Privacy Policy

Your privacy matters to us. This policy explains what data we collect, why we collect it, and how we protect it.

📅 Last updated: 25 May 2025 📋 Effective: 1 January 2022
Your Data. Your Rights.
🔒 Bank-Grade Encryption
GDPR Aligned
🇮🇳 IT Act 2000 Compliant
🚫 Never Sold to Third Parties
📧 Transparent Data Use

Jums World ("we", "us", "our") is a referral marketing platform operated by Jums World Private Limited, a company registered under the Companies Act, 2013 with its registered office in Chennai, Tamil Nadu, India.

This Privacy Policy describes how we collect, use, disclose, and safeguard your personal information when you visit our website (jumsworld.com), use our mobile application, or otherwise interact with our services (collectively, the "Platform").

By registering or using the Platform, you consent to the practices described in this Policy. If you do not agree, please do not use our services.

💡
Plain-English Summary: We collect only what we need to run the platform and pay you. We never sell your data. You can request deletion at any time by emailing privacy@jumsworld.com.

We collect information in three ways:

2.1 Information You Provide

Category Examples When Collected
Account details Full name, email address, mobile number, password (hashed) Registration
Profile data Profile photo, city, preferred language Profile setup
KYC / Identity PAN card number, Aadhaar (masked), bank account / UPI details Payout verification
Communications Support chat messages, email queries, feedback forms Customer support

2.2 Information Collected Automatically

  • Device & technical data — IP address, browser type, OS version, device model
  • Usage data — pages visited, referral links clicked, products viewed, time spent on the platform
  • Transaction data — referral commissions earned, withdrawal amounts, dates, and status
  • Location data — country and state (derived from IP); precise location only if you grant permission in the app
  • Log data — server logs including error reports, access timestamps

2.3 Information from Third Parties

  • Social login data (name, email, profile picture) if you sign in via Google or Facebook
  • Payment gateway confirmation data from Razorpay / PayU for withdrawal verification
  • Fraud-detection signals from our payment and security partners

We use the information collected to:

👤
Create & manage your account

Authenticate you, personalise your dashboard, and keep your profile up to date.

💸
Process commissions & payouts

Track referral sales, calculate earnings, verify identity, and transfer funds to your UPI or bank.

📊
Improve the platform

Analyse usage patterns to fix bugs, optimise performance, and develop new features.

📣
Send communications

Transaction confirmations, earnings alerts, product updates, and occasional promotional offers (opt-out anytime).

🛡
Prevent fraud & abuse

Detect fake referrals, unauthorised access, and other fraudulent activities to protect the community.

Legal & compliance

Meet obligations under Indian tax law (TDS on commissions), the IT Act, 2000, and other applicable regulations.

🚫
We do not sell, rent, or trade your personal data to any third party for marketing purposes.

We may share your data only in the following limited circumstances:

  • Service providers — Cloud hosting (AWS), payment gateways (Razorpay / PayU), email services (SendGrid), and analytics tools (Google Analytics) that process data on our behalf under strict data-processing agreements.
  • Verified sellers & brand partners — Only your referral activity (not personal contact details) is shared with brand partners to validate commission claims.
  • Legal authorities — When required by law, court order, or government directive under the Information Technology Act, 2000 or other applicable Indian law.
  • Business transfers — In the event of a merger, acquisition, or sale of assets, your data may be transferred to the successor entity, subject to equivalent privacy protections.
  • Consent — In any other case, only with your explicit prior consent.

We implement industry-standard technical and organisational measures to protect your personal data against unauthorised access, alteration, disclosure, or destruction:

🔐
TLS 1.3 Encryption

All data transmitted between your device and our servers is encrypted in transit.

🗄
AES-256 at Rest

Sensitive data including KYC and financial records is encrypted at rest.

🔑
Hashed Passwords

Passwords are stored as bcrypt hashes — never in plain text.

🛡
Access Controls

Role-based access ensures only authorised staff can access personal data, with full audit logs.

📋
Regular Audits

Quarterly security audits and annual penetration testing by independent firms.

