Legal Document
Privacy Policy
Effective Date: 4 August 2026Governed by: DPDPA 2023 & IT Act 2000Jurisdiction: Mangaldoi Court, Darrang, Assam
This privacy policy applies to the website taskryne.com and the brand ‘Taskry NE’, which are fully owned, operated, and managed by WENSLink Private Limited (CIN: U80900AS2019PTC019435), a company registered under the laws of India.
Taskry NE is deeply committed to the responsible handling of personal data. This Privacy Policy is written in plain language to ensure every user, whether a homeowner booking an electrician in Mangaldoi or a technician registering from a remote block in Assam, fully understands how their data is collected, used, protected, and shared. We believe privacy is a fundamental right, not an afterthought. This document reflects that belief in every operational decision we make.
1. Introduction and Scope of This Policy
This Privacy Policy ("Policy") is published by Taskry NE, a home service marketplace platform and a product of WENSLink Private Limited (CIN: U80900AS2019PTC019435), incorporated on 13 August 2019 under the Companies Act, 2013, having its registered address at MAA COMMERCIAL COMPLEX, Third Floor, NH-15, Bechimari, Dist: Darrang, Assam - 784514, India, and operational address at L24 A South Ex, Delhi - 110049 ("Taskry NE", "WENSLink", "we", "our", or "us").
WENSLink Private Limited is directed by Ataur Rahman and Kalpana Begum. Taskry NE is one of WENSLink's proprietary platforms, operating exclusively in the home service marketplace domain across Assam and Northeast India.
This Policy governs the collection, use, storage, sharing, and protection of personal data of all individuals who interact with Taskry NE through any channel, including but not limited to WhatsApp messaging, the web dashboard at app.taskryne.com, the corporate website at taskryne.com, and any future mobile applications or integrations developed by Taskry NE.
This Policy applies to the following categories of individuals (collectively referred to as "Data Principals" under the Digital Personal Data Protection Act, 2023):
Customers: Individuals who use Taskry NE's WhatsApp-first platform to book home services including electricians, plumbers, AC technicians, carpenters, salon professionals, and all other service categories offered on the platform.
Technicians / Service Providers: Independent contractors who register on Taskry NE to offer home services, undergo KYC verification, and receive booking assignments through the platform.
Partners: Block Partners, District Partners, and State Partners who form Taskry NE's B2B2C distribution network and earn commissions for customer and technician acquisition within their designated territories.
Visitors: Individuals who visit taskryne.com or app.taskryne.com without completing a transaction.
By using Taskry NE's services in any capacity, you acknowledge that you have read, understood, and consent to the data practices described in this Policy. If you do not agree to this Policy, please discontinue use of all Taskry NE platforms and services immediately.
2. Categories of Personal Data We Collect
Taskry NE collects personal data only to the extent necessary to provide safe, reliable, AI-powered home service booking. The following is a comprehensive inventory of all data categories collected:
2.1 Identity and Contact Information
- Full legal name as provided during registration or booking
- Primary mobile phone number, which serves as the unique identifier across all Taskry NE systems. The phone number is verified via OTP (One-Time Password) authentication before any account is activated.
- Residential address, locality, PIN code, and landmark details provided during the booking process
- Email address (optional, for partners and technicians requiring invoice copies)
2.2 Location and Geographic Data
- GPS coordinates obtained through the WhatsApp "Share Location" feature, used exclusively for technician-to-customer distance matching. Customers may alternatively share a pinned location or type their address manually.
- Block, district, and state-level geographic tagging based on the service address. This data is used for partner commission attribution and demand forecasting analytics.
- Current GPS coordinates of technicians while they are on duty. The Taskry NE technician app reports these roughly every 45 seconds, and a technician may additionally share a live WhatsApp location while travelling to a booking, so that the customer for that booking and the operations team can see progress. Stored location pings are automatically deleted 7 days after they are recorded.
2.3 Service and Transaction History
- Complete booking records including booking reference number, service category, service description, scheduled date and time, assigned technician, service address, and booking status.
- Payment records including transaction ID, Razorpay order ID, payment method (UPI/card/cash), payment status, and GST invoice reference. Taskry NE explicitly does NOT store card numbers, CVV codes, UPI PINs, or any sensitive payment credentials.
- Post-service ratings submitted by customers (1 to 5 stars) and optional written reviews.
- Warranty claims submitted, including claim date, booking reference, nature of recurrence, and resolution outcome.
- TaskryCoin balance, earning history, and redemption history. TaskryCoins are earned by technicians (for example, for a successful referral) and can be redeemed for credit in the technician's Taskry NE wallet. Customers do not earn or hold TaskryCoins.
2.4 KYC and Identity Verification Documents (Technicians Only)
- Aadhaar card number (12-digit), collected for identity verification as permitted under the Aadhaar (Targeted Delivery of Financial and Other Subsidies, Benefits and Services) Act, 2016.
- Voter ID number, collected as a secondary identity document for additional verification.
- Photographs of the above documents, stored in an encrypted, access-controlled storage volume.
- Bank account details (account number, IFSC code, and account holder name) provided voluntarily by technicians for wallet withdrawal processing via NEFT/IMPS.
2.5 Communication and Interaction Data
- WhatsApp message metadata including message timestamps, message direction, message types (text, image, location, voice note), delivery status, and the mobile number the message was exchanged with. Taskry NE's own records hold this metadata only; the text and media of your WhatsApp messages are handled by the WhatsApp messaging platform Taskry NE sends and receives through, and are not copied into the Taskry NE database. Information you provide in a booking conversation (such as your address or a description of the problem) is of course saved as part of the booking record itself.
- Voice note transcriptions processed through Groq Whisper API for voice booking functionality. Transcriptions are used to extract service type and location information and are stored as part of the booking record.
- AI diagnosis outputs generated when customers submit photographs of their service issue to Gemini Vision API. The output (identified problem, service category, tool checklist, complexity estimate) is stored as part of the booking record.
2.6 Device and Technical Data
- Device type (mobile, tablet, PC or app), operating system, and browser name. These are parsed from the user agent your browser or the Taskry NE app sends when you sign in, not from WhatsApp.
- The IP address you signed in from, recorded against the login session and used for security review. Taskry NE does not use any IP geolocation service and does not infer your physical location from your IP address.
- Your mobile number, which is used as the key for your WhatsApp conversation session while a booking is in progress. The session is held in Taskry NE's Redis cache under that number and expires automatically. The number is stored as-is for this purpose, not as a hash.
2.7 Partner and Business Data
- For registered partners: territory information, referral QR code identifier, commission history, wallet balance, payout history, and franchise certificate reference number.
- For partners who have onboarded technicians: the technician roster associated with their block/district/state territory.
3. Legal Basis and Purposes for Data Processing
Taskry NE processes personal data only when there is a valid legal basis to do so under the Digital Personal Data Protection Act, 2023 (DPDPA) and applicable Indian law. The following explains the legal basis for each processing activity:
3.1 Contractual Necessity (Section 7(b) of DPDPA, 2023)
The following processing activities are strictly necessary to fulfill Taskry NE's service contract with users:
- Processing booking requests, matching customers with technicians, and managing the end-to-end service delivery workflow including confirmation, dispatch, live tracking, and completion.
- Processing payments via Razorpay, generating GST invoices, distributing commissions to partners and technicians, and managing wallet credits and withdrawals.
- Sending booking confirmation messages, OTP authentication codes, technician contact details, warranty cards, and digital receipts via WhatsApp.
- Verifying technician identities through KYC processing to ensure only legitimate, traceable service providers operate on the platform.
- Resolving booking disputes, warranty claims, and customer complaints based on transaction records.
3.2 Legitimate Interests (Section 7(d) of DPDPA, 2023)
The following processing activities serve Taskry NE's legitimate business interests, which have been balanced against and do not override users' fundamental data rights:
- Real-time fraud detection and prevention: Automated scoring of booking patterns, payment behaviors, OTP failure rates, and location consistency to identify and prevent fraudulent activity. This protects all platform users.
- Service quality improvement: Analysis of aggregated, anonymized booking data to identify high-demand service categories, poorly performing territories, and technician skill gaps. This data never identifies individual users.
- Predictive demand forecasting: AI-based analysis of historical booking patterns, weather data, and local event calendars to predict demand spikes and ensure technician availability. Alerts are sent to block partners to maintain service levels.
- Platform security: Monitoring for unauthorized access attempts, API abuse, and data breach indicators to protect all user data.
- Disaster response: Integration with IMD weather data to automatically identify flood-prone districts and promote relevant services (pump repair, waterproofing) during emergencies. Technicians in affected areas receive mobilization alerts.
3.3 Explicit Consent (Section 7(a) of DPDPA, 2023)
The following processing activities require and are conducted only upon obtaining explicit, informed, opt-in consent from the data principal:
- Sending predictive maintenance reminders (e.g., "Your AC was serviced 11 months ago - time for annual maintenance?") based on service history. Users can opt out at any time by sending STOP.
- Sending promotional offers, discount coupons, or marketing communications beyond those directly related to a specific booking.
- Using anonymized customer data for case studies, marketing materials, or platform promotion. No identifiable data is used without express consent.
- Third-party integrations beyond those strictly necessary for service delivery.
3.4 Legal Obligation (Section 7(f) of DPDPA, 2023)
The following processing activities are mandatory under applicable Indian law:
- Maintaining GST-compliant transaction records for 7 years as required under the Goods and Services Tax Act, 2017.
- Complying with lawful orders from courts of competent jurisdiction, authorized government authorities, or law enforcement agencies as required under applicable Indian statutes.
- Retaining KYC records as required under the Prevention of Money Laundering Act, 2002 and applicable RBI guidelines for payment intermediaries.
4. Automated Decision-Making and Artificial Intelligence
Taskry NE employs artificial intelligence and automated decision-making systems to enhance service quality, safety, and efficiency. Users have the right to understand how these systems work and how they affect them.
4.1 Automated Technician Matching
When a booking is dispatched, Taskry NE automatically selects a technician. The selection is rule-based and is applied in the following order:
- Eligibility: only technicians who are marked available and active, whose identity verification is complete, and whose registered skills cover the booked service are considered. A technician holding more than the permitted amount of uncollected cash is also excluded until they remit it. For customer-facing bookings, a booking is never handed to a technician of a different trade; if nobody with the right skill is available, the booking is held for manual assignment instead.
- Distance: if the booking has coordinates and at least one eligible technician has a known last location, the nearest technician by straight-line (great-circle) distance is selected, searching outwards in steps of 10 km, then 25 km, then 50 km. Where two technicians are equally close, the higher-rated one is preferred.
- Territory fallback: if the booking has no usable coordinates, it goes to a technician in the same block, then the same district, ordered by rating.
- Last resort: if none of the above resolves, the highest-rated available technician is selected.
If the assigned technician does not accept within 120 seconds, the booking is automatically offered to the next technician under the same rules. A technician who has already been offered a booking is never offered it again. There is no fixed limit on how many technicians are tried; if the list is exhausted, the booking returns to the pending queue for manual assignment by the Taskry NE team.
Taskry NE does not use a weighted scoring model for this decision. Badge level, historical response time and job completion rate are not inputs to it. Customers cannot presently reserve or request a specific technician for repeat bookings.
4.2 AI Visual Diagnosis (Gemini Vision)
When a customer submits a photograph of their service issue, Taskry NE's Gemini Vision integration analyzes the image to:
- Identify the specific problem (e.g., "corroded pipe joint", "tripped MCB", "refrigerant leak")
- Recommend the appropriate service category
- Generate a tool checklist for the assigned technician to bring to the site
- Estimate job complexity (simple/medium/complex) and an approximate duration, which are recorded with the booking so the technician can prepare. The complexity estimate does not by itself change the price.
The AI diagnosis is advisory and may be overridden by the technician's on-site assessment. Customers are always informed of pricing changes before service begins.
4.3 How Prices Are Calculated
The price of a booking is calculated from the base price of the selected service in the customer's territory, adjusted for the amount of work requested (estimated hours, number of units, or area in square feet), with a surcharge for an emergency booking. This is a fixed formula applied identically to everyone: it is not personalised to the individual customer, and it does not vary with your device, your browser, or how much you have spent before. A price can be previewed before the booking is created.
Taskry NE does not presently operate a demand-based or time-of-day pricing engine. Prices are not automatically raised because of how busy a block is or what time of day you book. Where a technician finds on site that the job is larger than what was booked, the additional work and its cost must be approved by the customer before it is carried out, and nothing is charged retroactively after a booking is confirmed.
