Privacy Policy
How OGGREENIA Trading collects, uses, stores, and protects your business information.
1. Introduction
OGGREENIA Trading ("Company," "we," "us," "our"), registered at Defence Colony, Sulur Airforce, Kangayampalayam, Coimbatore, Tamil Nadu – 641401, India (GSTIN: 33COZPB8887B1Z, IEC: COZPB8887B), is committed to protecting the privacy and security of personal and business data submitted to us through our website, inquiry forms, email, WhatsApp Business, or any other channel.
This Privacy Policy explains what data we collect, why we collect it, how we use it, and what rights you have over it. It applies to all visitors, prospective buyers, customers, and trade partners (collectively, "you," "your").
2. Data We Collect
We collect the following categories of information when you interact with our website or business channels:
a) Contact & Business Identity Data: Full name, job title, company name, business registration number (GSTIN / trade licence), Import Export Code (IEC), email address, phone number, WhatsApp number, and mailing/billing address.
b) Trade & Transaction Data: Products of interest, order volumes, destination countries, incoterms preference, target pricing, frequency of purchase, and sample requests.
c) Compliance & Certification Data: Food safety certifications, third-party audit reports, or accreditation documents voluntarily submitted by supplier partners.
d) Website Usage Data: IP address, browser type, device type, pages visited, time on page, referring URL, and click behaviour — collected automatically via server logs and analytics tools.
e) Communication Data: Emails, WhatsApp messages, or any written correspondence with our team.
3. How We Use Your Data
We use your data solely for legitimate B2B business purposes:
- Responding to product inquiries, quotation requests, and order confirmations
- Processing and fulfilling domestic and export orders
- Sending proforma invoices, shipping documents, and compliance certificates
- Conducting pre-shipment inspection coordination and logistics communication
- Sending trade updates, new product launches, or relevant regulatory changes (with your consent)
- Improving our website content, form design, and customer journey
- Complying with Indian customs, GST, and export regulations (including DGFT and ECGC requirements)
- Fraud prevention and due-diligence screening of trade partners
We do not sell, rent, or monetise your personal or business data to third parties.
4. Legal Basis for Processing
For customers in the European Union (EU) and European Economic Area (EEA), our processing is based on:
- Contract performance — processing your inquiry or fulfilling your order (Art. 6(1)(b) GDPR)
- Legitimate interests — improving our services, preventing fraud, and maintaining trade relationships (Art. 6(1)(f) GDPR)
- Legal obligation — complying with export control, customs, and tax laws (Art. 6(1)(c) GDPR)
- Consent — for marketing communications; you may withdraw consent at any time (Art. 6(1)(a) GDPR)
For Indian residents, processing is governed by the Information Technology Act, 2000, the IT (Amendment) Act, 2008, and the Digital Personal Data Protection Act, 2023 (DPDPA 2023) to the extent applicable.
5. Data Sharing & Third Parties
We share your data only to the extent necessary to conduct our business:
- Freight forwarders & shipping lines — for export documentation (consignee name, address, contact)
- Customs brokers & clearing agents — for import/export clearance at Indian ports
- Inspection agencies (e.g., SGS, Bureau Veritas) — when a pre-shipment inspection is arranged
- Banking & payment institutions — for processing wire transfers, LC, and financial compliance (KYC/AML)
- Cloud service providers — our website data is stored on secure hosted infrastructure; providers are contractually bound to data protection standards
- Regulatory authorities — DGFT, CBIC, GST authorities, ECGC as required by Indian law
All third-party service providers are assessed for data security compliance before engagement.
6. International Data Transfers
As an export-oriented business, we necessarily transfer trade-related data across borders (e.g., sharing shipping documents with overseas buyers or their agents). Where EU/EEA personal data is transferred to India or other countries, we ensure appropriate safeguards are in place, including Standard Contractual Clauses (SCCs) where required under GDPR.
7. Data Retention
We retain personal and business data for as long as necessary to fulfil the purposes outlined above and to comply with legal and regulatory obligations:
- Active customer / trade partner records: for the duration of the business relationship plus 7 years (to comply with Indian tax and accounting laws)
- Export documentation: 7 years from the date of shipment (as required by DGFT and Customs regulations)
- Inquiry records without a resulting transaction: 12 months from the date of inquiry
- Marketing consent records: until withdrawal of consent or 3 years of inactivity
8. Cookies & Website Analytics
Our website uses essential cookies required for site functionality (session management, form security). We do not use advertising or behavioural tracking cookies.
We may use privacy-respecting analytics tools to understand aggregate website usage (page views, device types, geographic region). These tools are configured to anonymise IP addresses and not build individual user profiles.
By continuing to use our site, you consent to essential cookies. You may adjust cookie preferences in your browser settings; disabling essential cookies may impair form submission functionality.
9. Data Security
We implement appropriate technical and organisational measures to protect your data against unauthorised access, loss, alteration, or disclosure:
- HTTPS/TLS encryption for all data transmitted through our website
- Access controls — data is accessible only to authorised team members on a need-to-know basis
- Secure cloud hosting with regular backups and monitoring
- Employee data handling training and confidentiality obligations
No system can guarantee absolute security. In the event of a data breach affecting your rights, we will notify you as required by applicable law.
10. Your Rights
Under GDPR (EU/EEA individuals): You have the right to access, rectify, erase, restrict processing of, and port your personal data. You may object to processing based on legitimate interests and withdraw marketing consent at any time. You have the right to lodge a complaint with your national data protection supervisory authority.
Under DPDPA 2023 (Indian individuals): You have the right to access information about data processing, correct inaccurate data, and raise grievances with us or the Data Protection Board of India.
To exercise any of these rights, contact us using the details in Section 12 below. We will respond within 30 days (or as required by applicable law).
11. Children's Privacy
Our services are directed exclusively at B2B trade professionals and businesses. We do not knowingly collect personal data from individuals under 18 years of age. If you believe we have inadvertently collected such data, please contact us immediately and we will delete it.
12. Contact & Grievance Redressal
For privacy-related questions, data access requests, or to report a concern, contact our designated Privacy Point of Contact:
OGGREENIA Trading
Attn: Privacy / Data Grievance Officer
Defence Colony, Sulur Airforce, Kangayampalayam,
Coimbatore, Tamil Nadu – 641401, India.
WhatsApp Business: +91 99407 86497
We aim to acknowledge all privacy queries within 5 business days and resolve them within 30 days.
13. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable law. The "Last updated" date at the top of this page indicates when the most recent revision was made. Material changes will be communicated via our website or by direct notification where required by law.