Website: vikashfollowers.in
Privacy Policy
Last Updated: August 2026
1. Introduction
This Privacy Policy describes how vikashfollowers.in (the "Platform") collects, uses, stores, and protects information related to customers and visitors who access, register, deposit balance, place orders, or use any service available through the Platform.
By using the Platform, customers acknowledge and consent to the data collection, storage, and processing practices described in this Privacy Policy.
If any person does not agree with this Privacy Policy, they must stop using the Platform immediately.
2. Information We Collect
The Platform collects the following categories of information for operational, security, and service delivery purposes:
A. Account Information
- Username or display name
- Email address (if provided)
- Mobile number or phone number (for authentication)
- Password (stored in encrypted/hashed form)
- Account creation date and last login timestamp
B. Order and Service Information
- Social media usernames, profile links, or post links submitted with orders
- Service type, quantity, and order details
- Order status, delivery progress, and completion records
- Transaction and invoice references
C. Payment Information
- Payment method used (UPI, card, wallet, etc.)
- Transaction reference numbers and payment IDs
- Payment amount and timestamp
- Payment status and verification records
(The Platform does not store complete card numbers, CVV, or full banking credentials. Payment processing is handled by secured third-party payment gateways.)
D. Technical and Operational Data
- IP address and approximate geolocation based on IP
- Browser type, device type, and operating system
- Access timestamps and session activity logs
- Cookies and similar tracking technologies for session management
E. Communication Records
- Support chat messages and tickets
- Email communications
- Operational review requests and responses
3. How We Use Collected Information
The Platform uses collected information for the following purposes:
- Processing and delivering customer orders for social media marketing and promotional services
- Managing wallet balance, payments, and transaction records
- Authenticating users and maintaining account security
- Preventing fraud, unauthorized transactions, fake disputes, and chargeback abuse
- Providing customer support and resolving operational issues
- Maintaining operational logs for technical monitoring and troubleshooting
- Complying with applicable legal, regulatory, and law enforcement requirements
- Improving Platform functionality, service quality, and user experience
- Sending service notifications, order updates, and important announcements
The Platform does not sell, rent, or trade customer personal information to third parties for marketing purposes.
4. Legal Basis for Data Processing
The Platform processes customer data based on the following legal grounds:
- Customer consent: Provided during registration, payment, and order placement
- Contractual necessity: Required to fulfill orders, process payments, and deliver services
- Legal compliance: Required to maintain records for applicable laws, financial regulations, and tax compliance
- Legitimate operational interests: Fraud prevention, security monitoring, and platform integrity
5. Data Sharing and Third Parties
The Platform may share customer information with the following categories of third parties:
A. Service Providers and External API Partners
- Third-party service providers and API integrations that deliver social media marketing services (likes, followers, views, etc.)
- These providers receive only the operational data necessary to fulfill specific orders (e.g., target username, profile link, quantity)
B. Payment Gateways
- Third-party payment processors that handle transaction verification and processing
- These processors operate under their own privacy policies and security standards
C. Law Enforcement and Legal Authorities
- Where legally required by court orders, lawful investigations, cybercrime reports, or regulatory demands
- In cases involving fraud, unauthorized transactions, or unlawful activity
D. Hosting and Infrastructure Providers
- Server hosting providers and cloud infrastructure services that maintain Platform availability
The Platform does not share customer personal information with advertising networks or data brokers.
6. Data Security Measures
The Platform implements reasonable technical and organizational security measures to protect customer data, including:
- Password hashing using industry-standard encryption methods
- HTTPS/TLS encryption for data transmission between browsers and servers
- Secure session management and authentication systems
- Restricted internal access to sensitive customer data
- Regular security monitoring and fraud detection systems
- Firewalls and server-level security configurations
- Payment data handled through PCI-compliant third-party payment gateways
Despite these measures, no system can guarantee complete security. Customers acknowledge that they share information at their own risk, and the Platform shall not be liable for unauthorized access caused by factors beyond its reasonable control.
7. Data Retention
The Platform retains customer data for the following periods:
- Account information: Retained for the duration of the account's active status
- Transaction and payment records: Retained for a minimum of 5 years or as required by applicable tax and financial regulations
- Order records: Retained for operational reference and dispute resolution purposes
- Technical logs: Retained for a reasonable operational period for security monitoring
- Support communications: Retained for operational reference and quality improvement
Customers may request deletion of their account and associated personal data by contacting support, subject to legal and regulatory retention requirements. Certain records may be retained even after account deletion where required by law.
8. Cookies and Tracking Technologies
The Platform uses cookies and similar technologies for:
- Session management and user authentication
- Maintaining login state across page navigation
- Preventing CSRF attacks and fraudulent activity
- Analyzing Platform usage patterns for improvement
The following cookies are stored in the customer's browser:
A. Login and Identity Cookies
- user_id: Stores the customer's unique user ID to keep the customer logged in across visits. This cookie persists for up to 10 years so the customer does not need to log in repeatedly. Without this cookie, the customer may be logged out and lose access to their account on the next visit.
- _rt: A backup recovery token linked to the customer's device. Used to restore the customer's login session if the user_id cookie is lost due to browser cache clearing, app reinstallation, or device changes. This cookie persists for up to 10 years.
- _df: A device fingerprint identifier used to recognize the customer's device. This cookie is accessible by the Platform's frontend scripts to help maintain session continuity across page navigation and PWA usage.
B. Session Cookie
- PHPSESSID: A standard session cookie required for server-side session management. This cookie is essential for login, cart, order processing, and payment functionality. It expires when the browser session ends.