4.4 Fraud and Abuse Detection
Taskry NE runs automated checks that flag suspicious activity, including duplicate or self-dealing booking patterns, irregular wallet withdrawal requests, rating manipulation, quotes outside the permitted range, and repeated OTP authentication failures. These checks raise an entry in an internal review queue.
Being flagged is not itself an automated decision about you. No account is suspended, closed or penalised automatically as a result of a flag: a member of the Taskry NE team reviews the queue, and any action follows from that human review. If action is taken on your account you will be informed, and you may appeal to grievance@taskryne.com.
5. Data Sharing, Disclosure, and Third-Party Processors
Taskry NE shares personal data only with parties and for purposes strictly necessary for service delivery, legal compliance, or platform security. We maintain written data processing agreements with all third-party processors.
5.1 Sharing Within the Platform Ecosystem
- Customer to Technician: The assigned technician receives the customer's first name, service address, service type, and WhatsApp contact number. The technician does NOT receive the customer's full legal name, KYC details, or payment information.
- Technician to Customer: The customer receives the technician's full name, profile photograph, badge level, WhatsApp number, and live location link when en route. Customers do not receive technician's KYC documents or bank details.
- Partner Commission Data: Block, District, and State Partners receive real-time alerts for completed bookings in their territory including booking reference, commission amount, and updated wallet balance. Partners do not receive customer names, addresses, or contact information.
5.2 Third-Party Service Processors
Razorpay Payments India Private Limited: Payment processing, order creation, commission routing, and payout management. Razorpay is an RBI-authorized payment aggregator. Data shared includes transaction amount, order reference, customer phone number (for payment link delivery), and commission split instructions. Razorpay's privacy policy governs their data use.
Meta Platforms Inc. (WhatsApp Business Cloud API): All customer-facing communications including booking confirmations, OTPs, notifications, warranty cards, and receipts are delivered via Meta's WhatsApp Business Cloud API. Message metadata (timestamps, delivery status, read receipts) is processed by Meta's infrastructure. Taskry NE's use of the API is governed by Meta's Business Terms of Service.
Google LLC (Gemini Vision API): Customer-submitted photographs for AI diagnosis are sent to Google's Gemini Vision API. Google processes the image only for the duration of the API call and does not retain the image or output beyond the response. Taskry NE stores the diagnosis output as part of the booking record.
Groq Inc. (Whisper ASR API): Voice notes submitted by customers for voice booking are transcribed by Groq's Whisper ASR model. Groq processes audio data for the duration of the API call only. Transcription output is stored as part of the booking record.
Hetzner Online GmbH: Taskry NE's infrastructure provider. The Taskry NE database, application servers and database backups are hosted on Hetzner servers; the exception is the document and recording storage described in the Backblaze entry below. Hetzner provides ISO 27001-certified data center facilities and operates under strict EU data protection frameworks.
Backblaze Inc. (B2 cloud object storage): Storage for technician KYC document images and helpline call recordings. Files are held in a private bucket that is not publicly readable and are retrieved only through short-lived signed links issued by the Taskry NE backend to an authorised viewer.
5.3 Legal Disclosures
Taskry NE will disclose personal data to law enforcement, judicial, regulatory, or governmental authorities only in the following circumstances:
- In response to a valid court order from a court of competent jurisdiction
- As required under specific provisions of applicable Indian statutes (IT Act, PMLA, DPDPA, etc.)
- To prevent imminent physical harm, fraud, or criminal activity
- In connection with the enforcement of our Terms and Conditions
In all cases, Taskry NE will disclose only the minimum data necessary to comply with the legal obligation and will notify the affected user where legally permissible to do so.
5.4 Business Transfers
In the event of a merger, acquisition, restructuring, or sale of Taskry NE's business, user data may be transferred to the successor entity. Users will be notified via WhatsApp at least 30 days before any such transfer occurs and will have the option to request data deletion if they do not wish their data to be transferred.
