Compliance information

Privacy Policy

Last updated: 28 Jul 2026. This page forms part of the store checkout and customer support framework for Infinity Roots.

Legal entity: INFINITY TEXTILES Support: accounts@infinityroots.shop Address: GROUND FLOOR SHOP NO 86, OM HEERA PANNA PREMISES CO-OP HSG, OPP CAFE SAFAR HOTAL, ANDHERI WEST, MUMBAI - 400053

Scope

This Privacy Policy explains how Infinity Roots collects, uses, stores and protects customer information during browsing, account creation, Firebase email verification, checkout, payment/COD processing, order fulfilment, support and compliance activities.

Information collected

Name, email address, mobile number, billing and shipping address, cart contents, order history and support messages.

Firebase email verification status, login identifiers and technical authentication metadata.

Payment status, transaction reference, COD status, invoice/order reference and courier/shipping details.

Device, browser, IP, cookies, analytics and security logs used for fraud prevention and website improvement.

Purpose of use

To create and secure customer accounts.

To verify customer email before checkout.

To process COD and online payment orders.

To send order confirmation, shipping updates, support replies and service notices.

To detect abuse, prevent fake orders, maintain transaction records and meet compliance obligations.

Sharing and processors

Information may be shared with payment gateways, courier partners, email/SMS service providers, hosting providers, Firebase authentication services, analytics/security tools, auditors or authorities where required.

The store does not sell customer personal information for unrelated marketing.

Data retention

Order, payment, invoice, tax, support and compliance records may be retained as required under applicable law and internal audit needs.

Customers may request correction or support regarding their information by contacting the support email. Some records may be retained where legally necessary.

Security

Reasonable technical and organisational safeguards are used, including email verification, access controls and secure hosting practices.

No internet-based system is fully risk-free; customers should keep their email account, OTP/link access and device secure.