Privacy Policy
MobiGram is operated by MobiOffice Software Innovations Private Limited (“MobiGram”, “we”, “us”, “our”), a company registered in India with its office at 514, 5th Floor, Rajhans Montessa, Dumas Road – Magdalla, Surat, Gujarat 395007, India.
MobiGram is a business tool for saree and suit manufacturers, wholesalers and their trade buyers. Sellers publish design catalogues to a private, invite-only grid; buyers browse, privately shortlist, and ask questions in conversations attached to a design.
This Privacy Policy explains what information we collect, how we use it, who we share it with, and the choices you have. It applies to:
- the MobiGram mobile application on Android and iOS;
- seller invite links and seller-branded landing pages;
- the website mobigramhq.com.
By creating an account or using MobiGram, you agree to this Privacy Policy. If you do not agree, please do not use the service.
1. Our two standing privacy commitments
Before the detail, two rules that shape how the whole product works:
- Catalogues are private. A seller’s designs are visible only to buyers that seller has invited. There are no public catalogue pages, and images are served through short-lived, access-checked links — a catalogue link cannot be opened by someone without an active, authorised relationship with that seller.
- Buyers are not individually watched. Sellers see aggregate reach only — for example, how many buyers saw a week’s designs and how many conversations started. No screen, export or report in MobiGram tells a seller which individual buyer viewed, zoomed, or shortlisted a design. A buyer’s shortlist is private to that buyer.
The rest of this policy is written around these commitments.
2. Information we collect
2.1 Information you give us
Account information. Your mobile phone number (the number you use on WhatsApp), verified by a one-time password (OTP); your name; and your shop or business name.
Seller business information. If you register as a seller: your GSTIN and related business identity details used for verification, your brand name and logo, your product vertical (for example, sarees or suits), and an approximate count of your active buyers. Sellers must be verified before they can invite buyers.
Catalogue content. Design photographs you upload, and any description, category, price and price unit you attach to them.
Messages. The content of conversations between a buyer and a seller: text, images, and voice notes, together with the design each conversation is attached to. Messages are exchanged between the trade parties in the conversation; we store and transmit them to provide the service.
Shortlists. The designs a buyer saves to their private shortlist. Shortlists are visible only to the buyer who created them (see Section 4).
Support communication. Anything you send us when you contact support, including during assisted onboarding.
2.2 Information collected automatically
Device and app information. Device model, operating system and version, app version, language setting, and a notification token issued by Google (Firebase Cloud Messaging, on Android) or Apple (Apple Push Notification service, on iOS) so we can deliver notifications.
Usage events. Product events needed to run and improve the service and to diagnose problems — for example: an invite link was opened, a drop was published or retracted, an upload failed, a grid was opened, a conversation was started or closed, a sync error occurred. Events carry technical context (app version, device class, company identifier) for diagnosis.
Install attribution. When you install MobiGram from a seller’s invite link, we record attribution (for example the Google Play install referrer, or an equivalent mechanism on iOS) so the app can take you straight to the seller who invited you.
Diagnostics. Crash reports and performance measurements.
2.3 Information we deliberately do not collect
- We do not upload or scan your phone’s contact list.
- We do not collect your device location.
- We do not collect payment card, bank or UPI details in the app. MobiGram does not process trade orders or payments between buyers and sellers.
- We do not track which individual designs a buyer merely looked at for analytics shown to sellers, and we do not build per-buyer browsing profiles for sellers.
- We do not show third-party advertising, and we do not use your data for third-party ad targeting.
3. How we use your information
We use the information above to:
- create and secure your account, and verify seller identities (GSTIN verification);
- deliver the core service: publishing drops, showing grids, storing shortlists, and delivering messages — including queuing messages sent while offline and delivering them once connectivity returns;
- route an invited buyer to the correct seller’s grid after installation;
- send notifications about activity relevant to you (for example, replies in your conversations), bundled to avoid unnecessary alerts;
- produce aggregate reach summaries for sellers;
- monitor reliability, diagnose failures, and support users — including assisted onboarding and support during the pilot programme;
- prevent abuse, enforce our terms, and protect the security of the service (for example, rate-limiting invite misuse);
- comply with law.
We do not use the content of your catalogues or messages to train machine-learning models, and we do not sell your personal information.
4. The aggregate-only analytics boundary
This section restates Section 1(2) as a data rule, because it governs what we build:
- Sellers receive reach information only in aggregate (counts and summaries), never as a named list of which buyer viewed or shortlisted a design.
- Shortlisting a design does not generate any event, notification or report visible to the seller.
- Our internal teams access account data only under least-privilege, role-scoped, audited controls, and only for verification, support, reliability, and pilot operations.
