Privacy Policy
We value your privacy. Learn how HillTeck collects, uses, and protects your personal information.
Last Updated: March 11, 2026 | Effective Date: March 11, 2026Table of Contents
This Privacy Policy describes how Infinitiminds Technologies Private Limited (operating as HillTeck, "we", "us", or "our") collects, uses, and shares information about you when you use our website at hillteck.com, our Shopify app, or any of our services (collectively, the "Services").
By using our Services, you agree to the collection and use of information as described in this policy. If you do not agree with our practices, please do not use our Services.
1. Information We Collect
Information You Provide Directly
- Account Information: When you register, we collect your name, email address, phone number, and business details.
- Shopify Store Data: If you install our Shopify app, we access store data including orders, customer names, phone numbers, and delivery addresses — solely to provide our COD verification and communication services.
- Payment Information: Billing details for subscription plans (processed securely by third-party payment providers).
- Communications: Messages, support tickets, and feedback you send us.
Information Collected Automatically
- Usage Data: Pages visited, features used, click patterns, and session duration on our website and dashboard.
- Device & Browser Data: IP address, browser type, operating system, and device identifiers.
- Cookies & Tracking: See Section 5 for our full Cookies Policy.
Information from Third Parties
- Shopify: Order, customer, and store data via Shopify's Partner API.
- Meta / WhatsApp: Message delivery status and interaction data via WhatsApp Business API.
- Analytics Providers: Aggregated website traffic data from Google Analytics.
2. How We Use Your Information
We use the information we collect to:
- Provide, operate, and improve our Services (COD verification, WhatsApp automation, RTO reduction)
- Process and fulfill your subscription and billing
- Send transactional messages (order verifications, alerts, confirmations) on behalf of merchants
- Provide customer support and respond to inquiries
- Send marketing communications (with your consent; opt-out available at any time)
- Detect and prevent fraud, abuse, and security incidents
- Comply with legal obligations and enforce our Terms & Conditions
- Analyse usage patterns to improve platform features and user experience
Legal Basis for Processing (GDPR)
- Contract: Processing necessary to provide the Services you signed up for
- Legitimate Interests: Fraud prevention, security, analytics, and product improvement
- Consent: Marketing communications and non-essential cookies
- Legal Obligation: Compliance with applicable laws and regulations
3. Sharing & Disclosure
We do not sell, rent, or trade your personal information to third parties. We may share your information only in these circumstances:
With Shopify Merchants
If you are an end customer of a Shopify store using our services, your order-related data may be shared with that merchant for order verification and COD confirmation.
Service Providers
Trusted third-party providers (cloud hosting, payment processors, email services, analytics) who are contractually bound to protect your data and use it only for specified services.
Legal Requirements
We may disclose your information if required by law, court order, or government request, or to protect the rights and safety of HillTeck and its users.
Business Transfers
In the event of a merger, acquisition, or sale of assets, your data may be transferred. You will be notified of any such change.
4. Data Storage & Security
Our Security Measures Include:
- Encryption: TLS/SSL in transit; AES-256 at rest
- Access Controls: Role-based access (RBAC) — need-to-know basis only
- Infrastructure Security: Enterprise cloud with DDoS protection, firewalls, and intrusion detection
- Regular Audits: Periodic security assessments and vulnerability testing
- Data Retention: Data retained only as long as necessary; purged within 90 days of account deletion
5. Cookies & Tracking Technologies
We use cookies to enhance your experience and analyze usage. Types of cookies:
- Essential: Required for site functionality (cannot be disabled)
- Analytics: Aggregated usage data via Google Analytics
- Functional: Remember your preferences and settings
- Marketing: Relevant ads (only with your consent)
You can manage or disable cookies through your browser settings. Some features may be affected if cookies are disabled.
6. Third-Party Services
- Shopify: Order data via Shopify Partner API — see Shopify's Privacy Policy
- Meta / WhatsApp: Official Cloud API — see WhatsApp's Privacy Policy
- Payment Processors: Razorpay / Stripe — PCI DSS compliant; we never store card details
- Google Analytics: Opt out via GA Opt-out Add-on
7. Your Rights & Choices
Depending on your location (GDPR, CCPA, India DPDP Act), you may have the right to:
- Access your personal data
- Correct inaccurate or incomplete data
- Delete your data (subject to legal exceptions)
- Data Portability — receive your data in machine-readable format
- Restrict Processing under certain circumstances
- Object to direct marketing at any time
- Withdraw Consent where processing is consent-based
To exercise your rights, contact us at [email protected]. We respond within 30 days.
8. Children's Privacy
Our Services are not directed at individuals under 18. We do not knowingly collect data from minors. If you believe a child has provided us with personal information, contact us immediately at [email protected].
9. International Data Transfers
HillTeck is operated by Infinitiminds Technologies Private Limited, based in India. If you access our Services from outside India, your data may be transferred and processed in India or other jurisdictions. We implement appropriate safeguards including Standard Contractual Clauses and data processing agreements to ensure adequate data protection.
10. Changes to This Policy
We may update this Privacy Policy periodically. When material changes are made, we will update the "Last Updated" date, post a prominent notice on our website, and notify registered users by email. Continued use of our Services constitutes acceptance of the updated policy.
11. Contact Us
Get in Touch
Infinitiminds Technologies Private Limited
(Operating as HillTeck)
Email: [email protected]
Website: hillteck.com
We aim to respond to all privacy-related inquiries within 30 business days.