Overview
Who we are and what this policy covers
Welcome to Repair Solutions ("we", "our", or "us"). We operate a cloud-based Repair Shop Management SaaS platform.
This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you:
- Register and use the Repair Solutions platform
- Log in using Facebook or other social accounts
- Use our web application as a shop owner, staff, or vendor
- Interact with any of our services, APIs, or third-party integrations
Platform Type: Repair Solutions is a B2B SaaS tool designed for repair shop businesses. Shop owners manage their own customer data; we act as a data processor on their behalf.
Data We Collect
Information you provide and what we automatically collect
A. Information You Provide Directly
| Category | Examples | Required? |
|---|---|---|
| Account Information | Name, email address, mobile number, password | Yes |
| Business Information | Shop name, address, business type | Yes |
| Customer Data | Customer names, phone numbers, device info, repair details | For shop use |
| Payment Information | Transaction amount (processed via Razorpay – card details not stored) | Paid plans |
| Uploaded Files | Device photos, job attachments | Optional |
B. Information Collected Automatically
- Log Data: IP address, browser type, pages visited, timestamps
- Device Info: Device type, operating system, screen resolution
- Usage Data: Features used, actions performed, session duration
- Cookies & Local Storage: Session tokens, preferences (see Cookies section)
C. Information from Third Parties
- Facebook Login: Public profile (name, email, Facebook User ID)
- WhatsApp (Meta): Message delivery status only – no message content stored
- Razorpay: Payment confirmation status and transaction IDs
Facebook Login & Meta Data
What we access when you sign in with Facebook
Repair Solutions offers the option to log in using your Facebook account via Facebook Login (OAuth 2.0). This section explains exactly what data we request and how we use it.
Data We Request from Facebook
| Permission | Data Accessed | Purpose |
|---|---|---|
public_profile |
Name, profile picture, Facebook User ID | Create/identify your account |
email |
Email address | Account verification & communication |
How We Use Facebook Data
- To create your Repair Solutions account or link it to an existing account
- To authenticate you securely when you log in
- To display your name within the platform
- To send important account-related emails to your email address
Data Deletion (Facebook)
If you used Facebook Login and wish to delete your data from our platform, you can:
- Go to Facebook Settings → Apps and Websites → Remove Repair Solutions
- Email us at workforsohil@gmail.com requesting data deletion
- We will delete all associated data within 30 days
Handled by our support team at workforsohil@gmail.com .
We honor Meta's Data Deletion Instructions and process all deletion requests promptly.
WhatsApp & Meta Business Integration
Repair Solutions uses the WhatsApp Business Cloud API (by Meta) to send automated job-status notifications to repair shop customers. We only send messages; we do not read or store incoming messages.
How We Use Your Data
The purposes for which we process your information
| Purpose | Legal Basis |
|---|---|
| Provide, operate, and improve the platform | Contract performance |
| Authenticate users and maintain account security | Contract / Legitimate interest |
| Process subscription payments | Contract performance |
| Send transactional notifications (SMS, WhatsApp, Email) | Contract / Consent |
| Provide customer support | Legitimate interest |
| Monitor platform performance and fix bugs | Legitimate interest |
| Comply with legal obligations | Legal requirement |
| Prevent fraud and maintain security | Legitimate interest |
Data Sharing & Third Parties
When and with whom we share your information
Service Providers (Sub-Processors)
| Provider | Purpose | Data Shared |
|---|---|---|
| Razorpay | Payment processing | Name, email, amount |
| Meta (Facebook/WhatsApp) | Login & messaging | OAuth token, phone number |
| Fast2SMS | SMS notifications | Mobile number, message text |
| Hosting Provider | Server infrastructure | All data (encrypted at rest) |
Legal Disclosures
We may disclose your data if required by law, court order, or government authority, or if necessary to protect our rights or the safety of others.
Business Transfer
In the event of a merger or acquisition, your data may be transferred. We will notify you via email before your data becomes subject to a different privacy policy.
Data Storage & Retention
Where your data is stored and for how long
Storage Location
Your data is stored on servers located in India. All data at rest is encrypted, and data in transit is protected using TLS/SSL encryption.
Retention Periods
| Data Type | Retention Period |
|---|---|
| Account data | Until account deletion + 30 days |
| Job / repair records | Duration of subscription + 1 year |
| Payment records | 7 years (Indian tax law) |
| Log files | 90 days |
| Uploaded files / photos | Until deleted by shop owner or account closure |
| Facebook login tokens | Until you revoke access or unlink |
Data Deletion
When you delete your account, we will delete or anonymize your personal data within 30 days, except where retention is legally required.
Cookies & Tracking
How we use cookies and similar technologies
| Cookie Type | Purpose | Duration |
|---|---|---|
| Session Cookies | Keep you logged in during your session | Session end |
| Auth Cookies | Remember login for "Stay logged in" | 24 hours |
| Preference Cookies | Remember your settings | 1 year |
| Security Cookies | CSRF protection tokens | Session |
We do not use third-party advertising cookies or tracking pixels. You can control cookies through your browser settings, though disabling certain cookies may affect platform functionality.
Your Rights
Control over your personal data
Under applicable data protection laws (including India's DPDP Act 2023), you have the following rights:
- Right to Access: Request a copy of your personal data we hold
- Right to Correction: Update or correct inaccurate information
- Right to Deletion: Request deletion of your personal data
- Right to Portability: Export your data in a machine-readable format
- Right to Restrict Processing: Limit how we process your data
- Right to Object: Object to processing based on legitimate interests
- Right to Withdraw Consent: Withdraw consent at any time
Security Measures
How we protect your data
- Encryption: All data transmitted over HTTPS/TLS. Passwords hashed using bcrypt
- Access Controls: Role-based access (Super Admin, Shop Owner, Staff, Vendor)
- Session Security: Secure, HTTP-only cookies with CSRF protection
- Input Validation: All inputs sanitized to prevent SQL injection, XSS, and other attacks
- Regular Backups: Automated daily database backups
- Audit Logs: Critical actions are logged for security monitoring
Children's Privacy
Our services are intended for adults only
Repair Solutions is a business tool intended for adults (18+) only. We do not knowingly collect personal information from individuals under the age of 18.
If you believe a minor has provided personal information to us, please contact us at workforsohil@gmail.com and we will delete such information promptly.
Changes to This Policy
How we update our privacy practices
We may update this Privacy Policy periodically. When we make material changes, we will:
- Update the "Last Updated" date at the top of this page
- Send an email notification to registered users for significant changes
- Display a prominent notice on our platform
Your continued use of Repair Solutions after changes become effective constitutes acceptance of the updated policy.
Contact Us
Questions about privacy? We're here to help
If you have any questions, concerns, or requests regarding this Privacy Policy, please reach out to us:
Repair Solutions
Data Controller & Privacy Officer
We aim to respond to all privacy inquiries within 30 days.
Governing Law: This Privacy Policy is governed by the laws of India, including the Information Technology Act 2000 and the Digital Personal Data Protection Act 2023.