Privacy Policy
What we collect, why we collect it, how long we keep it, and how to ask for it back. Last updated 21 June 2026.
This Privacy Policy explains how Prismatic Global Legacy LLP (“PGL”, “we”, “us”) handles the personal information you share with us when you use this website or engage any PGL service. We’ve tried to keep it short, plain, and honest.
1. Scope
This policy applies to data we collect through this website (prismaticgloballegacy.com), through forms you submit to us (including WhatsApp redirects), through emails you send us, and through invoices we issue you. It does not cover third-party services you reach through outbound links (for example, Amazon Kindle, Google Books, or your own payment gateway) — those are governed by their own policies.
2. What we collect
We collect the minimum personal information needed to do the work you’ve asked us to do. That typically includes:
- Identity & contact: your name, email, phone/WhatsApp number, and (for invoices) billing address and GSTIN.
- Project information: the content of your manuscript, brand assets, business documents, or other material you choose to share with us for the engagement.
- Communications: the messages you send us, the questions you ask in forms, and any attachments.
- Technical: basic site analytics (IP address, browser type, pages viewed) collected in aggregated form via standard server logs and analytics tooling — see “Cookies” below.
We do not ask for sensitive personal data (health, biometric, financial credentials) unless it is strictly required for a specific service you’ve requested.
3. How we use it
We use your data only for the purposes you would reasonably expect:
- To respond to your enquiry or fulfil the service you’ve booked.
- To issue tax invoices and meet our legal record-keeping obligations under Indian law.
- To communicate with you about your engagement, including updates, deliverables and timelines.
- To improve our services and the site itself, based on aggregated, non-identifying analytics.
We do not sell your personal data. We do not use your manuscript or brand assets to train third-party AI models. We do not share your personal information with advertisers.
4. Lawful basis
We rely on (a) your consent, given when you fill in a form or initiate an engagement; (b) the contract we form with you when you accept a plan or quote; and (c) our legal obligations under Indian tax, accounting and consumer-protection law.
5. Who we share it with
We share data only with parties that are necessary to deliver your engagement, and only what they need:
- Government registries — RRRNA (for ISBN), GSTN (for invoicing), MCA (for LLP filings) — as required by law.
- Retailers — Amazon Kindle, Google Books, etc. — only the listing metadata you authorise.
- Payment processors — only the transaction information they need to charge you.
- Cloud infrastructure — our website is hosted on Cloudflare; site assets and forms are processed within its infrastructure under its security standards.
- Professional advisors (chartered accountants, lawyers) where required for compliance.
6. How long we keep it
We keep your data only for as long as we need it. As a rule of thumb:
- Enquiries that don’t convert: up to 12 months, then deleted.
- Active engagement records: throughout the engagement plus 7 years (the minimum tax retention period under Indian law).
- Marketing communications: only while you remain subscribed; unsubscribe is one-click.
7. Your rights
You have the right to (a) ask what data we hold about you; (b) ask us to correct it; (c) ask us to delete it, where we no longer need to keep it for legal reasons; (d) withdraw consent for any non-essential processing; and (e) ask us to give you a copy of the data you’ve given us. We respond to all such requests within a reasonable timeframe — please use the contact buttons below.
8. Cookies & analytics
This site uses only essential cookies (for example, your theme preference) and standard server logs. We do not currently use third-party advertising trackers. If we later add analytics tooling, we will use a privacy-respecting option, anonymise IPs where supported, and update this policy first.
9. Security
We use industry-standard security: HTTPS everywhere, security headers (HSTS, CSP, X-Frame-Options, Permissions-Policy), referer-checked routes for protected documents (for example, our GST certificate viewer is DRM-controlled), and limited admin access. No system is perfectly secure — if you believe your data may have been exposed, please tell us immediately using the contact buttons below.
10. Children
Our services are not directed to children under 18. We do not knowingly collect personal information from children. If you believe a child has shared information with us, please contact us and we will delete it.
11. International transfers
Some of our service providers (for example, cloud hosting and retailer platforms) may process data outside India. When this happens, we choose providers that offer recognised data-protection safeguards.
12. Changes to this policy
We may update this policy when our practices or the law change. Material updates will appear on this page with a refreshed “last updated” date.
13. How to reach us
For any privacy question — including data access, correction, deletion, or a security concern — please use the buttons below. We do not list direct email addresses or phone numbers in this document; the buttons forward you to the right place.
See also our Terms & Conditions · GST Certificate · Back to Home.