Legal

Privacy Policy

Last updated: May 1, 2025

1. Information We Collect

We collect information you provide directly: your name, email, company name, and payment method when you create an account or purchase a plan. We also collect information about how you use ProposalBolt — pages visited, proposals created, time spent — to improve the product. When your clients view proposals, we collect their IP address, device type, and interaction data (sections read, time spent, signature) for the audit trail you are legally required to provide.

2. How We Use Your Information

We use your information to provide and improve the ProposalBolt service; to process payments via Razorpay or Stripe (we never store card numbers); to send transactional emails (proposal delivered, signed, payment received); to send product updates and security alerts; and to generate the legal audit trail on e-signatures. We do not sell your data to third parties. Ever.

3. Data Storage and Security

All data is stored on AWS in the ap-south-1 (Mumbai) region. Data is encrypted at rest using AES-256 and in transit using TLS 1.3. We perform daily encrypted backups with 30-day retention. Access to production data is restricted to authorized personnel only and requires MFA. We undergo annual third-party security audits.

4. Your Client's Data

When your clients view, sign, or pay on proposals you send, you are the data controller and ProposalBolt acts as a data processor. The signature audit trail (IP, timestamp, device, geolocation) is legally required under IT Act 2000. Client payment data flows directly through Razorpay/Stripe and is never stored on ProposalBolt's servers.

5. Cookies

ProposalBolt uses essential cookies for authentication and session management. We use a single analytics cookie (PostHog, hosted in EU) to understand aggregate product usage. We use no advertising cookies, no cross-site tracking, and no data is sold to ad networks. You can opt out of analytics cookies in Account Settings.

6. Data Retention

We retain your account data for the duration of your account plus 90 days after deletion (to handle billing disputes). Proposal data, signatures, and audit trails are retained for 7 years as required for legal compliance. You may export all your data at any time from Settings → Account → Export Data.

7. Your Rights

You have the right to access, correct, export, or delete your personal data. To exercise these rights, email privacy@proposalbolt.com. We will respond within 30 days. For Indian users, these rights are governed by the Digital Personal Data Protection Act, 2023.

8. Contact

For privacy questions, contact us at privacy@proposalbolt.com or at ProposalBolt Technologies Pvt. Ltd., Bandra Kurla Complex, Mumbai 400051, India.