Privacy Policy
Indian VCs (www.indianvcs.com)
Operated by DealQuick Labs Private Limited, CIN U70200KA2025PTC200427
364, Site no. 26, Laskar, Hosur Road, Koramangala, Adugodi, Bangalore 560030, Karnataka, India
Contact: [email protected]
Last updated: 16 September 2026
1. What this policy covers
This policy explains what personal data Indian VCs collects when you use the website, why we collect it, who we share it with, how long we keep it, and the choices you have. It applies to everyone who visits the site, wherever they are.
Indian VCs is a directory and information platform about venture capital in India. We are not an investment adviser, broker or fund manager and we do not collect financial account details.
2. Who is responsible
DealQuick Labs Private Limited is the Data Fiduciary under India's Digital Personal Data Protection Act, 2023 and the controller under the EU and UK GDPR. Questions, requests and complaints go to [email protected]. Our contact for data protection matters is the founder of Indian VCs, reachable at [email protected].
3. The data we collect and why
- Pages you view, searches you run, buttons you click, time on page, referring site, device type, browser, coarse location from IP. From: Analytics (PostHog, Google Analytics, Microsoft Clarity) once you accept analytics cookies. Why: To understand which funds, cities and tools people use so we can improve the directory. Basis: Your consent, which you can withdraw at any time.
- Anonymous page counts with no cookies and no identifier. From: Cloudflare Web Analytics for every visitor, and PostHog for visitors who have not accepted analytics cookies. Why: Aggregate traffic statistics only. This data cannot be linked back to you. Basis: Not personal data; no consent needed.
- Recordings of how a page was used (mouse movement, scrolling, clicks; text you type is masked). From: PostHog session replay and Microsoft Clarity recordings and heatmaps, only after you accept analytics cookies. Why: To find usability problems in the directory and search. Basis: Your consent.
- Ad interaction data. From: LinkedIn Insight Tag, only after you accept marketing cookies. Why: To measure whether our LinkedIn posts bring people to the site and to show our posts to people who visited. Basis: Your consent.
- Name, email, organisation, and anything you type into a form (contact, event registration, newsletter, journalist intake). From: You, when you submit a form. Why: To reply to you, register you for the event, send the newsletter you asked for, or publish the listing you submitted. Basis: Your consent, or performance of what you asked us to do.
- Name, email, billing details for paid products. From: You, at checkout. Card details go to Razorpay and never reach us. Why: To take payment and issue invoices. Basis: Contract and legal obligation (tax records).
- IP address, request logs. From: Cloudflare and Webflow, automatically. Why: Security, abuse prevention, keeping the site running. Basis: Our legitimate interest in running a secure site; permitted use under Section 7 of the DPDP Act.
We do not sell personal data. We do not use it for automated decisions with legal effect.
4. Cookies
Cookies and similar storage are described in our Cookie Policy at /cookies-policy, which lists every cookie by name, owner, purpose and lifetime. Only essential cookies are set until you choose. You can change your choice at any time via "Cookie settings" in the footer.
5. Who we share data with
We share personal data only with providers who process it for us under contract, and only as much as they need:
- Webflow (hosting) and Cloudflare (network, security and anonymous visit counts), United States and global edge
- PostHog (analytics and session replay), United States
- Microsoft (Microsoft Clarity recordings and heatmaps), United States, only with your analytics consent
- Google (Google Analytics), United States and EU
- LinkedIn (advertising measurement), United States and EU, only with your marketing consent
- Razorpay (payments), India
- Tally (forms), EU
- Email and newsletter tooling we use to reply to you and send what you asked for
We do not share personal data with "partners" or "business associates" for their own use. If a fund, event or programme you register for needs your details, we tell you on that form and share only what the form says.
We disclose data when a law, court or regulator requires it.
6. Transfers outside India
Some providers above store data outside India. The DPDP Act permits this unless the Government restricts a specific country; we will stop such transfers if that happens. For visitors in the EU and UK, transfers rely on the providers' standard contractual clauses or adequacy decisions.
7. How long we keep data
- Analytics and replay data: up to 13 months, then deleted or aggregated
- Form submissions: as long as needed to handle your request, then up to 24 months
- Newsletter subscriptions: until you unsubscribe
- Payment records: 8 years, as Indian tax law requires
- Security logs: 30 days
When the purpose ends we delete or anonymise the data unless a law requires us to keep it.
8. Your rights and how to use them
You can, at any time and free of charge:
- Withdraw consent for cookies via "Cookie settings" in the footer, as easily as you gave it. Withdrawal does not affect processing that already happened.
- Access a copy of the personal data we hold about you and a summary of how we use it.
- Correct or update inaccurate data.
- Erase your data, unless a law requires us to keep it.
- Nominate another person to exercise these rights for you if you are unable to.
- Object, restrict or port your data if you are in the EU or UK.
Email [email protected] with "Privacy request" in the subject line. We reply within 30 days. We may ask you to confirm the email address the data is linked to.
9. Complaints
If you are not satisfied with our reply you can complain to the Data Protection Board of India, established under the DPDP Act (details published by the Ministry of Electronics and Information Technology). EU residents may complain to their national data protection authority, and UK residents to the Information Commissioner's Office. We would appreciate the chance to resolve the matter first.
10. Children
The site is meant for professionals and is not directed at people under 18. We do not knowingly collect their data. If you believe a child has given us data, email us and we will delete it.
11. Security
We use encrypted connections, access controls and reputable providers. No system is perfectly secure. If a breach affects your data we will notify you and the Data Protection Board as the DPDP Rules require.
12. Visitors outside India
The site is run from India under Indian law. If you visit from the European Union, United Kingdom or elsewhere, this policy is written to meet your local rights as well, and sections 3, 8 and 9 describe them.
13. Changes
We will post changes here with a new date and, for material changes, show a notice on the site. The cookie banner will reappear if the cookies or purposes change.
