Privacy Policy
Last Updated: March 2026
GiftBooks is committed to protecting your privacy and ensuring you have a positive experience on our website. This Privacy Policy explains how we collect, use, disclose, and otherwise handle your personal information in accordance with the Digital Personal Data Protection Act (DPDPA), 2023, and other applicable laws.
Information We Collect
We collect information necessary to create personalized storybooks and process your orders:
- •Child's Information: Name, age, gender, interests, and preferences
- •Parent/Guardian Contact: Name, email address, phone number
- •Shipping Address: Full address, postal code, city, state
- •Payment Information: Transaction reference number (we do not store card details or bank credentials)
- •Usage Data: Browser type, IP address, pages visited, device information
How We Use Your Information
- •Order fulfillment and delivery tracking
- •AI-powered story generation tailored to the child
- •Illustration generation and quality review
- •Communication regarding orders, delivery, and customer support
- •Sending promotional emails (with your consent)
- •Service improvement and analytics (anonymized)
AI-Generated Content & Children's Data
AI-Generated Stories: Each story generated on GiftBooks is unique and created specifically for your child. We use OpenAI's language models to generate age-appropriate, engaging narratives.
Data Storage: Story content is not permanently stored in our database after fulfillment. Generated stories are processed, printed, and then archived separately.
AI Disclosure: All illustrations are AI-generated using Leonardo AI. We transparently disclose this to customers as part of our service description.
No Commercial Use: We do not use children's information for any purpose other than creating their personalized book.
Data Storage & Security
Secure Infrastructure: Your data is stored in Supabase, a secure PostgreSQL database with end-to-end encryption. We prioritize Indian server infrastructure where possible for data residency.
Encryption: All sensitive data (payment references, addresses) is encrypted both in transit and at rest.
Access Control: Only authorized team members with specific roles can access personal data, and access is logged for audit purposes.
Regular Security Audits: We conduct regular security reviews to identify and address vulnerabilities.
Third-Party Services
We use the following third-party services:
- •OpenAI: Story generation (API access only, no data storage)
- •Leonardo AI: Illustration generation (API access only, no data storage)
- •Resend: Transactional email delivery (encrypted data transfer)
- •Cloudinary: Image hosting and optimization (CDN)
- •Shiprocket/Delhivery: Logistics partners (shipping address shared for delivery only)
These services have their own privacy policies. We ensure they comply with DPDPA and international data protection standards.
Your Rights Under DPDPA 2023
You have the following rights regarding your personal data:
- •Right to Access: Request a copy of your personal data
- •Right to Correction: Request correction of inaccurate data
- •Right to Deletion: Request deletion of your data (right to be forgotten)
- •Right to Portability: Request your data in a machine-readable format
- •Right to Grievance Redressal: File a complaint with our Data Protection Officer
To exercise these rights, contact us at support@giftbooks.co.in with your request. We will respond within 30 days.
Children's Privacy
Parental Consent: We do not directly collect information from children. All information is collected from parents or legal guardians with explicit consent.
Age Verification: Our service is designed for children aged 1-12 years. Parents/guardians must provide accurate age information for story appropriateness.
No Marketing to Children: We do not send marketing emails directly to children. All communications go to the parent/guardian email address.
Data Retention
- •Order Data: Retained for 2 years for record-keeping and customer service
- •Story & Illustration Data: Deleted after printing and delivery (archived for quality reference only)
- •Payment Data: Retained per RBI guidelines (typically 10 years for compliance)
- •Usage Analytics: Aggregated and anonymized, retained for 12 months
Privacy Inquiries & Data Protection Officer
For privacy-related questions or to exercise your rights, please contact:
Email: support@giftbooks.co.in
WhatsApp: +91 9876543210
Response Time: Within 30 days of your request
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes via email or by posting the updated policy on our website with an updated "Last Updated" date.