Legal notice

1. Introduction & Publisher Information

Welcome to Ross Ruby. This website is owned and operated by Ross Ruby, an inventory-based e-commerce entity registered and operating under the laws of India. By accessing our website or purchasing our products, you agree to be bound by the terms outlined in this Legal Notice.

Entity Details:

  • Legal Entity Name: Ross Ruby

  • Principal Geographic Address: Jetpur, Rajkot, Gujarat, India

  • Customer Care Email: dhyanienterprise9@gmail.com

  • Platform Type: Inventory-based E-commerce Entity

2. Compliance with Consumer Protection (E-Commerce) Rules, 2020

In strict compliance with the Consumer Protection (E-Commerce) Rules, 2020, we make the following mandatory disclosures to ensure transparency:

  • Country of Origin: All jewelry sold by Ross Ruby is manufactured and sourced in India.

  • Pricing & Transparency: We display single-figure total prices, including the  all charges, GST, and shipping costs at checkout. We do not manipulate prices to gain unreasonable profits.

  • Cancellation Policy: We do not impose cancellation charges on consumers canceling an order prior to dispatch, unless similar charges are borne by Ross Ruby when we cancel an order.

  • Consent to Purchase: We obtain explicit and affirmative consent for all purchases; we do not use pre-ticked checkboxes to assume consent

3. Grievance Redressal Mechanism

If you have any consumer complaints regarding your order, shipping, or the quality of our goods, Contact on given mail id.

Resolution Timeline: We will acknowledge your complaint within 48 hours and will redress the grievance within 1 month from the date of receipt.

4. Governing Law and Jurisdiction

This Legal Notice and your use of our platform shall be governed by and construed in accordance with the laws of India. Any disputes arising out of these terms shall be subject to the exclusive jurisdiction of the competent courts located in Rajkot, Gujarat.

 

Cyber Security & Privacy Policy

1. Introduction

Ross Ruby ("we," "us," or "our") respects your privacy and is committed to protecting your personal data. This Cyber Security and Privacy Policy is formulated in accordance with the Information Technology Act, 2000, the IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, and the Digital Personal Data Protection (DPDP) Act, 2023.

This policy explains how we—acting as a Data Fiduciary—collect, process, secure, and manage your digital personal data.

2. What Data We Collect & Lawful Purpose

We only collect personal data that is strictly necessary to fulfill your orders and improve your shopping experience. Data processing is conducted based on your explicit, clear, and informed consent.

  • Information Collected: Name, mobile number, email (n@gmail.com for correspondence), physical shipping address (excluding P.O. boxes), and payment transaction details.

  • Purpose of Processing: To process and deliver your jewelry orders via third-party carriers, process refunds, and communicate important updates regarding your purchase.

3. Your Rights as a Data Principal

Under the DPDP Act 2023, you (the Data Principal) have the following rights regarding your personal data:

  1. Right to Access: You may request a summary of the personal data we process and the identities of any third parties (like our shipping carriers) with whom it has been shared.

  2. Right to Correction & Erasure: You can ask us to correct inaccurate data or erase your data when it is no longer required for the purpose it was collected.

  3. Right to Withdraw Consent: You can withdraw your consent to data processing at any time by contacting our Data Protection / Grievance Officer.

  4. Right to Grievance Redressal: You have the right to readily available means of grievance redressal.

  5. Right to Nominate: You may nominate an individual to exercise these rights on your behalf in the event of death or incapacity.

4. Data Retention and Deletion

We adhere to strict data minimization and retention principles. Your personal data is retained only as long as necessary to fulfill the operational purpose for which it was collected or to comply with Indian tax and accounting laws. Once the purpose is served, your personal data will be securely erased.

5. Cyber Security Safeguards

We have implemented robust technical and organizational measures to prevent unauthorized access, data breaches, and accidental loss of your personal information.

  • Secure Infrastructure: All financial transactions are encrypted and processed through secure, RBI-compliant payment gateways.

  • Limited Access: Access to your personal data is restricted on a strict "need-to-know" basis to employees and third-party logistics partners who require it to deliver your order.

6. Data Breach Notification

In the highly unlikely event of a cyber security incident or personal data breach, Ross Ruby is legally committed to immediately notifying the Data Protection Board of India, the Indian Computer Emergency Response Team (CERT-In), and all affected users, outlining the nature of the breach and the mitigation steps taken.