Privacy Policy
How we collect, use, and protect personal data — and the choices you have.
On this page
This Privacy Policy explains how Zippix collects, uses, shares, stores, and protects personal data when someone visits zippix.in, contacts us, holds a Zippix account, or uses the Zippix business software platform (collectively, the "Service").
Zippix is designed for financial advisory firms. Those firms use the Service to manage their own employees, prospects, clients, projects, files, and communications. This distinction affects who decides how personal data is used.
1. Our Role
Data we control directly
Zippix acts as the data fiduciary or controller for personal data that we determine how and why to process, including website and sales enquiries; account and workspace administration; subscription, billing, support, and service communications; and platform security, fraud prevention, and service operations.
Data controlled by a Customer
For records that a financial advisory firm or other Customer places in its workspace, the Customer decides what to collect, whose data to include, why it is used, and which users may access it. Zippix processes that data as a data processor or service provider on the Customer's instructions and to operate and secure the Service.
If you are an investor, prospect, family member, WhatsApp recipient, or other person whose information was entered by a Zippix Customer, contact that Customer first about your data. We will assist the Customer where required by law or contract.
2. Scope
This Policy applies to the Zippix websites, the Zippix web application and connected services, service communications, and the data processed through them. It does not govern a Customer's independent practices or any third-party website, service, or application that has its own privacy policy.
3. Personal Data We Process
The data actually processed depends on how the Service is configured and used. The main categories are:
- Website and enquiry data: name, contact details, organisation, and the contents of your message when you contact us.
- Account and workspace data: user profile information, login credentials (passwords are stored only in hashed form), roles and permissions, organisation details, and plan, subscription, and usage information.
- Customer records: information a Customer chooses to store about its clients, prospects, and their families, which may include contact details, identifiers, family and relationship information, financial and investment information, documents, notes, and custom fields. The Customer is responsible for deciding whether this information is necessary and for having the authority to process it.
- Workflow data: leads, projects, tasks, reviews, checklists, files, comments, notifications, and related activity created while using the Service.
- WhatsApp communication data: where a Customer enables WhatsApp features, connected business-account information, contacts, messages and media, templates, campaigns, and delivery information. WhatsApp processing involves Meta Platforms and is also subject to Meta's and WhatsApp's terms and privacy practices.
- Billing records: invoices, payments, subscriptions, credits, and related commercial history. Zippix does not store payment-card numbers or card security codes.
- Technical and security data: IP address, device and browser information, log and diagnostic data, security events, and usage information needed to operate, secure, and improve the Service.
4. Cookies and Browser Storage
Zippix uses cookies and similar browser-storage technologies that are necessary to sign users in, keep sessions secure, and remember preferences. The Zippix website does not use advertising pixels or general-purpose behavioural analytics.
Optional integrations (such as Meta's WhatsApp signup flow) and standard web resources may involve third parties that receive ordinary request information or set their own cookies under their own policies.
You can control cookies and browser storage through your browser or device settings. Blocking essential storage may prevent login, preferences, or other features from working correctly.
5. How We Obtain Personal Data
We receive personal data directly from website visitors, account users, and support contacts; from Customers and their users through their entry, import, and use of records in the Service; from Meta and WhatsApp when a Customer connects and uses WhatsApp features; from a Customer's clients and contacts when they communicate through those features; and automatically from the systems that operate the Service.
6. Why We Process Personal Data
Zippix processes personal data to provide, operate, secure, and improve the Service; create and administer accounts, workspaces, roles, plans, and billing; deliver the communication, workflow, reporting, and analytics features Customers use; provide support, service notices, and enquiry responses; authenticate users and enforce access controls; monitor reliability, prevent fraud and abuse, and investigate incidents; enforce our agreements and resolve disputes; and comply with legal obligations.
We do not sell personal data, use Customer Data for targeted advertising, or use Customer records or WhatsApp content to train artificial-intelligence or machine-learning models.
7. Legal Grounds and Customer Instructions
We process personal data for lawful purposes and on grounds recognised by applicable law. Depending on the context, processing may be necessary to perform a contract, respond to a request, comply with law, secure the Service, carry out a permitted business purpose, or act on valid consent.
For Customer Data, the Customer's configuration and authorised use of the Service are its processing instructions. The Customer must establish its own lawful basis and provide required notices before placing personal data in Zippix. We may refuse an instruction that we reasonably believe is unlawful, insecure, outside the Service, or inconsistent with our agreement.
Where processing depends on consent, the person or Customer responsible for obtaining that consent must also provide an effective way to withdraw it. Withdrawal does not make earlier lawful processing unlawful and may limit the Service features that can be provided.
