This policy explains how Divine Branding (“Divine,” “we,” “us”) collects, uses, and safeguards personal data when you visit our website or get in touch with us. We’ve drafted it to align with India’s Digital Personal Data Protection Act, 2023 (DPDP Act) and to be friendly to GDPR principles for visitors from the EU/UK.
1. Data we collect
- From the contact form: name, email address, phone number (optional), services of interest, budget range (optional), and the message you send us.
- For spam protection: your IP address and a hCaptcha token (when configured), retained briefly for abuse detection.
- From your browser: cookies for essential site function, plus analytics cookies only if you accept them via the consent banner.
2. How we use it
- To respond to your enquiry and discuss potential work.
- For internal record-keeping of leads and projects.
- To improve the website—we look at aggregated, anonymised analytics only when consent is given.
We do not sell your data. We do not send unsolicited marketing emails. We do not share your information with third parties for their own marketing.
3. Cookies
Essential cookies (session, CSRF token) are required for the site to function and are always on. Analytics cookies (e.g. Google Analytics, when configured) only run if you click “Accept” on the cookie banner. Functional storage — like saving a contact-form draft to your browser’s sessionStorage— stays on your device and is never sent to our servers. See our cookie policy for the full list.
4. Third-party services
- Google Analytics — if enabled and consented to, GA4 receives anonymised page-view and event data.
- hCaptcha — processes a small token to verify form submissions are human.
- Email providers — we may use a transactional email service to deliver enquiry notifications to our team.
5. Your rights
Under the DPDP Act and GDPR principles, you have the right to:
- access the personal data we hold about you,
- correct inaccurate or outdated data,
- request deletion of your data,
- withdraw consent for analytics or marketing at any time.
To exercise any of these rights, email business@divinebranding.in and we’ll respond within 30 days.
6. Retention
- Enquiry data from the contact form: retained for 24 months from the date of last interaction, then deleted unless you become a client.
- Web server logs (IP, request line): retained for 90 days for security and abuse monitoring, then purged.
- Client project records: retained for the duration of the engagement and 7 years after, in line with standard business and tax record-keeping requirements.
7. Security
We use TLS for all data in transit, restrict admin access to named team members, and apply standard hardening to our hosting infrastructure. No system is perfectly secure, but we treat the data you share with us as we’d treat our own.
8. Contact
For data protection queries, write to us at business@divinebranding.in. Postal address is on the contact page.
9. Changes to this policy
We may update this policy as our practices evolve or as the law changes. Material updates will be flagged on the homepage for at least 30 days. The “last updated” date at the top always reflects the current version.