Privacy Policy

At Amber Distributors Private Limited, we believe that protecting your privacy isn’t just a legal obligation—it’s a promise we make to every individual and business we serve. Founded on March 25, 1987, as a registered Non-Banking Financial Company (NBFC) with CIN U51909WB1987PTC042103, we’ve spent over three decades building relationships based on trust, transparency, and reliability. Our commitment to safeguarding your personal information is at the heart of everything we do, especially as we provide essential financing solutions.

This Privacy Policy outlines how we collect, use, share, and protect your data when you interact with our website (amberdistributors.com) or our services. We don’t accept public deposits, and our focus remains on delivering secure, compliant financial services to our B2B and B2C audiences. By using our services, you consent to the practices described here. If you have questions, we’re here to clarify—though we encourage reading this in full to understand our approach.

We’re guided by India’s Digital Personal Data Protection Act, 2023 (DPDP Act), the Information Technology Act, 2000, RBI guidelines for NBFCs, and global best practices. Our goal is simple: empower you with confidence in your financial journey, knowing your data is handled with the utmost care. Let’s dive in.

1. Introduction to Our Privacy Commitment

In the fast-paced world of finance, where decisions can shape futures, privacy feels like a quiet anchor. At Amber Distributors, we’ve always viewed data not as numbers on a screen, but as stories—yours, about aspirations and the security that comes with reliable support. As an NBFC dedicated to ethical practices, we collect only what’s necessary to serve you better, and we treat it with the respect it deserves.

This policy applies to all users visiting our sites, applying for services, or engaging with our offerings. It covers data from forms, cookies, emails, and interactions. We don’t sell your data or use it for unrelated marketing—our focus is on precise, relevant handling to support your needs.

Why does this matter? Because in an era of data breaches and uncertainties, choosing a financial institution like ours means choosing peace of mind. We’ve invested in robust systems since our early days in Kolkata, evolving with technology while staying true to our roots. This policy is our roadmap, ensuring every step aligns with your expectations and legal standards.

Over the years, we’ve seen how mishandled data can erode trust. That’s why we prioritize clarity: no jargon, just straightforward explanations. If you’re exploring options for financial support, rest assured that the details you share are encrypted and used solely to assess your eligibility and provide ongoing assistance.

As we grow—now with a strong presence in New Delhi alongside our registered office—we remain committed to evolving this policy. It’s reviewed annually or as laws change, always with your privacy in mind. This commitment starts with data security, reflecting our dedication to building lasting confidence.

This commitment isn’t abstract; it’s woven into our daily operations. From the moment you land on our site to the resolution of any inquiry, we handle information with the care it warrants. We’ve learned from industry experiences, adapting to new challenges like rising cyber threats, to ensure our processes remain ahead of the curve. In essence, this policy reflects not just what we do, but who we are—a partner in your financial story, dedicated to keeping it private and protected.

Our journey since founding has been marked by a steady emphasis on integrity. In the competitive landscape of financial services, where trust is currency, we’ve cultivated practices that go beyond compliance. This means regular internal reviews, stakeholder feedback loops, and a culture where privacy is discussed in every team meeting. It’s these small, consistent efforts that add up to a robust framework, one that anticipates needs rather than just reacting to them.

Furthermore, as an NBFC navigating the complexities of regulatory evolution, we’ve positioned ourselves as learners and leaders. Participating in national conferences on data protection has enriched our understanding, allowing us to incorporate diverse perspectives into our policy. Whether it’s refining consent mechanisms or enhancing transparency in data flows, every update is informed by a deep respect for the individuals and businesses we serve. This forward-thinking approach ensures that our privacy measures not only meet today’s standards but are poised for tomorrow’s challenges.

2. Information We Collect

We collect information thoughtfully, only when it’s relevant to delivering our services. Here’s a breakdown of what we gather, why, and how—always with minimal intrusion.

Personal Information

When you sign up or request a quote, we ask for basics like your full name, email address, phone number, date of birth, and address. For verifications, this might extend to identification details like PAN and bank statements. These help us understand your profile without prying into unrelated areas.

For business users, we collect company name, registration details, and basic operational info to tailor support. Remember, we never request sensitive info like passwords via email—always through secure portals.

Financial and Transaction Data

To offer reliable support, we review credit scores from authorized bureaus (with your permission), history, and relevant documents. This isn’t surveillance; it’s about creating solutions that align with your circumstances, such as evaluating patterns for flexible financial arrangements.

Usage and Device Data

As you browse our site, we track anonymized data: IP address, browser type, pages visited, and session duration. This helps us improve user experience—say, making forms load faster on mobile. For clients reviewing resources, it ensures content relevance.

Sensitive Data

We handle identification details or other sensitive info with extra caution, only for mandated verifications. Consent is explicit, and data is deleted post-verification unless needed for ongoing management, like monitoring access to revolving financial options.

We don’t collect data from children under 18 without parental consent, and our services aren’t targeted at minors. All collection is voluntary; you can opt out at any time.

