Privacy Policy
Last updated: June 15, 2026
Distdel Technologies Private Limited ("Distdel", "we", "us", or "our") is committed to protecting the privacy, security, and confidentiality of all users of our ecosystem. This Privacy Policy details how we collect, store, utilize, share, and protect personal and business information across our three core applications: the Distdel Diner App, the Distdel Delivery Partner App, and the Distdel Restaurant Partner App.
1. Scope and Applicability
This policy applies universally to all individuals and entities accessing our services through any of our dedicated applications:
- Distdel Diner App: Used by customers to browse restaurants, place orders, make payments, and track deliveries.
- Distdel Delivery Partner App (Rider App): Used by independent delivery agents to receive delivery assignments, manage routes, track payouts, and coordinate drop-offs.
- Distdel Restaurant Partner App (Merchant App): Used by merchant partners, managers, and staff to accept orders, manage menu offerings, update business profiles, and monitor payouts.
2. Information We Collect
We collect personal and professional information necessary to provide logistics, payment verification, and user authentication.
A. Distdel Diner App (Customers)
- Profile Information: Full name, active email address, verified 10-digit mobile number, password hashes, and profile images.
- Delivery Addresses: Saved physical addresses, custom labels (e.g., Home, Work), and precise GPS coordinates at the time of order placement.
- Payment Preferences: Tokenized payment cards, UPI handles, and transaction records (we comply strictly with PCI-DSS standards; raw card credentials are never saved on our servers).
- Interaction Data: Search logs, order histories, restaurant reviews, and support chat transcripts.
B. Distdel Delivery Partner App (Riders)
- Legal & Identity Verification: Full legal name, date of birth, identity documents (including Aadhaar card number and Permanent Account Number (PAN)), driving license credentials, and background screening logs.
- Vehicle Information: Vehicle registration plates, insurance certificates, and vehicle type (e.g., bicycle, motorcycle, electric vehicle).
- Real-time Location Tracking: Continuous background and foreground GPS coordinates (see Section 4 for detailed background location terms).
- Financial and Payout Details: Commercial banking account numbers, IFSC codes, bank branch coordinates, and weekly earnings statements.
- Device Details: Hardware specifications, operating system version, and unique push notification tokens.
C. Distdel Restaurant Partner App (Merchants)
- Business & Regulatory Details: Official store name, physical address, business phone number, FSSAI registration numbers, Goods and Services Tax Identification Number (GSTIN), and business PAN.
- Owner & Representative Details: Contact details, email addresses, and identity credentials of the store manager or business owner.
- Financial Settlement Data: Registered merchant bank accounts and IFSC codes used to process automated payouts.
- Operations Logs: Menu items, price lists, store operating hours, preparation durations, and order response speeds.
3. How We Utilize Your Data
Data processing is carried out to maintain system integrity, coordinate logistics, and complete transactions:
- Logistics and Fulfillment: Diner names, delivery locations, and contact details are securely shared with delivery partners and merchant representatives for the duration of the preparation and delivery windows.
- Financial Settlements: Banking credentials of delivery partners and merchant entities are processed for weekly payout schedules. Taxes, including TCS and GST, are verified and reported to regulatory bodies as per legal guidelines.
- Notifications & Communications: verified telephone contacts are used to transmit transactional details, delivery updates, and verification pins (OTPs). Email channels are used to manage account recoveries and security updates.
- Fraud Prevention & Platform Security: Automated telemetry monitors login attempts, hardware hashes, and velocity checks to identify and block fraudulent charges, multi-account abuse, and driver tracking manipulation.
4. Live Location and Background Geo-tracking Policy
Real-time location mapping is fundamental to our platform's operations. The following terms govern geographic tracking:
Background Location Access (Delivery Partner App Only):
The Distdel Delivery Partner App collects precise location data, including in the background (when the app is closed or not actively in use on screen), to ensure accurate order routing, calculate delivery ETAs, update restaurant partners of rider proximity, and allow diners to track their active deliveries in real-time. Background location tracking begins once a delivery agent sets their status to "Online" and stops when they toggle their status to "Offline" or log out.
*Diners and restaurant partners are only tracked in the foreground while the corresponding app is open and actively interacting with our map interfaces.
5. Authentication Security and Session Expiration Policies
We apply cryptographic measures and restricted session lifetimes to prevent unauthorized account access:
- Password Security: All user passwords are encrypted using industry-standard salted one-way bcrypt hashing algorithms prior to database write. Plain text passwords are never stored.
- Rider App Session Expiration (7-Day Limit): To safeguard customer address histories, contact records, and active delivery routes, login tokens in the Distdel Delivery Partner App are configured to expire exactly 7 days after initial authentication. Upon expiration, the rider is automatically logged out and must re-enter their credentials.
- Diner and Merchant App Sessions (30-Day Limit): Sessions on customer and restaurant partner applications expire after 30 days, requiring account validation to resume usage.
- Data Security: PII and financial database rows are stored behind secure virtual private cloud (VPC) firewalls with strict role-based access control.
6. Data Sharing and Third-Party Disclosures
Distdel does not sell, lease, or distribute your personal information. Data sharing is limited to:
- Transaction Partners: Dynamically sharing diner locations with assigned riders, and diner orders with chosen restaurants, strictly to execute the delivery.
- Payment Processors: Relaying payment details to PCI-DSS compliant third-party payment gateways to securely process card payments, net banking, or UPI transfers.
- Legal Mandates: Divulging information to compliance divisions or law enforcement authorities when legally obliged by search warrants, judicial directives, tax audits, or criminal investigations.
7. Data Retention & Account Deletion
We retain personal and business records for as long as accounts remain active or as dictated by standard statutory retention laws. Users across all three apps can submit an account deletion request through their respective dashboards. Upon request, all personally identifiable information (PII) is securely deleted or permanently anonymized within 30 days, except where retention is legally required (e.g., past tax invoices, ledger entries, or active fraud investigations).
8. Updates and Contact Channels
We update this Privacy Policy periodically to reflect new system security updates and changes in local regulatory requirements. When updates occur, we will notify users through app banners or official email dispatches.
For general security inquiries, data access requests, or privacy compliance concerns, you can contact our designated Grievance Officer at: