Legal
Privacy Policy
Last updated: 3 July 2026 · Applies to the Gold Logic mobile app (Android, iOS) and the Gold Logic web platform
Gold Logic ("Gold Logic", "we", "us") builds billing, stock and sona khata software for jewellery businesses, delivered through the Gold Logic mobile app and the Gold Logic web platform (together, the "Service"). This policy explains what data the Service collects, why, and how it's protected.
Overview
The Gold Logic mobile app is a business tool used by jewellery shop staff and owners ("Users") who are given a login by their employer (a "Tenant"). It is not a consumer app and is not directed at the general public. Through it, Users record and view their business's own invoices, stock and customer records on Gold Logic's servers.
We collect the minimum data needed to authenticate Users, run the app's billing and stock features, and keep each Tenant's data separate from every other Tenant's.
Who controls your data
The jewellery business you work for (the Tenant) controls the customer, invoice and stock data entered into Gold Logic — Gold Logic processes it on the Tenant's behalf, the same way it would in a paper ledger or spreadsheet the Tenant owns. If you are a customer of a jewellery store that uses Gold Logic and have a question about your own invoice or stock record, please contact that store directly, not Gold Logic.
Data we collect
We collect data in three groups:
1. Account data
- Login credentials — username/email and password, used to sign in.
- Session tokens — a signed authentication token issued after login, used to keep you signed in and to scope every request to your Tenant and role.
2. Business data you or your Tenant enter
- Customer records — names, phone numbers, and addresses entered on invoices by Tenant staff.
- Billing & stock records — invoices, estimates, payments, stock items, metal purity, weights, barcodes, and sona khata ledger entries.
- Supplier/URD purchase records — entries made for regulatory (GST) purchase tracking.
This business data is typed in by the Tenant's own staff — the app does not read your phone's contacts, photos or files to collect it.
3. Technical data
- Connectivity status — used only to detect whether the app can reach the server; not logged or transmitted anywhere.
- Standard request metadata — like any web request, API calls to our servers include an IP address and timestamp, used for security logging and troubleshooting.
The Gold Logic app does not use advertising SDKs, third-party analytics/tracking SDKs, or crash-reporting SDKs that share data off-device. It does not access your camera, photos, contacts, or precise location.
Device permissions
The Android app requests the following permissions, and no others:
- Internet — required to sign in and sync billing/stock data with the Gold Logic server.
- Network state — lets the app detect when it's offline so it can show a clear message instead of failing silently.
- Vibrate — used for short haptic feedback on actions like scanning or saving a bill.
How we use data
- To authenticate you and keep your session secure.
- To create, store and display the invoices, stock and ledger records you and your Tenant enter.
- To keep each Tenant's branch data isolated from every other Tenant's.
- To generate PDFs and printed labels/invoices you request.
- To diagnose errors and keep the Service reliable and secure.
We do not sell data, and we do not use business or account data for advertising.
Sharing & third parties
We do not share your data with third parties for their own marketing or advertising purposes. Data may be processed by infrastructure providers strictly to operate the Service (for example, cloud hosting and database providers), under contractual confidentiality, or disclosed if required by law or to investigate fraud or abuse of the Service.
Storage & security
- Login and session tokens are stored on-device using the platform's secure storage (Android Keystore / iOS Keychain), not in plain files.
- All data in transit between the app and our servers is encrypted (HTTPS/TLS).
- Business data is stored in a multi-tenant database where every record is scoped to a Tenant ID; the API enforces that a Tenant's staff can only read or write that Tenant's own data.
- Staff access within a Tenant can be scoped by role, so not every login needs to see stock valuations or settings.
Retention & deletion
We retain account and business data for as long as the Tenant's subscription is active, plus a reasonable period afterward to meet accounting/GST record-keeping obligations. A Tenant admin can request export or deletion of their business's data, and an individual User can request deletion of their own account, by contacting us at the address below.
Children's data
The Service is a business tool for jewellery-shop staff and is not directed at, or knowingly used by, children under 18.
Your rights
Depending on where you're located, you may have rights to access, correct, export or delete personal data we hold about you. To exercise these, contact us at the email below — if the data relates to a store's customer record rather than your own staff account, we may direct you to that store, as they control that record.
Changes to this policy
We may update this policy as the Service evolves. Material changes will be reflected by updating the "Last updated" date above. Continued use of the Service after a change constitutes acceptance of the updated policy.
Contact us
Questions about this policy or your data can be sent to hello@goldlogic.in.