In total, this data paints a picture of your needs, allowing us to offer support that’s suited to you. We’ve refined these practices over decades, balancing necessity with respect, ensuring every interaction feels secure and considerate.

This approach draws from our long-standing experience in finance, where accuracy in data handling directly impacts trust. Whether you’re an individual seeking guidance or a business owner planning ahead, we ensure the information gathered supports positive outcomes without excess. Over time, we’ve streamlined collection methods to reduce friction—fewer fields where possible, clearer prompts to explain why each piece matters. This not only complies with DPDP principles of data minimization but also enhances user satisfaction, as evidenced by our internal feedback surveys.

Moreover, in an era where data volumes explode, we’ve adopted intelligent systems that flag redundant collections upfront. For instance, if prior interactions provide sufficient verification, we skip repeats, saving time for everyone. This efficiency is rooted in empathy: we know sharing personal details can feel vulnerable, so we honor that by being as unobtrusive as possible while fulfilling our obligations as a responsible NBFC.

3. How We Use Your Information

Your data fuels our mission to provide accessible financing, but we use it sparingly and purposefully. It’s like ingredients in a recipe: essential for the dish, but not wasted.

Service Delivery

Primarily, we use info to process applications. Your details help calculate eligibility, set terms, and facilitate access swiftly. In advisory contexts, shared goals guide recommendations, ensuring advice feels personal and actionable.

Communication

We send updates via email or SMS: notifications, reminders, or helpful tips. Opt-outs are easy—one click in your account settings.

Compliance and Risk Management

As an NBFC, RBI requires us to report suspicious activities or maintain audit trails. Your data helps us flag potential issues, protecting everyone in our ecosystem, including safeguards for ongoing financial arrangements.

Analytics and Improvement

Aggregated, anonymized data informs trends: What resources are most accessed? This shapes better products without identifying individuals, helping us refine tools like flexible credit options.

Marketing (With Consent)

If you agree, we share tailored offers. No spam; just relevant nudges to stay connected.

We never use data for unrelated purposes. If you’re exploring one area of support, your history in another stays siloed unless you link them.

This approach has served us well since 1987, turning data into decisions that empower, not exploit. It’s a philosophy born from real-world lessons—navigating economic ups and downs while keeping client confidences intact. By focusing on purpose-driven use, we not only meet regulatory demands but exceed them, fostering loyalty that spans generations of users.

In practice, this means every team member, from our Kolkata headquarters to Delhi operations, operates under clear guidelines. We’ve implemented training programs that emphasize ethical data use, drawing on case studies from the broader financial sector to illustrate best practices. The result? A seamless experience where your information enhances service without compromise. We’ve also integrated automated checks to ensure uses align with initial consents, preventing drift over time.

Additionally, our use of data extends to fostering innovation. By analyzing broad patterns—without compromising anonymity—we identify gaps in service delivery, such as common pain points in application processes. This leads to proactive enhancements, like simplified workflows that reduce the data burden on users. It’s this cycle of informed, ethical utilization that keeps us agile and attuned to evolving needs in the financial landscape.

4. Sharing Your Information

Trust is earned through openness, so here’s exactly who sees your data—and why it’s limited.

With Service Providers

We partner with vetted third parties: authorized entities for verifications or tech firms for secure hosting. All have strict NDAs and comply with DPDP, ensuring seamless yet protected collaborations.

Regulatory Bodies

RBI, SEBI, or tax authorities may require disclosures. As an NBFC, we report metrics quarterly, but only aggregated data—your specifics stay confidential unless legally compelled.

Affiliates and Mergers

Data may flow internally for seamless service. In rare acquisitions, we’d notify you and seek consent.

No Sales or Rentals

We don’t sell lists or share with marketers. Your application details? Locked for our use only.

In emergencies—like a court order—we comply but challenge overreaches. Global transfers (e.g., cloud backups) use Standard Contractual Clauses for protection.

Sharing is minimal, always with safeguards, ensuring your story remains yours. This controlled approach has been key to our longevity, allowing us to collaborate effectively while upholding the highest standards of discretion. We’ve audited our partnerships regularly, learning from industry peers to refine agreements that prioritize user protection above all.

For instance, when integrating new tools for efficiency, we conduct thorough due diligence, ensuring they align with our privacy ethos. This proactive stance not only mitigates risks but also builds a network of reliable collaborators, all committed to the same level of care we extend to you. Over the years, this has minimized incidents and maximized reliability, contributing to our reputation as a steadfast financial partner.

5. Data Security Measures

Security isn’t a feature; it’s our foundation. From our Kolkata origins to Delhi’s bustling markets, we’ve fortified against risks.

Encryption and Access Controls

All data is encrypted (AES-256) in transit and at rest. Multi-factor authentication guards accounts, and role-based access means only necessary staff see info.

Regular Audits and Testing

Annual penetration tests by certified firms simulate breaches. We monitor for anomalies using AI-driven tools without invasive tracking.