C. Referral Cookie
- referral_code: Temporarily stores a referral code if the customer was referred by another user. This cookie is removed once the registration or referral process is completed.
D. Admin Session Cookies
- Admin-specific session and authentication cookies are used to secure the admin panel. These cookies are HttpOnly and Secure where applicable.
Cookie Duration and Persistence
- Login cookies (user_id, _rt) persist for up to 10 years to prevent accidental logout and to support account recovery.
- Session cookies (PHPSESSID) expire when the browser is closed.
- Customers can control cookie preferences through their browser settings. Disabling or deleting login cookies may result in loss of access to the account, requiring account recovery via email OTP or other supported recovery methods.
- The Platform cannot guarantee account access restoration if all login cookies and recovery tokens are deleted by the customer.
9. Customer Rights
Customers have the following rights regarding their personal data:
A. Right to Access
Customers may request a copy of their personal data held by the Platform.
B. Right to Correction
Customers may request correction of inaccurate or incomplete personal information.
C. Right to Deletion
Customers may request deletion of their account and personal data, subject to legal retention requirements.
D. Right to Data Portability
Customers may request their data in a structured, machine-readable format for transfer to another service.
E. Right to Object
Customers may object to certain processing activities, particularly for marketing or profiling purposes.
To exercise any of these rights, customers must contact official support channels with sufficient identity verification.
10. Social Media Data Processing
When customers place orders on the Platform, they provide social media usernames, profile links, or post URLs. This information is processed as follows:
- Submitted usernames and links are used solely for the purpose of delivering the requested service
- The Platform does not access, store, or collect passwords or login credentials for customers' social media accounts
- The Platform does not post content, send messages, or perform actions on customers' social media accounts unless explicitly part of the ordered service
- Submitted target information may be shared with external service providers solely for order fulfillment
- Customers are responsible for ensuring they have the right to submit the target username or link for promotional services
11. Children's Privacy
The Platform is not intended for use by individuals under 18 years of age. The Platform does not knowingly collect personal information from minors.
If the Platform becomes aware that personal information has been collected from a minor, it will take steps to delete such information and terminate the associated account.
Parents or guardians who believe their child has provided information to the Platform should contact support immediately.
12. International Data Transfers
The Platform primarily operates within India, and customer data is stored on servers located within India.
However, certain third-party service providers, API partners, or infrastructure services may process data outside India. In such cases, the Platform takes reasonable measures to ensure that such transfers comply with applicable data protection requirements.
Customers acknowledge that external service providers involved in order delivery may be located outside India, and submitted target information (usernames, links) may be processed by those providers in their respective jurisdictions.
13. Fraud Prevention and Security Monitoring
The Platform actively monitors for fraudulent activity, including:
- Unauthorized payment transactions and chargeback abuse
- Fake disputes and false cybercrime complaints
- Multiple account creation for fraudulent purposes
- Payment manipulation and system exploitation attempts
- Suspicious ordering patterns or bot-like behavior
Customer data, including IP addresses, device information, and transaction records, may be used for fraud detection, risk assessment, and prevention of unlawful activity.
In cases of confirmed or suspected fraud, the Platform may share relevant information with financial institutions, payment processors, cybercrime authorities, or law enforcement agencies as legally required.
14. Third-Party Links and Services
The Platform may contain links to third-party websites, payment gateways, or external services that are not operated by the Platform.
The Platform is not responsible for the privacy practices or content of third-party websites. Customers are advised to review the privacy policies of any third-party services they interact with.
The Platform's Privacy Policy applies only to information collected through the Platform itself.
15. Data Breach Notification
In the event of a confirmed data breach that compromises customer personal information, the Platform will:
- Take immediate steps to contain and investigate the breach
- Notify affected customers in a reasonable timeframe where legally required
- Cooperate with relevant authorities as required by applicable laws
- Take corrective measures to prevent similar incidents
The Platform shall not be liable for breaches caused by factors beyond its reasonable control, including but not limited to customer-side security failures, compromised devices, or third-party service provider breaches.
16. Marketing Communications
The Platform may send service-related notifications, order updates, promotional offers, and important announcements to customers via email, SMS, or in-platform messaging.
Customers can opt out of promotional communications by contacting support or using unsubscribe options where available.
Service-critical notifications (order status, payment confirmations, security alerts) cannot be opted out of, as they are essential for Platform operation.
17. Changes to This Privacy Policy
The Platform reserves the right to update, revise, or modify this Privacy Policy at any time without prior notice.
Customers are advised to review this Privacy Policy periodically for any changes.
Continued use of the Platform after any modification shall constitute acceptance of the updated Privacy Policy.
18. Contact and Support
For any questions, concerns, or requests related to this Privacy Policy or personal data handling, customers should contact the Platform through official support channels.
Support requests should include sufficient account details and identity verification for the Platform to process the request appropriately.
19. Governing Law
This Privacy Policy shall be governed according to the applicable laws and operational jurisdiction within India.
Any disputes or legal proceedings related to this Privacy Policy shall remain subject to the competent jurisdiction and applicable legal framework within India.
20. Important Notice
This Privacy Policy is intended to provide transparency about data handling practices on the Platform.
Applicable data protection laws, consumer protection laws, cybercrime laws, and financial regulations may still apply depending on jurisdiction and factual circumstances.
The Platform owner may maintain additional compliance procedures, data processing records, and security protocols beyond what is described in this Privacy Policy where operationally or legally required.