5. How we share information
We do not sell or rent your personal information. We share it only in these cases:
With the people you are trading with. This is the product working as intended: your profile name and shop name, your catalogue (if you are a seller), and the messages you send are visible to the counterparties you share them with. A seller sees the name and shop name of buyers who join through their invites and the content of conversations those buyers start.
With service providers who process data for us, under contracts that limit their use of it, such as: cloud hosting and storage providers (our infrastructure is hosted with Amazon Web Services), Google (Firebase Cloud Messaging for Android notifications; Google Play services), Apple (Apple Push Notification service; App Store services), and the messaging provider used to deliver OTP codes.
For legal reasons. If required by law, regulation, legal process or an enforceable government request, or where necessary to protect the rights, safety or property of MobiGram, our users, or the public.
In a business transfer. If MobiGram or MobiOffice Software Innovations Private Limited is involved in a merger, acquisition or sale of assets, your information may be transferred as part of that transaction; this policy will continue to apply to it until changed under Section 11.
MobiGram is not affiliated with, or endorsed by, WhatsApp LLC or Meta. “Sign in with your WhatsApp number” means we verify the mobile number you use on WhatsApp; we do not access your WhatsApp account, messages or contacts.
6. App permissions we request
We ask for permissions only when a feature needs them, and each can be declined (the related feature will simply be unavailable):
| Permission | Platform | Why |
|---|---|---|
| Photos / media access | Android & iOS | Selecting design photographs to upload; saving images you receive |
| Camera | Android & iOS | Taking a photo to send in a conversation (optional) |
| Microphone | Android & iOS | Recording voice notes in conversations (hold-to-record) |
| Notifications | Android & iOS | Delivery of replies and activity updates; requested only after you have first used the app |
On Android, MobiGram also registers as a share target so you can share photos to it from your gallery.
7. Data storage, security and retention
Where. Your data is stored on cloud infrastructure operated by our hosting provider. If data is processed in a region outside India, we apply the same protections described in this policy.
Security. Data is encrypted in transit. Catalogue images are delivered only through access-checked routes with short-lived signed links; access is re-checked on every request, so a revoked buyer relationship immediately stops access. Authentication uses OTP verification with rotating session tokens. Internal administrative access requires multi-factor authentication and is logged and audited. Sensitive values (tokens, OTPs, phone numbers, message content, image links) are redacted from our operational logs. No system is perfectly secure, and we cannot guarantee absolute security, but we design access control into the product rather than around it.
Retention. We keep your information while your account is active and as long as needed to provide the service. When a company account is deleted, its catalogue media, messages and related records are deleted or irreversibly anonymised within a reasonable period, except where we must retain records to comply with law (for example, tax or accounting obligations) or to resolve disputes. Aggregate statistics that do not identify you may be retained.
8. Your rights and choices
Subject to applicable law — including the (Indian) Digital Personal Data Protection Act, 2023 — you may:
- Access the personal information we hold about you and ask how it is used;
- Correct inaccurate or incomplete information (your name, shop name and brand details are editable in the app or through support);
- Delete your account and associated personal information;
- Withdraw consent for processing that is based on consent, without affecting processing already carried out;
- Nominate another individual to exercise your rights in the event of death or incapacity, as provided by the DPDP Act;
- Complain — first to our Grievance Officer (Section 10), and thereafter to the Data Protection Board of India or your local supervisory authority.
To exercise any of these, contact us using the details in Section 10. We will verify your identity (normally via your registered phone number) before acting on a request, and we respond within the timelines required by applicable law.
Notification choices. You can disable notifications in your device settings at any time; conversations remain available in the app.
9. Children
MobiGram is a business-to-business trade tool. It is not directed at children, and you must be at least 18 years old to create an account. We do not knowingly collect personal information from anyone under 18; if you believe we have, contact us and we will delete it.
10. Grievance Officer and contact
For questions, requests, or complaints about privacy or this policy:
Grievance Officer: [Name of designated Grievance Officer] Entity: MobiOffice Software Innovations Private Limited Address: 514, 5th Floor, Rajhans Montessa, Dumas Road – Magdalla, Surat, Gujarat 395007, India Email: [privacy@mobigramhq.com] Phone: +91 99250 39603
We acknowledge grievances promptly and resolve them within the period prescribed under applicable Indian law.
11. Changes to this policy
We may update this Privacy Policy from time to time. When we do, we will change the “Last updated” date above and, for material changes, notify you in the app or by another prominent means before the change takes effect. Your continued use of MobiGram after an update means you accept the revised policy.
12. Related policies
- Terms of Service — mobigramhq.com/terms
- MobiOffice HQ privacy policy (our sister product) — mobiofficehq.com/privacy-policy