WhatsApp
Privacy and Data Protection

Privacy Policy

This Privacy Policy explains how N&T Software collects, uses, stores, shares and protects personal data through its website, POS solutions, mobile applications, integrations, support services and related business activities.

Effective Date: 17 JulyLast Updated: 17 July

Who This Policy Applies To

This Privacy Policy applies when you visit www.nntsoftware.com, request a demonstration, communicate with us, purchase or use our software, create an account, use an N&T Software application or receive implementation and support services.

It also explains how N&T Software handles personal data on behalf of business customers using our StorePosNNT and business management solutions.

1. Scope of This Privacy Policy

This Privacy Policy applies to personal data processed by N&T Software Private Limited through:

  • The N&T Software website and contact forms;
  • Demo, quotation and consultation requests;
  • POS software and business management systems;
  • Web dashboards and customer portals;
  • Android and iOS applications;
  • Restaurant, food-business, retail and franchise POS solutions;
  • Customer, employee, supplier and inventory management modules;
  • Support, implementation, training and maintenance services;
  • Payment, SMS, WhatsApp, online-order and third-party integrations;
  • Marketing, sales and business communications.

This Policy does not replace the privacy policy that an N&T Software business customer may be required to provide to its own customers, employees, suppliers or other individuals.

2. Our Privacy Roles

When N&T Software Determines the Purpose

N&T Software determines how and why personal data is processed when handling website visitors, business enquiries, quotations, customer accounts, billing, support, security, recruitment and N&T Software marketing activities.

When We Process Data for a Business Customer

When a restaurant, retailer, franchise, shop or other business uses our software to process its own customer, employee, supplier or transaction data, that business generally determines why and how the data is used.

In those circumstances, N&T Software processes the data on behalf of the business customer according to the applicable agreement, approved configuration and documented instructions.

3. Personal Data We Collect

Data categoryExamples
Identity and contact dataName, business name, job title, email address, mobile number, postal address and country.
Business informationBusiness type, outlet details, number of branches, software requirements, operational workflow and requested modules.
Account and authentication dataUsername, user ID, encrypted password, login history, role, permissions, OTP records and authentication events.
Customer and loyalty dataCustomer name, telephone number, email, address, purchase history, loyalty details, preferences and communication records.
Employee and user dataEmployee name, identifier, role, outlet assignment, attendance, shift activity, cashier activity and permission records.
Transaction and billing dataInvoice information, purchased items, order history, discounts, returns, payment mode, transaction references, taxes and settlement status.
Supplier and procurement dataSupplier names, contact details, purchase records, delivery details, tax information and payment status.
Device and technical dataIP address, browser, operating system, device identifier, application version, log records, error reports and session information.
Location informationApproximate IP-based location or device location where enabled for an agreed application feature.
Communication and support dataEmails, support tickets, call notes, messages, screenshots, uploaded files, feedback and training records.
Marketing and preference dataCommunication preferences, newsletter status, campaign responses, demo interests and unsubscribe records.
Cookies and usage dataPages visited, link interactions, referral source, time on page, browser information and cookie identifiers.

The exact data collected depends on the services, modules, integrations and features selected by the customer.

4. How We Collect Personal Data

We may collect personal data:

  • Directly from you when you submit a form, request a demo, contact us or create an account;
  • From an employer, franchise owner, outlet manager or authorised administrator;
  • When data is entered, imported or generated through the POS software;
  • Automatically through website cookies, server logs and application logs;
  • Through payment, SMS, WhatsApp, delivery, accounting, marketplace and other authorised integrations;
  • From business directories, professional networks and publicly available business sources;
  • From service providers assisting with hosting, analytics, marketing, support or security.

Business customers must ensure they have authority to provide personal data to N&T Software and to use it through the selected software modules.

5. How We Use Personal Data

We may process personal data to:

  • Respond to enquiries and arrange product demonstrations;
  • Prepare proposals, quotations and contracts;
  • Create and administer customer accounts;
  • Configure, implement and operate POS solutions;
  • Process billing, KOT, orders, purchases, stock and reports;
  • Provide customer, employee, supplier and branch-management functions;
  • Support payment, online-order and messaging integrations;
  • Provide technical support and user training;
  • Diagnose errors, investigate incidents and improve system performance;
  • Protect accounts, prevent fraud and maintain security;
  • Maintain backups, audit logs and business continuity;
  • Send service notices, invoices, renewal reminders and security alerts;
  • Send marketing communications where permitted;
  • Analyse aggregated product usage and improve our services;
  • Establish, exercise or defend legal rights;
  • Meet legal, tax, regulatory and contractual obligations.