8. How We Share Personal Data
We disclose personal data only as described in this Policy, as directed by the Customer, or as permitted or required by law:
- Customer workspace users: Customer Data is available to the Customer and its authorised users according to the roles, permissions, and other configurations the Customer applies. The Customer is responsible for those access decisions.
- Service providers: we use vetted providers for cloud infrastructure and hosting, data storage, communication platforms (including Meta Platforms for WhatsApp features), email delivery, and service monitoring. These providers receive only the data reasonably required for their function and are subject to appropriate obligations. Further information about our service providers is available to Customers on legitimate request.
- Professional and legal recipients: advisers, auditors, insurers, and contractors who need information for legitimate business, legal, security, or compliance work and are subject to confidentiality duties.
- Legal requirements and protection: where we reasonably believe disclosure is necessary to comply with law, legal process, or an enforceable order; protect a person from harm; investigate fraud or abuse; secure the Service; or establish, exercise, or defend legal claims.
- Corporate transactions: as part of due diligence or a merger, financing, reorganisation, acquisition, insolvency, or sale of all or part of the business, with personal data used consistently with this Policy.
9. International Processing
Our service providers may operate infrastructure or support functions in more than one country, so personal data may be processed outside your state or country. Where applicable law restricts such processing, we use the contractual, organisational, or provider safeguards required for the relevant transfer. Region-specific hosting or localisation commitments apply only where stated in a signed agreement.
10. Retention and Deletion
We retain personal data only for as long as reasonably necessary for the purposes described in this Policy, including operating an active workspace, maintaining business and billing records, meeting legal and tax obligations, resolving disputes, preventing fraud, and securing the Service. When personal data is no longer needed, we delete or de-identify it within a reasonable period.
Customers control the records in their workspace and may delete supported records through the Service. A Customer may contact support@zippix.in to request an export or deletion, which we will evaluate against the Customer's authority, product capabilities, legal requirements, and contractual obligations. Limited information may be retained where required for legal, security, billing, or dispute purposes, and we may retain de-identified or aggregate data that no longer identifies an individual or Customer.
11. Your Choices and Rights
Depending on applicable law and Zippix's role, you may be entitled to:
- ask whether we process your personal data and request access to it;
- correct or update inaccurate or incomplete data;
- request deletion of data that is no longer needed or lawfully retained;
- withdraw consent where processing relies on consent;
- object to or restrict certain processing where the law provides that right;
- request an available, portable copy of information you provided;
- opt out of promotional communication; and
- raise a concern or grievance about how personal data is handled.
Zippix account users and website contacts: send a request to support@zippix.in from the email address associated with your account or enquiry. We may ask for information needed to verify identity, authority, and the scope of the request.
End clients, prospects, and WhatsApp recipients: if a financial advisory firm placed your data in Zippix, submit your request to that firm. The firm controls the record and decides how the request applies. Zippix will support a verified Customer request where required.
Rights are not absolute. We may retain or withhold information where permitted or required for another person's rights, legal compliance, fraud prevention, security, confidential business information, or legal claims. We will explain an applicable limitation where the law requires it.
12. Security
Zippix uses administrative, technical, and organisational measures designed to protect personal data from unauthorised access, loss, misuse, or alteration, including encryption in transit, encryption at rest at the infrastructure level, hashed credential storage, and layered access controls. An overview is available in the Security Center.
No internet service is completely secure. Customers must manage their own users, permissions, devices, and legal obligations appropriately. If you believe a Zippix account or data may have been compromised, contact support@zippix.in promptly.
13. Children
The Service is a business tool intended for financial advisory firms and their adult personnel. It is not directed to children, and Zippix does not knowingly collect personal data directly from children for its own purposes. A Customer that records information about a minor — for example, within a client family record — is responsible for having the authority required to do so. If you believe a child's personal data was provided to Zippix in error, contact support@zippix.in.
14. Third-Party Services and Links
The Service may link to or integrate with third-party services. Their privacy policies govern processing they perform for their own purposes. Customers should review third-party terms before enabling an integration. Disabling an integration may stop new data exchange but does not automatically delete information already held by that third party.
15. Changes to This Policy
We may update this Policy when the Service, law, providers, or our data practices change. We will update the effective date and provide reasonable notice of material changes through the website, Service, email, or another appropriate channel. Changes apply prospectively. Where law requires consent for a new purpose, we will request it before using personal data for that purpose.
16. Contact and Grievances
Questions, privacy requests, and grievances may be sent to:
Zippix Support Team
ANWIT AI, operating Zippix
B-509, Decora 9Square
Nana Mava Road
Rajkot, Gujarat 360003
India
Email: support@zippix.in
Please include enough information to identify the relevant account, workspace, Customer, or enquiry. Do not email passwords, government identifiers, bank details, authentication tokens, or copies of sensitive documents unless our support team gives you a secure method and specifically requests them.