1. Introduction
Bestemail ("we", "our", "us") is committed to protecting your privacy. This policy explains how we collect, use, store, and protect your personal information when you use our email marketing platform at bestemail.in.
2. Information We Collect
- Account info: name, email, phone number, company name
- Billing info (when enabled for approved accounts): billing address, GST number, and limited transaction metadata from the active payment provider
- Usage data: login times, features used, campaign performance metrics
- Contact data: email lists and subscriber information you upload
- Technical data: IP address, browser type, device info, cookies
- Communication data: support tickets, emails to our team
3. How We Use Your Information
- Provide and maintain our email marketing services
- Support account access, onboarding, and any approved billing workflows that may be enabled for specific accounts
- Send service-related communications (billing, updates, security alerts)
- Improve our platform and develop new features
- Provide customer support
- Comply with legal obligations
- Prevent fraud and abuse
4. Data Storage and Security
- Data is stored on managed cloud infrastructure with encrypted PostgreSQL-backed application storage
- Servers located in secure data centers
- All data encrypted in transit (TLS 1.3) and at rest (AES-256)
- Regular security audits and vulnerability assessments
- Access controls and authentication for all internal systems
5. Payment Information
- BestEmail currently uses a request-access rollout rather than broad self-serve billing
- If billing is activated for an approved account, payment processing may be handled by a supported third-party provider
- We do NOT store full card numbers or CVV details inside BestEmail
- Limited billing records may be retained for accounting, support, and tax purposes
6. Cookies and Tracking
- Essential cookies: session management, authentication
- Analytics cookies: understand usage patterns (can be disabled)
- We do not sell your data to advertisers
- No third-party advertising trackers on our platform
7. Third-Party Services
We share limited data with the following providers:
- Payment provider (when billing is activated): checkout and transaction processing for approved accounts
- Managed cloud infrastructure providers: application hosting, PostgreSQL-backed data storage, and operational compute
- Cloudflare: DNS management and security
- Email delivery infrastructure (Sendy): for sending your campaigns
We require all third-party providers to maintain appropriate security measures.
8. Your Rights
You have the right to:
- Access your personal data
- Correct inaccurate data
- Delete your account and data
- Export your data in standard formats
- Opt out of marketing communications
- Withdraw consent at any time
To exercise these rights, email privacy@bestemail.in
9. Data Retention
- Account data: retained while your account is active
- After cancellation: data retained for 30 days, then permanently deleted
- Payment records: retained for 7 years (Indian tax/accounting requirements)
- Backup data: purged within 90 days of deletion
10. Children's Privacy
Our services are not directed to individuals under 18. We do not knowingly collect data from minors.
11. International Data Transfers
If you access our services from outside India, your data may be transferred to and processed in India. By using our services, you consent to this transfer.
12. Changes to This Policy
We may update this policy from time to time. We will notify registered users of significant changes via email. Continued use of our services after changes constitutes acceptance.
13. Contact Us
For privacy-related questions or concerns:
14. Grievance Officer
In accordance with the Information Technology Act, 2000 and rules made thereunder, the Grievance Officer for the purpose of this policy is reachable at: grievance@bestemail.in