7. Data Processed Through Customer POS Accounts

Business customers may use N&T Software products to collect and process personal data relating to their customers, employees, suppliers, franchisees and other individuals.

The business customer is responsible for:

  • Providing appropriate privacy notices to affected individuals;
  • Obtaining consent or another lawful authority where required;
  • Configuring access permissions and user roles correctly;
  • Ensuring that imported and entered data is accurate and lawful;
  • Responding to privacy requests relating to its business records;
  • Setting appropriate retention and deletion instructions;
  • Using SMS, WhatsApp, email and promotional functions lawfully.
If your personal data was collected by a restaurant, shop, franchise or other N&T Software customer, contact that business first. N&T Software will assist the business with valid privacy requests where required by contract or law.

8. Payment and Financial Information

We may collect billing names, addresses, tax details, invoice records, payment modes, payment status and transaction reference numbers.

Where payments are processed through a bank, payment gateway, UPI provider, card terminal or other third-party payment service, payment credentials may be collected directly by that provider under its own privacy policy and security requirements.

N&T Software generally receives information such as payment status, transaction reference, amount, date and settlement status rather than complete card, bank-account or UPI authentication credentials.

9. Cookies and Similar Technologies

Our website and applications may use cookies, local storage, pixels, SDKs and similar technologies.

Cookie typePurpose
EssentialWebsite security, session management, form operation, login and core functionality.
PreferenceRemember language, interface and user selections.
AnalyticsUnderstand website traffic, feature use and technical performance.
MarketingMeasure campaigns and provide relevant communications where enabled and legally permitted.

Non-essential cookies should be activated only where appropriate consent or another lawful permission exists.

More information is available in our Cookie Policy.

10. Marketing and Service Communications

Service Communications

We may send communications necessary to operate the service, including account notices, OTPs, security alerts, invoices, support updates, maintenance notices and renewal reminders.

Marketing Communications

We may send product information, offers, newsletters or invitations where you have requested them or where otherwise permitted.

You may unsubscribe using the link in the message or by contacting us. Unsubscribing from marketing will not stop essential service or security communications.

11. How We Share Personal Data

We may share personal data with:

  • Cloud-hosting, storage, backup and infrastructure providers;
  • Payment gateways, banks and payment-service providers;
  • SMS, email, WhatsApp and notification providers;
  • Customer-authorised delivery, accounting, ERP, marketplace and online-order integrations;
  • Technical support, analytics and security providers;
  • Professional advisers, auditors, insurers and legal advisers;
  • Government agencies, regulators, courts and law-enforcement authorities where legally required;
  • A purchaser, investor or successor involved in a lawful merger, reorganisation or business transfer;
  • Other parties where the individual or customer has authorised the sharing.

Service providers are authorised to use personal data only for the agreed service, legal compliance and security purposes.

N&T Software does not sell personal data for monetary consideration.

12. International Data Processing and Transfers

N&T Software serves customers in India and other countries. Personal data may therefore be processed or stored in locations outside the individual’s state, province or country.

International processing may occur through cloud, communication, support, analytics, payment or integration providers.

Where applicable, we use contractual, organisational and technical measures intended to protect personal data and comply with restrictions imposed by applicable law.

13. How Long We Retain Personal Data

We retain personal data only for as long as reasonably required for the relevant purpose, contract, security need or legal obligation.

Record typeGeneral retention approach
Enquiries and demo requestsGenerally up to 24 months after the last meaningful interaction.
Customer accountsFor the contract period and a reasonable period after termination for closure, export and dispute handling.
Customer POS dataAccording to the customer agreement, selected plan and documented customer instructions.
Backup copiesDeleted progressively according to the applicable backup cycle unless longer retention is required.
Support ticketsGenerally up to three years after closure, unless a longer period is needed for an active relationship or dispute.
Billing and tax recordsFor the period required under applicable accounting, company and tax laws.
Security and system logsAccording to security requirements and for at least the legally required period where applicable.
Marketing preferencesUntil consent is withdrawn, the individual opts out or the information is no longer required.

Data may be retained for longer where necessary to comply with law, investigate fraud, respond to legal claims, protect systems or enforce agreements.

14. How We Protect Personal Data

We maintain administrative, technical and organisational safeguards appropriate to the nature of the service and associated risks.