Breach Notification

In the unlikely event of a data breach, we will notify affected users within 72 hours as required by law.

While we take every reasonable precaution, no method of internet transmission or electronic storage is 100% secure. We encourage you to use a strong, unique password and enable two-factor authentication on your account.

We retain your personal data for as long as your account is active or as needed to provide services. Specific retention periods:

Data Type Retention Period Reason
Account & profile data Duration of account + 2 years after deletion Dispute resolution
Transaction & commission records 7 years Income Tax Act requirements (TDS records)
KYC documents 5 years after last transaction PMLA / RBI guidelines
Support communications 3 years Quality assurance & legal disputes
Server logs & usage analytics 90 days (rolling) Security monitoring
Marketing preferences Until opt-out or account deletion Consent management

After the applicable retention period, data is securely deleted or anonymised so it can no longer be linked to you.

Under the Digital Personal Data Protection Act, 2023 (DPDPA) and other applicable Indian law, you have the following rights:

🔍

Right to Access

Request a copy of the personal data we hold about you.

Right to Correction

Ask us to correct inaccurate or incomplete personal data.

🗑

Right to Erasure

Request deletion of your account and personal data (subject to legal retention requirements).

📦

Right to Portability

Receive your data in a structured, machine-readable format (JSON / CSV).

🛑

Right to Withdraw Consent

Opt out of marketing communications at any time via account settings or the unsubscribe link.

💬

Right to Grievance Redress

Lodge a complaint with our Data Protection Officer within 48 hours of raising a concern with us.

To exercise any of these rights, email privacy@jumsworld.com with the subject line "Data Request — [Your Registered Email]". We will respond within 30 days.

We use cookies and similar technologies to operate the Platform, remember your preferences, and measure performance. Here is what we use and why:

Cookie Type Purpose Can You Opt Out?
Strictly Necessary Session management, authentication, CSRF protection No — required for the site to function
Functional Remembering language preferences, login state Yes — via browser settings
Analytical Google Analytics — page views, session duration, referral sources Yes — via cookie settings or browser opt-out
Referral Tracking Tracks which referral link led to a purchase so commissions are correctly attributed No — core to the commission system

You can manage cookie preferences via your browser settings. Note that disabling certain cookies may affect the functionality of the Platform.

To process commission withdrawals, we are required under Indian financial regulations to collect Know Your Customer (KYC) details:

  • PAN Card — mandatory for earnings above ₹50,000/year (TDS deduction under Section 194-O)
  • Aadhaar (masked) — for identity verification only; the full 12-digit number is never stored
  • Bank account / UPI ID — for payout processing via Razorpay or direct IMPS transfer
🔒
All KYC documents are encrypted (AES-256) and accessible only to our compliance team. We use Razorpay's PCI-DSS Level 1 certified infrastructure — we never store raw card details on our own servers.

The Jums World Platform is intended for users who are 18 years of age or older. We do not knowingly collect personal information from minors under 18.

If we discover that a minor has provided us with personal information, we will promptly delete that data and terminate the associated account. If you believe a minor has registered on our Platform, please contact us immediately at privacy@jumsworld.com.

Our Platform may contain links to third-party websites, brand partner pages, or social media platforms. We have no control over the content or privacy practices of those sites and are not responsible for their privacy policies.

We encourage you to review the privacy policy of every external site you visit. Our policy applies solely to information collected on the Jums World Platform.

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or business operations. When we make material changes we will:

  • Update the "Last updated" date at the top of this page
  • Send an in-app notification and/or email to all registered users
  • For significant changes, request fresh consent before processing your data under the new terms

Continued use of the Platform after the effective date of a revised policy constitutes your acceptance of the changes.

If you have any questions, concerns, or requests regarding this Privacy Policy or the handling of your personal data, please reach out to our Data Protection Officer:

📧
Email (Privacy)
info.jumsworld@gmail.com
📞
Phone (Support)
+91 93846 22369
📍
Registered Address
Jums World Private Limited, 3/1116, MTP ROAD, Odderpalayam, Annur
Coimbatore - 641653, Tamil Nadu
Response Time
Within 30 days of receipt