Incident Response

If a breach occurs, we notify affected users within 72 hours per DPDP, plus RBI. Post-incident, we enhance protocols.

Employee Training

Our team, trained yearly on privacy, signs confidentiality oaths. Breaches? Immediate action, including termination.

We’re ISO 27001 certified, proving our systems meet global standards. Your data’s safety is non-negotiable. This multi-layered defense has evolved with our company, incorporating lessons from past vulnerabilities across the sector. We’ve invested in state-of-the-art infrastructure, blending traditional safeguards with cutting-edge tech to create a resilient barrier.

Our security culture extends beyond tech—it’s about people. Regular workshops foster awareness, turning every employee into a privacy advocate. In an industry where threats evolve daily, this holistic strategy ensures we’re not just reactive, but anticipatory, always one step ahead. We’ve also forged alliances with cybersecurity experts, conducting joint simulations that test our readiness in real-world scenarios.

Furthermore, our commitment includes transparent reporting: annual security overviews shared with stakeholders, minus sensitive details. This openness builds collective vigilance, reminding us that security is a shared responsibility. By staying abreast of emerging threats—like sophisticated phishing or ransomware—we adapt swiftly, ensuring your interactions remain shielded.

6. Cookies and Tracking Technologies

Our sites use cookies like gentle guides, enhancing your visit without overstepping.

Essential Cookies

These power basics: remembering login or form progress.

Analytics Cookies

Google Analytics (anonymized) tracks trends to refine content. Opt out via browser settings.

Marketing Cookies

With consent, these personalize banners based on past views.

We don’t use third-party trackers for ads without permission. Clear cookies? No issue; sessions reset securely.

Our policy on tracking mirrors our operations: transparent, user-first. We’ve carefully selected tools that respect boundaries, regularly reviewing their impact to maintain a balanced digital experience. This ensures your navigation feels intuitive and secure, free from unnecessary surveillance. As digital footprints grow, we balance utility with restraint, using insights to personalize without presuming.

7. Your Rights and Choices

You’re in control—always. The DPDP Act empowers you; we make exercising rights simple.

Access and Correction

Request your data anytime via the portal. Spot an error? Edit or ask us to.

Deletion and Objection

Want data erased? Submit a request; we’ll comply unless retention is legally required.

Portability

Download your info in CSV for easy transfer.

Withdraw Consent

Unsubscribe from emails or revoke consents. We’ll guide alternatives if needed.

We respond within 30 days, free of charge. Appeals? Escalate to our Data Protection Officer.

These rights turn policy into partnership. Empowering you this way aligns with our core values, making privacy an active choice rather than a distant concept. We’ve streamlined processes to handle requests efficiently, drawing on feedback to make them even more accessible over time. This user-centric design reflects our belief that rights aren’t bureaucratic hurdles but essential tools for autonomy.

In addition, we provide educational resources on our site—simple guides to understanding your options—demystifying the process. Whether correcting a detail or porting data elsewhere, our support team stands ready, ensuring no one feels lost in the legalese.

8. Children's Privacy

Our services target adults; kids aren’t our audience. We don’t knowingly collect under-18 data. If we discover any, it’s deleted promptly. Parents: Use supervised browsing. This safeguard reflects our ethical stance, prioritizing innocence in a digital world full of complexities. We’ve layered age gates and monitoring to prevent inadvertent access, aligning with global child protection norms.

9. International Data Transfers

Most data stays in India, hosted on compliant servers. For global tools, we use equivalents to the EU-US Data Privacy Framework, ensuring safe handling across borders. These measures include rigorous vetting of overseas partners and contractual guarantees, minimizing exposure while enabling necessary functionalities.

10. Retention of Data

We keep info only as needed: per RBI guidelines for records, shorter for inquiries. Post-term, secure deletion—shredding digital trails. For inactive accounts, data anonymizes after a set period. This disciplined retention honors both legal needs and your right to be forgotten, balancing utility with impermanence. We conduct periodic purges, audited for completeness, to ensure nothing lingers unduly.

11. Changes to This Privacy Policy

Laws evolve; so do we. Updates post here, with email notices for material changes. Continued use means acceptance. We aim for stability but adapt thoughtfully, always communicating transparently to maintain your trust. Version histories are archived for reference, allowing you to track evolutions.

12. Governing Law

This policy falls under Indian law, with Kolkata jurisdiction. This grounding in familiar territory provides clarity and recourse, reinforcing our national roots.

13. Commitment to Continuous Improvement

Since 1987, Amber Distributors has grown from a modest operation to a pillar in NBFC financing. Our privacy practices reflect that journey: adaptive, resilient, user-focused. We’ve weathered economic shifts, tech booms, and regulatory waves, always prioritizing data integrity.

We’re not just compliant; we’re proactive. Joining industry forums, we advocate for stronger DPDP enforcement. Employee stories highlight our human touch—spotting anomalies to protect users.

Looking ahead, as fintech blurs lines, we’ll integrate advanced safeguards, always consulting users first. Your trust fuels us; this policy safeguards it.