5.5 Prohibited Sharing
Taskry NE strictly prohibits the following data sharing activities, regardless of any commercial consideration:
- Selling personal data to data brokers, credit bureaus, or advertising networks
- Sharing data with insurance companies for risk profiling without user consent
- Providing data to employers, government agencies, or law enforcement beyond what is legally required
- Cross-platform data sharing with other companies in any owner's portfolio
6. Data Storage, Security Architecture, and Retention
6.1 Storage Infrastructure
All Taskry NE production data is stored on dedicated Hetzner VPS servers. The server environment is configured as follows:
The primary database (PostgreSQL 16) stores all structured data including bookings, users, commissions, and wallet transactions with ACID compliance guarantees. It runs as a single instance reachable only from the application containers, with password authentication, role-based access control on the principle of least privilege, and connection pooling via asyncpg. There is no replica or automatic failover; recovery from a total database failure is from backup, as described in clause 6.4.
Technician KYC documents and helpline call recordings are stored in a private Backblaze B2 object-storage bucket (see clause 9 on international transfers). The bucket is not publicly readable: files are reachable only through short-lived signed links generated by the Taskry NE backend for an authorised viewer. Objects are organised by the technician's or partner's phone number with timestamp-based naming. Signed agreement documents and service photographs are stored on a persistent volume attached to the backend application server.
Session data, OTP codes, and real-time booking state are stored in Redis 7 with password authentication, a memory cap, append-only persistence for recovery, and automatic OTP expiry after 5 minutes.
6.2 Encryption Standards
Data in Transit: All communications between clients (WhatsApp, browsers) and Taskry NE servers are encrypted using TLS 1.3 with forward secrecy. HTTP connections are automatically redirected to HTTPS. SSL certificates are issued by Let's Encrypt and renewed automatically every 90 days.
Data at Rest: Database backup archives are encrypted with AES-256 (via openssl, using a PBKDF2-derived key held only on the server) at the moment they are created, so a backup file is unreadable without that key. KYC documents are held in a private object-storage bucket that is not publicly readable and is served only through short-lived signed links.
6.3 Access Controls
Production database access is restricted to the backend application service account and authorized admin users only. Admin sign-ins are recorded with a timestamp and the originating IP address, and privileged actions such as application approvals and document handling are written to an audit log capturing the actor, the action taken, and the record affected. Individual database queries are not logged. Admin dashboard access is authenticated by a one-time password sent to a registered admin phone number, so there is no shared account password.
6.4 Backup and Disaster Recovery
A full PostgreSQL dump runs automatically once every day. Each dump is compressed and AES-256 encrypted as it is written, and encrypted dumps are retained for 7 days. Backups are written to a separate storage volume on the same host, which protects against accidental deletion of the database but not against loss of the host itself; Taskry NE does not currently replicate database backups to a physically separate site. The practical Recovery Point Objective therefore is up to 24 hours, being the interval between daily dumps. Restores are exercised when a restore is actually required rather than on a fixed testing schedule.
6.5 Data Retention
Some retention periods are enforced by a scheduled job that deletes the data automatically. Others are commitments Taskry NE applies when acting on a deletion request or when reviewing records, and are not yet enforced by an automated job, which means the data may remain in the production database until such a request or review. This clause distinguishes the two honestly rather than presenting all of them as automatic.
Deleted automatically on a schedule:
- Technician location pings: deleted 7 days after they are recorded
- Expired sign-in refresh tokens: deleted 7 days after they expire
- KYC documents that have been deleted: permanently erased from storage 30 days later
- OTP codes: expire 5 minutes after they are issued
- WhatsApp conversation sessions in the cache: expire automatically after a period of inactivity
Retention commitments applied on request or on review, not by an automated job:
- Booking records, payment records and GST invoices: 7 years from the transaction or invoice date, as required for GST and other legal compliance
- Customer profile data (name, phone, address): kept until a verified deletion request is completed, apart from the limited records the law requires Taskry NE to keep. The Account Deletion page explains exactly what is deleted, what is retained, and the timeframe.
- KYC documents (technicians): until the technician's account is permanently deleted, plus 2 years
- AI diagnosis outputs: retained as part of the booking record
- WhatsApp message logs (metadata such as direction, number, message type and delivery status; Taskry NE's own records do not hold the message text), fraud flags and audit logs: retained for operational, security and dispute-resolution purposes
Sign-in sessions expire on their own schedule regardless of the above: 7 days for a web dashboard session, 90 days for a technician app session, and up to 180 days for a stored refresh token.
