Data Security

Effective Date: 25 September, 2023

Welcome to Platforms. As an online artwork platform, we are committed to safeguarding the security and privacy of our website users' information. This Data Security Policy outlines the measures we take to protect the data collected, processed, and stored on our platform. By using our website, you agree to the practices described in this policy.

a) We collect personal information from users, such as names, email addresses, postal addresses, and payment details, for the purpose of facilitating artwork transactions, providing customer support, and improving our services.

b) The data collected is used solely for legitimate business purposes, and we do not share user information with third parties except as necessary to fulfill transactions or as required by law.

c) User-generated content, such as likes, comments, reviews may be publicly visible on the platform. However, we do not disclose personal information beyond what is necessary to showcase the artwork and facilitate interactions between users.

a) We implement industry-standard security measures to protect user data from unauthorized access, disclosure, alteration, and destruction. These measures include:

Encryption: All data transmitted between users and our platform is encrypted using secure protocols (e.g., HTTPS) to prevent interception and tampering.

Access Controls: Access to sensitive data is restricted to authorized personnel only, and we utilize role-based access controls to limit access as needed.

Data Storage: User data is stored on secure servers with strict access controls and regular data backups.

Regular Audits: We conduct periodic security audits to identify vulnerabilities and address potential weaknesses in our infrastructure and applications.

b) Our platform employs secure payment gateways to process transactions, and we do not store payment card information on our servers.

c) We use firewalls and intrusion detection systems to protect against unauthorized access and cyber-attacks.

a) Users are required to create a secure password for their accounts, and we encourage the use of strong and unique passwords.

b) We may employ multi-factor authentication (MFA) to provide an extra layer of security for user accounts.

a) We retain user data only for as long as necessary to fulfill the purposes for which it was collected or as required by law.

b) Users can request the deletion of their accounts and associated data, subject to any legal obligations or legitimate business needs.

a) Our employees undergo regular training on data security best practices to ensure the responsible handling of user data.

b) Employees are required to maintain the confidentiality of user information and sign data protection agreements.

a) In the event of a data breach or security incident, we have an incident response plan in place to promptly address and mitigate the impact of the incident.

b) We will notify affected users and appropriate authorities in compliance with applicable laws and regulations.

a) If we work with third-party vendors or service providers, we ensure that they meet data security standards and sign data protection agreements.

b) We regularly review the security practices of our vendors and partners to ensure data security.

a) We comply with all applicable data protection laws and regulations as applicable by the law of the land.

a) This Data Security Policy may be updated periodically to reflect changes in technology, business practices, or legal requirements.

b) Any material changes to the policy will be updated by the platform and will be visible on our website.

If you have any questions, concerns, or requests regarding our data security practices or this Data Security Policy, please contact us at