., marketing emails).

7.6 Right to Object

Object to processing based on legitimate interests.

To exercise these rights, contact us at contact@wealthlab.in. We will respond within 30 days.

8. Cookies & Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience:

8.1 Types of Cookies

  • Essential Cookies: Required for authentication and core Platform functionality
  • Analytics Cookies: Track usage patterns to improve the Platform (Mixpanel, Google Tag Manager)
  • Preference Cookies: Remember your settings and preferences

8.2 Managing Cookies

You can control cookies through your browser settings. However, disabling essential cookies may affect Platform functionality.

For more information on managing cookies, visit: aboutcookies.org

9. International Data Transfers

Your data is primarily stored and processed in India. Some service providers (e.g., Mixpanel, Google) may store data in data centers outside India.

When data is transferred internationally, we ensure adequate safeguards are in place through:

  • Standard Contractual Clauses (SCCs)
  • Data Processing Agreements with service providers
  • Compliance with GDPR and DPDP Act requirements

10. Children's Privacy

WealthLab is NOT intended for users under 18 years of age.

We do not knowingly collect personal information from minors. If we discover that we have inadvertently collected data from a user under 18, we will delete it immediately.

If you believe we have collected information from a minor, please contact us at contact@wealthlab.in.

11. Updates to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or Platform features.

Material changes will be communicated via email or a prominent notice on the Platform. The "Last Updated" date at the top of this page indicates when changes were last made.

We encourage you to review this Privacy Policy periodically.

12. Contact Us

If you have questions about this Privacy Policy or wish to exercise your data rights, please contact us:

WealthLab - Privacy Officer

3rd Floor, E259, Amar Colony

Lajpat Nagar, 110024

New Delhi, India

Email: contact@wealthlab.in

Website: wealthlab.in

We will respond to privacy-related inquiries within 30 days.