Privacy Policy
Herbera Co. Data Protection & Privacy
Information We Collect
When you use our service, we may collect the following information:
- Account Information: When you sign in with Google, we collect your email address, name, and profile picture as provided by Google.
- Usage Data: Information about how you use our application, including features accessed, time spent, and user interactions.
- Device Information: Basic device and browser information, IP address, operating system, and browser type for security and optimization purposes.
- Cookies and Tracking: We use cookies and similar technologies to maintain your session and improve user experience.
- User-Generated Content: Any content, files, or data you create, upload, or share through our service.
How We Use Your Information
We use the collected information to:
- Provide, operate, and maintain our service
- Authenticate and manage your account securely
- Process your requests and provide customer support
- Improve our application, features, and user experience
- Communicate with you about service updates, security alerts, and support messages
- Monitor usage patterns and analyze service performance
- Ensure security, prevent fraud, and protect against abuse
- Comply with legal obligations and enforce our terms
Legal Basis for Processing (GDPR)
We process your personal data based on the following legal grounds:
- Consent: When you explicitly agree to our processing activities
- Contract: To perform our services as outlined in our Terms of Service
- Legitimate Interest: To improve our services, ensure security, and provide customer support
- Legal Obligation: To comply with applicable laws and regulations
Information Sharing and Disclosure
We do not sell, trade, or otherwise transfer your personal information to third parties except in the following circumstances:
- With your explicit consent for specific purposes
- Service Providers: Trusted third-party vendors who assist in operating our service (with strict confidentiality agreements)
- Legal Requirements: When required by law, court order, or government request
- Safety and Security: To protect our rights, safety, and the safety of our users
- Business Transfers: In connection with a merger, acquisition, or sale of assets (with prior notice)
Data Security and Protection
We implement comprehensive security measures to protect your personal information:
- Encryption: Data is encrypted in transit and at rest using industry-standard protocols
- Access Controls: Strict access controls and authentication mechanisms
- Regular Security Audits: Ongoing monitoring and security assessments
- Secure Infrastructure: Use of secure cloud hosting with regular security updates
- Data Minimization: We collect only the data necessary for our services
However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
Google OAuth Integration and Data Handling
Our application uses Google OAuth for secure authentication:
- We only access the basic profile information you've explicitly authorized
- We comply with Google's API Services User Data Policy and Limited Use requirements
- Your Google credentials are never stored on our servers
- You can revoke access at any time through your Google Account settings
- We do not use Google user data for advertising or other commercial purposes
- Data obtained from Google APIs is only used to provide and improve our service features
Data Retention and Deletion
We retain your information only as long as necessary:
- Active Accounts: Data is retained while your account is active and for legitimate business purposes
- Account Deletion: When you delete your account, we will delete your personal data within 30 days
- Legal Requirements: Some data may be retained longer to comply with legal obligations
- Backup Systems: Data in backup systems is deleted according to our backup retention schedule
Your Privacy Rights
Depending on your location, you may have the following rights:
- Access: Request a copy of your personal information
- Correction: Request correction of inaccurate or incomplete information
- Deletion: Request deletion of your personal data (right to be forgotten)
- Portability: Request export of your data in a portable format
- Objection: Object to processing of your information for certain purposes
- Restriction: Request restriction of processing under certain circumstances
- Withdraw Consent: Withdraw your consent for data processing where applicable
To exercise these rights, please contact us using the information provided below.
International Data Transfers
Your information may be transferred to and processed in countries other than your own. We ensure adequate protection for international transfers through:
- Standard Contractual Clauses approved by relevant authorities
- Adequacy decisions by competent authorities
- Other appropriate safeguards as required by applicable law
Children's Privacy
Our service is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will take steps to delete such information promptly.
Cookies and Tracking Technologies
We use cookies and similar tracking technologies to:
- Maintain your login session
- Remember your preferences and settings
- Analyze usage patterns and improve our service
- Provide security features and prevent fraud
You can control cookies through your browser settings, though some features may not function properly if cookies are disabled.
Changes to This Privacy Policy
We may update this privacy policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the "Last Updated" date.
Contact Us
If you have any questions about this Privacy Policy, please contact us at:
Email: herbera@gmail.com
Phone: 9769198218
Address: Mumbai - 400068
Last Updated: September 2025