7. Your Rights as a Data Principal Under DPDPA 2023
The Digital Personal Data Protection Act, 2023 grants you the following rights with respect to your personal data held by Taskry NE. To exercise any right, contact our Grievance Officer at grievance@taskryne.com with your registered phone number for identity verification.
7.1 Right to Access (Section 11 of DPDPA, 2023)
You have the right to obtain confirmation of whether Taskry NE processes your personal data and to receive a copy of the data we hold about you. We will provide:
- A summary of all personal data categories we hold
- The purposes for which each category is processed
- The third parties with whom your data has been shared
- The retention period for each data category
We will respond to access requests within 15 business days of receiving a verified request.
7.2 Right to Correction and Erasure (Section 12 of DPDPA, 2023)
You have the right to request correction of inaccurate or incomplete personal data and to request erasure of personal data that is no longer necessary for the purposes for which it was collected. Erasure requests are subject to legal retention obligations. For example, transaction records required for GST compliance cannot be deleted within the 7-year retention period. We will confirm erasure or explain applicable retention obligations within 15 business days.
7.3 Right to Withdraw Consent
Where processing is based on your consent, you may withdraw consent at any time without affecting the lawfulness of processing carried out before withdrawal. To withdraw consent for marketing communications, send STOP to our WhatsApp number. To withdraw consent for all optional processing, email grievance@taskryne.com.
7.4 Right to Grievance Redressal (Section 13 of DPDPA, 2023)
You have the right to file a grievance with Taskry NE's Grievance Officer regarding any alleged violation of DPDPA provisions. The Grievance Officer will:
- Acknowledge receipt of your complaint within 48 hours
- Investigate and communicate findings within 15 business days
- Implement remedial measures where a violation is confirmed
- Maintain records of all grievance proceedings
If you are not satisfied with the Grievance Officer's resolution, you have the right to escalate your complaint to the Data Protection Board of India once it is operationally established under DPDPA, 2023.
7.5 Right to Nominate
You may nominate another individual to exercise your data rights on your behalf in the event of your death or incapacity. Nomination instructions can be registered by contacting grievance@taskryne.com.
7.6 Children's Data
Taskry NE's services are intended for individuals 18 years of age or older. We do not knowingly collect personal data from minors. If a parent or guardian believes their child's data has been collected without appropriate consent, they should contact grievance@taskryne.com immediately for prompt deletion within 72 hours.
8. Cookies, Tracking, and Analytics
8.1 Session Cookies (Dashboards)
Taskry NE's dashboards use cookies to keep you signed in:
Session Token Cookies: After you sign in with an OTP, a cookie holding your session token is stored in your browser: taskryne_token for the partner dashboard (30 days), taskryne_tech_token for the technician dashboard (7 days), or taskryne_admin_token for the admin dashboard (1 day). Each is set with SameSite=Lax and is scoped to the Taskry NE site. Because the dashboard is a browser application that attaches the token to its own API calls, these cookies are set and read by the site's own JavaScript rather than being HttpOnly, and the partner dashboard additionally keeps a copy of the token and your basic profile in your browser's localStorage so that reloading the page does not sign you out. Logging out clears both copies. These cookies cannot be disabled without losing access to the dashboard.
Notice Dismissal Cookie: A cookie named tne_launch_popup_dismissed_v1 records that you have closed the site's launch notice, so it is not shown to you again for 30 days. It contains no personal data.
8.2 Analytics and Advertising Cookies
Taskry NE's website and dashboards load two third-party measurement tags:
Meta Pixel (Meta Platforms, Inc.): measures which pages and WhatsApp-contact clicks lead to bookings, and supports advertising measurement and retargeting audiences. It sets Meta's first-party cookies (_fbp, and _fbc when you arrive from a Meta advertisement), which Taskry NE also reads so that the browser-side and server-side records of the same event can be matched to each other instead of being double-counted.
Google Analytics 4 (Google LLC): measures page views and site usage. It sets Google's analytics cookies (the _ga family).
These tags record page views, WhatsApp-link clicks and similar interaction events, along with the page address and the identifiers described above. Taskry NE does not send your name, phone number, address, or KYC data to either tag.
8.3 What Taskry NE Does NOT Use
Taskry NE does NOT deploy the following on any of its platforms:
- Third-party session recording or session replay tools (Hotjar, FullStory, etc.)
