Privacy policy
Last updated 2 October 2026
In shortWhat we collect, why, who we share it with and your choices. We don't sell your personal data.
1. Who we are
This policy explains how Mindwhile IT Solutions Private Limited, the company that owns and operates the DORK brand ("DORK", "we", "us") handles personal data when you use the DORK website or apps, buy from us, or contact us. We are the data fiduciary for this data under the Digital Personal Data Protection Act, 2023, and we follow the Information Technology Act, 2000 and the rules under it.
2. What we collect
- Account details: your mobile number (your login), name, email and — only if you choose to set one — a password, stored in hashed form.
- Order details: delivery and billing addresses, recipient name and phone, items, amounts, payment method and order history.
- Business details (business accounts and enquiries only): company name, GSTIN, contact person, business address and your requirements.
- Support messages you send us, and warranty registrations and claims.
- Location, only when you ask for it: tapping "Use my current location" reads your phone's or browser's GPS once, to fill your address and pin the delivery point. We store the pinned coordinates with that address so the rider can reach your door. We never track your location in the background.
- Notification details: if you allow notifications in the DORK app, a device token from Google Firebase Cloud Messaging so we can send order updates — and offers only if you switch on Offer notifications.
- Payment information is entered on our payment gateway's secure page. We receive only a payment reference and status — we never see or store your full card number, CVV, UPI PIN or net-banking password.
- Technical data: your IP address and browser type, used for security (for example login rate limits) and to keep the service working.
3. How we use it
- To create and secure your account (one-time login codes by SMS — delivered by our SMS provider or, in the DORK apps, by Google Firebase — optional passwords, and session management).
- To process, deliver and support your orders, returns, refunds and warranty claims.
- To handle business enquiries, quotations and bulk orders.
- To send order, delivery and refund updates in your account and, if you allow it, to your phone. Offer notifications are sent only with your consent, which you can withdraw any time in Account or Profile.
- To prevent fraud and abuse, and to meet legal, tax and accounting obligations.
We don't use your data for automated decisions that affect you, and we don't sell it.
6. How long we keep it
We keep order and invoice records for as long as tax and accounting laws require. Login codes expire within minutes and login sessions after 30 days (or when you log out). Other data is kept while your account is active or as long as needed for the purpose it was collected for.
7. Children
DORK is meant for adults. If you are under 18, please use DORK with the involvement of a parent or guardian, who is responsible for the account and purchases.
8. Your rights
Under the Digital Personal Data Protection Act, 2023 you can ask to access a summary of your data, correct or update it, have it erased, withdraw consent you've given (for example to offer notifications), raise a grievance and nominate someone to exercise these rights on your behalf.
You can view and update your profile and saved addresses in your account at any time, and log out of all devices. You can delete your account yourself: on the website in Account → Profile → Delete account, or in the app in Account → Delete account. This erases your profile, saved addresses, notifications and logins; orders and invoices are kept without your login because tax law requires it. To ask for a copy of your data or a correction, use the form on our Support page (/support), or email support@dork.co.in.
You can raise a grievance about how we handle your data through the Support page — see our Grievance redressal policy for timelines.
9. Security
Passwords are optional; if you set one it is stored only as a salted hash, and repeated wrong attempts temporarily lock it. Session tokens and login codes are stored only in hashed form, and access to customer data inside DORK is restricted by role. No system is perfectly secure, but we work to protect your data and will act promptly on any incident.
10. Changes
If we change this policy, we'll update the date at the top of this page.
Need help?
Our team can help with orders, deliveries, returns, refunds and warranty.
Contact support →