Data Retention Policy
Effective date: May 4, 2026
1. Overview
Laxm OPC Pvt. Ltd.(“we”, “us”, “our”) is committed to data minimization and purpose limitation. This Data Retention Policy outlines how long we retain different categories of personal data and the criteria we use for deletion.
2. Data Retention Schedule
We retain personal data for the following periods:
Account Information
- Name, email, profile data: Retained until account deletion
- Login credentials (hashed): Retained until account deletion
- Account preferences: Retained until account deletion
Financial and Transaction Data
- Invoices and receipts: 7 years (legal requirement)
- Payment records: 7 years (tax compliance)
- Subscription history: 7 years (audit trail)
- Refund requests: 7 years (financial records)
Service Usage Data
- Domain scan results: 2 years from last scan
- Scan history and logs: 1 year from scan date
- API usage logs: 90 days
- User activity logs: 180 days
Technical and Analytics Data
- IP addresses: 90 days (security purposes)
- Browser/device information: 90 days
- Cookie data: Until cookie expiry or deletion
- Error logs: 30 days
Communications Data
- Support tickets: 2 years after resolution
- Contact form submissions: 1 year
- Email communications: 3 years (transactional records)
3. Deletion Triggers
We delete personal data in the following circumstances:
- Account Deletion: Upon user request, we initiate deletion within 30 days
- Automatic Cleanup: Data is automatically deleted when retention periods expire
- Service Termination: Data is deleted 90 days after account suspension
- Legal Requirements: Immediate deletion if legally required
- Data Breach: Compromised data is deleted or secured immediately
4. Anonymization and Aggregation
Before deletion, we may anonymize or aggregate data for statistical analysis. Anonymized data cannot be linked to individual users and is retained indefinitely for service improvement.
- Usage statistics and trends
- Performance metrics
- Aggregated demographic information
- Service optimization data
5. Legal and Regulatory Compliance
Our retention periods comply with:
- GDPR (EU): Data minimization and purpose limitation principles
- CCPA (California): Right to deletion and consumer choice
- IT Act (India): 7-year retention for financial records
- Accounting Standards: 7-year retention for audit purposes
6. Data Subject Rights
You have the right to:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate personal data
- Erasure: Request deletion of your personal data
- Portability: Receive your data in a machine-readable format
- Objection: Object to processing of your personal data
- Restriction: Limit processing of your personal data
7. Exceptions to Deletion
We may retain data beyond standard periods when:
- Required by law or regulatory order
- Necessary for legal proceedings or defense
- Needed to protect user rights or property
- Essential for public interest or scientific research
- Necessary for archiving purposes in public interest
8. Secure Data Destruction
When we delete personal data, we use industry-standard methods including cryptographic erasure, secure deletion protocols, and physical destruction of storage media when necessary. We maintain deletion logs for audit purposes.
9. Policy Updates
We may update this Data Retention Policy to reflect changes in legal requirements or our practices. We will notify users of material changes via email or through our Service.
10. Contact Us
For questions about data retention or to exercise your rights, contact us at [email protected].
