Privacy Policy
Last updated: March 2026
1. Introduction
Crewno ("we," "us," or "our") operates the event staffing marketplace platform accessible at crewno.in (the "Platform"). This Privacy Policy explains how we collect, use, store, disclose, and protect your personal information when you use our Platform, in compliance with the Information Technology Act, 2000, the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, and the Digital Personal Data Protection Act, 2023 ("DPDP Act") of India.
By accessing or using the Platform, you consent to the collection and use of your information as described in this Policy.
2. Information We Collect
2.1 Information You Provide
- Account information: Name, email address, phone number, date of birth, gender, college or organisation name, and profile photo.
- Identity verification (KYC): Aadhaar number, PAN number, and other government-issued ID details for identity verification purposes. We collect this information solely to verify your identity and ensure platform safety.
- Payment information: Bank account details (account number, IFSC code), UPI ID, and transaction history for processing payments.
- Profile information: Skills, work experience, availability, location preferences, and portfolio.
- Communications: Messages sent through the Platform, support requests, and feedback.
2.2 Information Collected Automatically
- Device information (browser type, operating system, device identifiers).
- Log data (IP address, access times, pages viewed, referring URL).
- Location data (approximate location based on IP address or, if permitted, precise GPS location).
- Cookies and similar tracking technologies (see our Cookie Policy).
3. Aadhaar and KYC Data Handling
We take special care with identity verification data. Aadhaar and other KYC information is:
- Collected only with your explicit consent and solely for identity verification purposes.
- Processed through authorised verification APIs (e.g., UIDAI e-KYC) and not stored in raw form on our servers.
- Encrypted at rest using AES-256 encryption and in transit using TLS 1.2 or higher.
- Accessible only to authorised personnel on a need-to-know basis.
- Never shared with third parties except as required by law or regulatory authorities.
- Retained only for as long as your account is active, or as required by applicable law, after which it is securely deleted.
4. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Platform and its features.
- Verify your identity and maintain account security.
- Match freelancers with event staffing opportunities based on skills, location, and availability.
- Process payments between companies and freelancers.
- Send transactional notifications (booking confirmations, payment updates, schedule changes).
- Provide customer support and respond to your inquiries.
- Detect, prevent, and address fraud, abuse, or security issues.
- Comply with legal obligations and enforce our Terms of Service.
- Send promotional communications (only with your opt-in consent, and you can unsubscribe at any time).
5. Payment Data
All payment processing on Crewno is handled through PCI-DSS-compliant third-party payment processors. We do not store full credit card or debit card numbers on our servers. Payment-related data we retain includes:
- Transaction IDs and amounts.
- Partial bank account or UPI information for display purposes.
- Payment history for record-keeping and dispute resolution.
6. Cookies and Tracking Technologies
We use cookies and similar technologies to enhance your experience, analyse Platform usage, and deliver relevant content. For detailed information, please refer to our Cookie Policy.
7. Third-Party Sharing
We do not sell your personal data. We may share your information with the following categories of third parties:
- Platform users: Limited profile information is shared between companies and freelancers when a booking is made (e.g., name, profile photo, skills, ratings).
- Payment processors: To facilitate transactions on the Platform.
- Analytics providers: Aggregated, anonymised data to help us understand Platform usage patterns.
- Cloud service providers: For hosting, storage, and infrastructure services.
- Legal and regulatory authorities: When required by law, court order, or government request.
- Business transfers: In the event of a merger, acquisition, or sale of assets, your data may be transferred as part of that transaction.
8. Your Rights
Under the DPDP Act and applicable Indian law, you have the following rights:
- Right to access: Request a summary of your personal data we hold.
- Right to correction: Request correction of inaccurate or incomplete data.
- Right to erasure: Request deletion of your personal data, subject to legal retention requirements.
- Right to withdraw consent: Withdraw your consent for data processing at any time. Withdrawal does not affect the lawfulness of processing done before withdrawal.
- Right to grievance redressal: Lodge a complaint with our Grievance Officer or the Data Protection Board of India.
- Right to nominate: Nominate another individual to exercise your rights in the event of your death or incapacity.
To exercise any of these rights, contact us at crewnohq@gmail.com. We will respond within 30 days.
9. Data Retention
We retain your personal data for the following periods:
- Account data: For as long as your account remains active, plus 90 days after account deletion to handle any pending matters.
- Transaction records: For 8 years from the date of the transaction, as required under Indian tax and financial regulations.
- KYC data: For 5 years after termination of the business relationship, as per regulatory requirements.
- Communication logs: For 1 year from the date of communication.
- Analytics data: Anonymised data may be retained indefinitely.
10. Data Security
We implement industry-standard security measures to protect your personal data, including:
- Encryption of data in transit (TLS 1.2+) and at rest (AES-256).
- Regular security audits and vulnerability assessments.
- Access controls and role-based permissions for internal teams.
- Secure, PCI-DSS-compliant payment processing.
While we take reasonable steps to protect your data, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security.
11. Children's Privacy
The Platform is not intended for individuals under 18 years of age. We do not knowingly collect personal data from children. If we become aware that we have collected data from a child under 18, we will take steps to delete it promptly.
12. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you via email or a prominent notice on the Platform. Your continued use of the Platform after such changes constitutes your acceptance of the updated Policy.
13. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us:
- Email: crewnohq@gmail.com
- Platform: crewno.in
For grievances related to personal data, you may contact our Grievance Officer at crewnohq@gmail.com. The Grievance Officer will acknowledge your complaint within 24 hours and resolve it within 30 days.