Data Protection Policy
Last Updated: October 2025
1. Introduction
This Data Protection Policy outlines how Winadda manages, secures, and processes personal and non-personal data collected from users across the globe.
As a trusted international information platform, Winadda is committed to maintaining the highest standards of data confidentiality, security, and integrity. We adhere to the world’s leading privacy and data protection laws, including:
General Data Protection Regulation (GDPR – EU)
UK Data Protection Act (2018)
California Consumer Privacy Act (CCPA – USA)
Personal Data Protection Act (PDPA – Singapore)
Information Technology Act, 2000 (India)
Our goal is to ensure that every user’s information is processed lawfully, transparently, and securely—no matter where they access our website from.
2. Policy Purpose
The purpose of this policy is to:
Define Winadda’s obligations as a data controller and processor.
Explain how we collect, process, and store user data.
Outline users’ rights under applicable laws.
Provide transparency about our security measures and data handling practices.
This policy applies to all users, employees, contractors, and partners who interact with Winadda’s systems and digital assets.
3. Nature of Data Collected
Winadda collects limited categories of data strictly for functional and analytical purposes. This includes:
Basic Contact Data: name, email, phone (only when voluntarily provided).
Technical Data: IP address, browser type, device model, OS version, and referring URL.
Usage Data: time spent on pages, clicks, and navigation patterns.
Cookies & Identifiers: managed as per our Cookie Policy.
We do not collect financial, health, biometric, or other sensitive information unless explicitly required by law.
4. Legal Basis for Processing
Winadda processes user data based on lawful bases defined in Article 6 of the GDPR and corresponding global laws:
User Consent – when you voluntarily provide data or accept cookies.
Legitimate Interest – to enhance functionality, performance, and security.
Contractual Necessity – to respond to user inquiries or requests.
Legal Obligation – to comply with global regulations or court orders.
No automated decision-making or profiling occurs on this website.
5. Data Collection Methods
We collect data through the following lawful and transparent means:
Contact forms or inquiry submissions.
Analytics and performance tracking tools.
Cookies and user session logs.
Direct communication via email or WhatsApp.
Users are informed about each collection method through clear notices and consent banners.
6. Data Storage & Retention
All personal data is stored in encrypted and access-controlled databases.
We retain user data only for as long as necessary to fulfill operational, legal, or analytical purposes.
Retention timelines are based on:
Regulatory requirements.
Purpose of collection.
User consent or withdrawal.
Once data is no longer required, it is securely deleted or anonymized using irreversible cryptographic techniques.
7. Data Security Measures
Winadda implements multi-layered security protocols designed to safeguard data against unauthorized access, alteration, or loss.
Key measures include:
SSL/TLS encryption for all communication.
Regular vulnerability scans and audits.
Role-based access control (RBAC).
Secure cloud infrastructure with geo-redundancy.
Continuous monitoring through intrusion detection systems (IDS).
Data backup and recovery mechanisms.
We also enforce internal employee confidentiality and security training programs.
8. Data Transfer & Cross-Border Compliance
As a global platform, user data may be transferred to servers located in other jurisdictions.
When international transfers occur, Winadda ensures compliance using:
Standard Contractual Clauses (SCCs) under EU law.
Adequacy decisions for approved countries.
Encryption and pseudonymization to protect personal data in transit.
All data processors handling information on behalf of Winadda are required to meet equivalent or higher security standards.
9. User Rights Under Global Privacy Laws
Depending on your region, you may have the following rights:
Right to Access: request copies of your data.
Right to Rectification: correct inaccurate details.
Right to Erasure: delete your data when lawful.
Right to Restrict Processing: limit how data is used.
Right to Data Portability: transfer data to another controller.
Right to Object: opt-out of specific processing.
To exercise any of these rights, contact our Data Protection Officer at:
📧 support@winadda.com
💬 WhatsApp: https://wa.link/winra
Requests will be reviewed and fulfilled within 30 days, subject to verification of identity.
10. Third-Party Data Processors
We may engage third-party service providers for:
Cloud hosting (AWS, Google Cloud, etc.)
Web analytics (Google Analytics, Matomo)
Email communication (SendGrid or similar)
Each third-party processor is contractually bound by data protection agreements (DPAs) ensuring confidentiality and lawful processing.
We do not share data for marketing, resale, or unrelated commercial use.
11. Data Breach Response
In the unlikely event of a data breach:
We will investigate and contain the incident immediately.
Affected users will be notified within 72 hours, as required by GDPR.
Detailed reports will be submitted to relevant supervisory authorities.
Mitigation steps and future prevention measures will be communicated publicly.
Our internal security response team operates under a formal Incident Management Policy reviewed annually.
12. Children’s Data Protection
Winadda does not knowingly collect data from individuals under 18 years of age.
If such data is discovered, it will be promptly deleted from all systems.
Parents or guardians may contact us to request immediate removal.
13. Policy Updates & Reviews
This Data Protection Policy is reviewed at least once every 12 months or whenever required by law.
Major updates will be announced via this page, with a revised “Last Updated” date.
Continued use of Winadda after updates implies acceptance of the revised version.
14. Contact Information
For privacy, compliance, or data protection queries:
📧 Email: support@winadda.com
💬 WhatsApp: https://wa.link/winra
📍 Response Time: 3–5 business days
15. Governing Law & Dispute Resolution
This policy shall be governed by international data protection principles, with reference to the laws of the Republic of India for administrative purposes.
Disputes shall be settled through confidential arbitration under UNCITRAL Model Law or the user’s local jurisdictional authority.