Privacy Policy

Last updated: 2 October 2026

This Privacy Policy explains how Tripa ("Tripa", "we", "us", "our") collects, uses, shares and protects personal data when you visit tripa.in or use our SaaS products, apps and APIs (the "Services"). It is written in line with the Information Technology Act, 2000, its rules, and the Digital Personal Data Protection Act, 2023 (DPDP Act). By using the Services, you agree to this Policy.

1. Our Role

2. Data We Collect

a) Data you give us

b) Data collected automatically

c) Data from third parties

3. How We Use Your Data

We do not sell your personal data. We do not use Customer Data to train public AI models.

We process personal data on the basis of your consent (given when you sign up or submit a form), to perform our contract with you, and for legitimate uses permitted under the DPDP Act such as complying with law. You may withdraw consent at any time by writing to us; this will not affect processing already done, but may mean we can no longer provide some or all of the Services.

5. Sharing & Processors

We share data only as needed to run the Services, with providers bound by confidentiality and security obligations:

CategoryPurpose
Cloud hosting & databases (e.g. AWS)Store and run the Services
Payment gateways (e.g. Razorpay)Process subscription payments
Email, SMS & WhatsApp providersOTPs, notifications, receipts
Analytics & error monitoringUsage insights, crash and bug reports
AI model providersPower AI features, only with the data needed for that request

We may also disclose data: to comply with law, court order or a lawful request from a government authority; to protect the rights, safety or property of Tripa, our users or others; or to a successor in case of a merger, acquisition or sale of assets (with this Policy continuing to apply).

6. Cookies & Analytics

You can block or delete cookies in your browser settings, but some features may then stop working.

7. Data Retention

8. Security

We use reasonable security practices, including HTTPS/TLS encryption in transit, encrypted password storage, role-based access controls, restricted staff access, regular backups and monitoring. No system is 100% secure; if a personal data breach occurs, we will notify affected users and the authorities as required by law. Please keep your password private and enable any extra security features we offer.

9. Storage & Transfers

Data is primarily stored on servers in India or with reputed cloud providers. Some service providers (e.g. email or AI providers) may process data outside India. Any such transfer will be made only to countries not restricted by the Government of India and with appropriate safeguards.

10. Your Rights

Subject to applicable law, you have the right to:

Most account details can be edited in your settings. For other requests, email privacy@tripa.in. We may need to verify your identity before acting.

11. Children

The Services are meant for businesses and are not directed at anyone under 18. We do not knowingly collect personal data of children. If you believe a child has given us data, contact us and we will delete it.

12. Communications

We will send essential service messages (such as OTPs, invoices and security notices) as long as you have an account. You can unsubscribe from marketing emails anytime using the link in the email or by contacting us.

13. Changes to This Policy

We may update this Policy from time to time. The latest version will always be on this page with the "Last updated" date. For significant changes, we will notify you by email or in-app.

14. Grievance Officer & Contact

In accordance with the IT Act, 2000 and the DPDP Act, 2023, you may contact our Grievance Officer:

Tripa
Email: info@tripa.in
Website: tripa.in
Address: Dhadi tower, Bahuguna Colony, Ajabpur Khurd, Dehradun, Uttarakhand 248121

We will acknowledge your complaint within 24–48 hours and aim to resolve it within 30 days.