Safeguards may include:

  • Role-based access and permission controls;
  • Authentication and password-security measures;
  • Encryption, masking or other protective measures where appropriate;
  • System, access and activity logs;
  • Monitoring and incident investigation;
  • Backup and recovery arrangements;
  • Network, application and infrastructure security;
  • Employee and contractor confidentiality obligations;
  • Security requirements for relevant service providers;
  • Periodic security review and remediation.
No website, application, device, transmission method or storage system can be guaranteed to be completely secure. Customers must also secure their devices, administrator accounts, networks, passwords and authorised users.

15. Personal Data Breaches

We maintain procedures to identify, investigate, contain and remediate suspected personal-data incidents.

When a personal-data breach affects data controlled by an N&T Software business customer, we may notify and assist that customer in accordance with the applicable agreement.

Where required by applicable law, N&T Software will notify affected individuals and relevant authorities within the prescribed timeframe and provide available information about the nature of the incident, likely consequences, mitigation measures and recommended protective actions.

16. Your Privacy Rights

Depending on applicable law and N&T Software’s role in processing the data, an individual may have the right to:

  • Request information about personal data being processed;
  • Request access to available personal data;
  • Correct inaccurate or misleading personal information;
  • Complete incomplete personal information;
  • Update outdated personal information;
  • Request erasure where retention is no longer necessary or legally required;
  • Withdraw consent where processing relies on consent;
  • Opt out of marketing communications;
  • Raise a complaint or grievance;
  • Nominate another individual to exercise applicable rights in circumstances permitted by law.

We may request information necessary to verify identity, authority and the validity of a request.

Some requests may be restricted where retention or processing is required for invoicing, taxation, fraud prevention, security, legal claims or another lawful purpose.

For information processed through a merchant’s POS account, submit the request directly to the relevant merchant, employer, franchise or business. N&T Software will support that customer where appropriate.

17. Children’s Personal Data

The N&T Software website, sales services and business-account services are intended for businesses and authorised adult representatives.

We do not knowingly invite children to create commercial customer accounts or submit business enquiries independently.

A business customer may use the POS system to process information concerning a child, such as an order, customer record or authorised employee record. The business customer is responsible for determining whether parental or guardian consent is required.

Where N&T Software directly processes a child’s personal data and verifiable parental or guardian consent is legally required, we will take appropriate steps before that processing.

18. Mobile Applications and Device Permissions

An N&T Software mobile application may request device permissions depending on its functions.

PermissionPossible purpose
CameraBarcode or QR scanning, document capture or profile image upload.
Photos or storageUploading receipts, products, documents or exported reports.
LocationOutlet verification, delivery, attendance or another specifically configured location feature.
NotificationsOrder, billing, security, support and operational alerts.
Bluetooth or local networkConnecting with compatible printers, scanners or other POS hardware.

Device permissions may be managed through the device settings. Disabling a required permission may prevent the related feature from working.

19. Analytics and Automated Processing

Our systems may automatically calculate sales totals, stock movement, low-stock alerts, shift summaries, transaction reports, branch comparisons and other operational analytics.

These outputs depend on the data, settings and rules supplied or configured by the business customer.

N&T Software does not use website or POS personal data to make solely automated decisions producing significant legal effects for individuals unless that functionality is specifically disclosed, agreed and lawfully implemented.

21. Changes to This Privacy Policy

We may update this Privacy Policy to reflect changes in our services, integrations, security practices, business processes or legal requirements.

The revised version will display a new “Last Updated” date. Material changes may also be communicated through email, account notification or another reasonable method.

Continued use of the services after an update will be subject to the revised Policy, except where fresh consent or another action is legally required.

22. Contact, Privacy Requests and Grievances

Privacy questions, rights requests and grievances may be submitted using the following contact details:

Legal EntityN&T Software Private Limited
Websitewww.nntsoftware.com
Business Address3rd Floor, Diamond Complex, SH 41, Industrial Area, Chhapi, North Gujarat 385210, India
Email[email protected]
Telephone+91 84870 80659
Privacy and Grievance Contact[Insert Grievance Officer Name or Designation]

Include “Privacy Request” in the email subject and provide:

  • Your name and contact details;
  • The business or N&T Software customer connected with the request, if applicable;
  • A clear description of the request;
  • Information reasonably required to verify identity and authority.

We will acknowledge and respond within a reasonable period, subject to identity verification, applicable law and whether N&T Software or its business customer controls the relevant personal data.

Related Legal Policies

Read this Privacy Policy together with the following policies and commercial documents.