Privacy Policy

Last Updated: April 2026

At Carigar Fleet Management ("Carigar", "we", "us", or "our"), privacy is a core principle. This Privacy Policy outlines how we collect, use, and protect your information when you use our platform, application, tracking hardware integrations, and related services (collectively, the "Services").

This policy applies retrospectively to all telemetry streams and user engagement tracking performed on getmyfleet.online or any of our registered mobile applications. By accessing or utilizing the Carigar OS, you explicitly consent to the data practices described in this document.

1. Information We Collect

To provide advanced routing, telematics, and operational awareness, we must collect multiple dimensions of data, which primarily include:

  • Account & Registration Details: Organization names, primary contacts, physical billing addresses, email addresses, phone numbers, and encrypted password strings.
  • Vehicle Telemetry & Hardware Data: Continuous streams of GPS coordinates, vehicle velocity, idling timestamps, harsh braking/acceleration indicators, internal diagnostics (CAN bus), state of charge (SoC), and predictive battery health degradation curves.
  • Driver Behavior & Operational Logs: Associated shift times, route adherence records, identity logs for specific vehicle operation, and compliance tracking metrics (rest periods).
  • Technical Usage Information: Platform web analytics, IP addresses, browser agents, access times, clickstream data, and interaction patterns with our dashboard.
  • Financial Data: Stripe transactional IDs, invoicing history, and base subscription statuses (Carigar does not directly store raw credit card numbers; these are handled securely via PCI-DSS compliant third-party gateways).

2. How We Use Your Information

Our mandate is to turn raw data into operational leverage for your fleet. As such, we process your information exclusively to:

  • Deliver Core Services: Map plotting, live tracking, status alerts, and hardware diagnostics depend intrinsically on real-time data ingestion.
  • Optimize Performance: Machine learning algorithms use anonymized historical telemetry to refine route predictions, energy consumption models, and breakdown probability matrices.
  • Ensure Security: Behavioral usage patterns are analyzed to prevent unauthorized access, mitigate brute-force attempts, and protect your cloud endpoints.
  • Billing Administration: Calculate usage-tier overages and issue automated, localized tax invoices (like GST).
  • Communication: Deliver critical product updates, SLA outage notifications, or relevant promotional materials (which can be opted out of at any time).

3. Data Sharing and Third-Party Subprocessors

Carigar will never sell, rent, or blindly transmit your fleet data to unauthorized marketers or unauthorized third-party logistics firms. However, we may share information with:

  • Cloud Infrastructure Providers: Including Vercel, Supabase (AWS/GCP infrastructure), and Cloudflare to securely host and distribute the platform.
  • Integration Partners: OEM manufacturers (like Tata iRAFleet APIs) where necessary to ingest official hardware data into our software.
  • Legal & Compliance Authorities: We will disclose data if explicitly required by valid court orders, subpoenas, or stringent regulatory mandates (such as regional transportation boards requiring driver hour logs).

4. Data Security and Confidentiality

Your fleet deployment data is legally yours. We implement bank-grade encryption protocols (AES-256) at rest and TLS 1.3 in transit. Our infrastructure is consistently monitored for vulnerabilities using automated CI/CD security gating and routine manual penetration testing. While no internet-transmitted digital asset is 100% impenetrable, our safeguards meet or exceed industry standards for logistics platforms.

5. Data Retention Policies

Our retention strategy balances historical reporting needs with data minimization principles:

  • Standard Tier: Vehicle telemetry and positional data is retained on "warm/active" servers for 12 months. Beyond this point, aggregated summaries are retained, but sub-second polling data is deprecated.
  • Enterprise Tier: Organizations utilizing bespoke configurations can opt for unlimited historical retention or custom cold-storage archival via AWS S3 exports.
  • Account Deletion: Upon contract termination, organizations can request full digital erasure. All identifying personal and vehicular data will be irreversibly anonymized or destroyed within 30 days.

6. International Data Transfers

While Carigar's primary operations represent Indian and Southeast Asian markets, our distributed cloud layout may result in data processing crossing national borders. Where this occurs, we ensure legal adequacy and robust compliance frameworks guarantee uniform protection.

7. Updates to This Policy

We may periodically revise this Privacy Policy to reflect evolving technological, legal, or regulatory landscapes. Material changes will be prominently announced on our platform interface or delivered formally to the designated organization email before implementation.

8. Contact Our Privacy Team

If you have any questions regarding how your data is handled, please contact our Data Protection Officer at:

Carigar Fleet Analytics Directorate
Email: vedant@getcarigar.com
Phone: +91 7770001477
Location: Mumbai, India