Privacy & Data Security

Privacy Policy

Last updated: October 2026 · VCardly by Expolio Group

1. Our Core Privacy Philosophy

VCardly is built on a simple premise: your identity is yours. We do not sell user data, we do not host third-party advertisement trackers, and we do not profile your visitors for external ad exchanges.

2. Information We Collect

We collect only the minimum information necessary to provide the service:

  • Account Credentials: Full name, verified email address, and cryptographically hashed passwords.
  • Public Card Content: Designation, organization, biographical statement, phone numbers, email addresses, social profile URLs, profile photo, and cover banners you choose to publish.
  • Payment Metadata: Transaction IDs and plan subscription statuses provided by Razorpay. We never store raw credit card or debit card numbers on our servers.

3. Privacy-Safe Analytics Architecture

VCardly card analytics are designed with strict privacy controls:

  • We do not record or retain your visitors' raw IP addresses.
  • Page views and action events use a daily-rotating SHA-256 cryptographic hash combined with an application secret key.
  • Visitor fingerprints cannot be reversed or used to trace individuals across different websites.

4. Third-Party Service Providers

We work with trusted infrastructure partners to deliver VCardly:

  • Razorpay: PCI-DSS compliant payment gateway handling checkout transactions.
  • SMTP Infrastructure: Secure, encrypted transactional email relays for account verification and billing receipts.

5. User Data Control & Deletion

You maintain complete authority over your published profile. You may modify your card content, unpublish your card, or permanently delete your account and associated uploaded files at any time via the Account Settings dashboard.

6. Contact Data Protection Officer

If you have questions about our data practices or wish to submit a data erasure request, please contact:

Privacy Operations · Expolio Group
Email: privacy@vcardly.me