- Browser fingerprinting technologies
- Sale of personal data to data brokers or advertising networks
8.4 WhatsApp Platform Tracking
When customers interact with Taskry NE via WhatsApp, Meta may collect interaction metadata as part of the WhatsApp Business Platform. Taskry NE has no control over Meta's data collection within WhatsApp. Users should review Meta's Privacy Policy for information about WhatsApp's data practices.
8.5 Managing Cookies
Users can delete all Taskry NE cookies at any time through their browser settings without permanent loss of account access. Clearing cookies will log you out of the dashboard, requiring re-authentication via OTP. The analytics and advertising tags described in clause 8.2 can be blocked using your browser's tracking-protection setting, an ad blocker, or Google's Analytics opt-out browser add-on. Blocking them does not affect your ability to use Taskry NE.
9. International Data Transfers
Taskry NE's primary data storage is on Hetzner servers. However, certain data processing activities involve transfers to service providers outside India:
Google LLC (USA) - Gemini Vision API processing
Groq Inc. (USA) - Whisper ASR processing
Meta Platforms Inc. (USA) - WhatsApp API infrastructure
Backblaze Inc. (USA) - Object storage for technician KYC document images and helpline call recordings
All international data transfers are conducted under appropriate safeguards including:
- Binding contractual obligations requiring the data recipient to implement data protection standards equivalent to DPDPA requirements
- Minimum data transfer principle - only the data strictly necessary for the specific service is transferred
- Encryption in transit for all international transmission
- Aadhaar and voter ID numbers themselves are held only in Taskry NE's database in India and are not sent to any processor outside India. Photographs of those documents are stored with Backblaze as described above, in a private bucket that is not publicly readable and is served only through short-lived signed links.
As the DPDPA, 2023's cross-border data transfer provisions are operationalized by the Data Protection Board of India, Taskry NE will update its transfer mechanisms to comply with any additional requirements specified by the Board.
10. Contact, Grievance Redressal, and Policy Updates
10.1 Grievance Officer
Taskry NE has appointed the following individual as the designated Grievance Officer under the Digital Personal Data Protection Act, 2023:
Grievance Officer: Ataur Rahman
Designation: Founder & CEO, WENSLink Private Limited
Email: grievance@taskryne.com
Support Email: support@taskryne.com
Company: WENSLink Private Limited (CIN: U80900AS2019PTC019435)
Registered Address: MAA COMMERCIAL COMPLEX, Third Floor, NH-15, Bechimari, Dist: Darrang, Assam - 784514
Operational Address: L24 A South Ex, Delhi - 110049
Legal Jurisdiction: Mangaldoi Court, Darrang, Assam - 784125
The Grievance Officer is responsible for acknowledging all data-related complaints within 48 hours and resolving them within 15 business days. Escalations that are not resolved to the complainant's satisfaction may be referred to the Data Protection Board of India.
10.2 How to Submit a Grievance
To submit a formal privacy grievance or data rights request:
Step 1: Email grievance@taskryne.com with the subject line: PRIVACY GRIEVANCE - [Your Registered Phone Number]
Step 2: Include a clear description of the issue, the specific right you wish to exercise, and any relevant booking or account reference numbers.
Step 3: Our team will verify your identity using your registered phone number via OTP within 24 hours of receiving your email.
Step 4: A formal acknowledgment with a reference number will be issued within 48 hours.
Step 5: Resolution or a detailed update will be provided within 15 business days.
10.3 Updates to This Privacy Policy
Taskry NE will update this Privacy Policy when required due to changes in our data practices, the introduction of new features or third-party integrations, amendments to applicable law, or regulatory guidance from the Data Protection Board of India.
For material changes, registered users will receive advance notice via WhatsApp at least 7 days before the changes take effect. Non-material changes (formatting, clarifications that do not alter rights or obligations) may be made without advance notice. The effective date at the top of this Policy will always reflect when the most recent revision was made.
Users who do not agree with updated terms may request account deletion by contacting grievance@taskryne.com before the effective date.
Questions about your privacy?
Contact our Grievance Officer: Ataur Rahman
WENSLink Private Limited (CIN: U80900AS2019PTC019435) · grievance@taskryne.com · L24 A South Ex, Delhi - 110049 · Registered: MAA COMMERCIAL COMPLEX, NH-15, Bechimari, Darrang, Assam - 784514