Privacy Policy

Last Updated: July 2, 2026

This Privacy Policy explains how Oneshelf ("the App", "we", "us", or "our") collects, uses, stores, shares, and protects your information when you use our mobile application for grocery shopping and home delivery. By using Oneshelf, you agree to the practices described below.

Our commitment: We do not sell, rent, or trade your personal information — including your name, phone number, email, location, or delivery addresses — to third-party data brokers or advertisers.

1. Information We Collect

We collect only the information needed to run the store, fulfil your orders, and keep your account secure.

CategoryWhat we collectWhy
Account & ProfilePhone number (verified via OTP), name, and optional email addressTo create and authenticate your account
Delivery AddressesRecipient name, address, pincode, landmark, and (when you choose) approximate GPS coordinatesTo deliver your orders to the right place
Precise/Approximate LocationDevice location, only when you tap "Use my current location" while adding an address (foreground only)To auto-fill your delivery address. We do not collect location in the background.
Order & Transaction DataCart contents, order history, amounts, discounts/coupons, delivery status, and tax invoicesTo process orders and provide GST-compliant invoices
Payment InformationProcessed directly by Razorpay. We receive only a payment status/reference — we never see or store your full card number or UPI credentialsTo accept payment for orders
Device & Push TokenA Firebase Cloud Messaging (FCM) token and basic device modelTo send order and delivery notifications
Microphone / VoiceAudio captured only when you choose to use a voice feature. Voice search and voice-dictated delivery notes are converted to text and the audio is not retained. A voice note you record for your delivery agent (from the cart) is uploaded and kept only long enough to fulfil that orderTo let you search or add delivery instructions by speaking, and to clarify order requests with your delivery agent
DiagnosticsAnonymous crash logs and performance data (Firebase Crashlytics & Analytics)To find and fix bugs and improve stability
Profile Photo (optional)An image you choose to uploadTo personalise your profile

2. How Your Data Is Stored

Your account, orders, addresses, and catalog data are stored on our secure backend server (hosted on managed cloud infrastructure) using an encrypted database. Authentication is handled by Google Firebase. Uploaded images are stored on Firebase Storage. Data is transmitted over encrypted HTTPS connections.

3. Third-Party Services

We rely on the following trusted providers, each governed by its own privacy policy:

We do not share your personal data with any party other than as required to fulfil your order (e.g. sharing your delivery address with the assigned delivery agent) or as required by law.

4. How We Use Your Information

5. Data Retention & Your Rights

You can edit your profile and delete saved addresses at any time inside the app. You may also delete your account directly from Profile → Settings → Delete Account. We confirm it’s you with a one-time code (OTP) before proceeding. Deletion is paused until any open obligations are cleared (active subscriptions, an unpaid subscription bill, a bulk order with a paid advance, or an order in progress), and any wallet money you topped up is refunded to your original payment method. Your account is then scheduled for deletion and kept recoverable for a grace period of about 15 days — sign in again during that time to cancel. After the grace period, your personal identifiers (name, email, phone, photos, addresses, cart) are removed or anonymised; order and invoice records may be retained in anonymised form where required for tax and legal compliance.

You can also request deletion via our web page or by email:

🔗 Account & data deletion page: account-deletion.html
✉️ Contact: oneshelfstore@gmail.com

For email requests, we confirm your identity, settle the items above, and complete deletion within 7 business days (after the recovery grace period).

6. Permissions We Request

7. Children's Privacy

Oneshelf is intended for users aged 18 and over and is not directed at children. We do not knowingly collect personal information from children.

8. Security

We use industry-standard measures including encrypted transport (HTTPS), secure authentication tokens, server-side authorization, and Firebase App Check. No method of transmission or storage is 100% secure, but we work to protect your data using reasonable safeguards.

9. Changes to This Policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with a new "Last Updated" date. Continued use of the app after changes constitutes acceptance.

10. Contact Us

For any privacy questions or requests, contact us at oneshelfstore@gmail.com.