This Privacy Policy explains how ByteCitadel Private Limited collects, uses, stores, shares and protects information in connection with dipB2B and the Backpack Program.
This policy applies to businesses, advertisers, business representatives, agencies, offer creators, partners and users of the dipB2B dashboard.
The separate dip student app Privacy Policy applies to student users of dip.
2. Information We Collect from Businesses
We may collect:
Business number
Business email
Business name
Owner name
CIN number
GSTIN, where applicable
Website URL
Business address
City and state
Business category
Representative name
Phone number used for OTP
Business verification details
Campaign and offer details
Uploaded images and logos
Payment and subscription status
Support messages
Activity logs
3. Offer and Campaign Information
When you create an offer, we may collect:
Offer image
Brand logo
Offer title
Offer details
Brand name
Offer link
Flat discount
Percentage discount
CTA button choice
Offer terms and conditions
How to use the offer
Student types selected for boosted push notifications
Preview data
Approval status
Rejection reason or support message
Edits and resubmissions
4. Payment Information
We may collect payment-related information such as:
Payment ID
Payment status
Payment type
Amount paid
Credits or plan purchased
Subscription status
Invoice and billing details
Refund or cancellation status
Payments may be processed by Razorpay or another authorised payment gateway.
We do not store complete card numbers, CVV, UPI authentication credentials, bank passwords or full payment instrument details on our own servers.
5. Dashboard and Activity Data
We may collect dashboard activity such as:
Business account creation
Profile updates
Offer creation
Offer edits
Offer approval or rejection
Payment completion
Subscription cancellation
Downloads of CSV/XLSX files
Login and activity timestamps
IP address and technical logs
Filtering and analytics activity
This helps us operate the platform, prevent misuse, support advertisers and maintain audit records.
6. Analytics and Lead Information
dipB2B may show businesses analytics such as:
Views
Offer clicks
Copies
Soft Intent Leads
Hard Leads
Time-based graphs
Offer performance trends
A Soft Intent Lead may include a student who opened or viewed the offer.
A Hard Lead may include a student who pressed “Copy Code”, “Claim Offer”, opened a selected CTA or performed a stronger offer action.
Depending on the student consent screen and product flow, lead details may include:
Student name
College
City
Phone number or WhatsApp number
Offer selected
Action taken
Date and time of action
Lead type
7. Student Consent Before Sharing Data
Student data is not shared with an advertiser merely because a student sees an offer.
Before student data is shared with a business, dip should show a confirmation screen that explains:
The advertiser receiving the data
The offer or campaign involved
The exact fields being shared
The purpose of sharing
That the business may contact the student about that offer
The student must be able to cancel before confirming.
8. How Businesses May Use Lead Data
Businesses receiving lead data must use it only to respond to the specific offer or campaign for which the student showed interest.
Businesses must not:
Sell student data
Rent student data
Share it with unrelated third parties
Use it for unrelated marketing
Spam students
Upload it to unrelated ad platforms
Contact students after opt-out
Retain it longer than necessary
9. How We Use Business Information
We use business information to:
Create and manage business accounts
Verify businesses and representatives
Send OTPs
Review offers
Process payments
Activate subscriptions
Publish student offers
Manage listings
Show analytics
Provide lead exports
Provide support
Handle refunds and cancellations
Detect fraud or misuse
Maintain audit logs
Comply with law
Enforce our policies
10. Sharing with Service Providers
We may share limited information with service providers such as:
Payment gateways
Cloud hosting providers
SMS, WhatsApp and email providers
Analytics providers
Customer support tools
Fraud-prevention systems
Accounting or invoicing systems
Legal or compliance advisors
Such sharing is done only for business, operational, security, payment, compliance or support purposes.
11. Sharing with Authorities
We may disclose information where required by law, court order, government authority, regulator, payment partner or law-enforcement agency.
We may also disclose information to protect dip, dipB2B, students, businesses, partners or the public.
12. Lead Export Responsibility
If you download leads as CSV or XLSX, you become responsible for protecting those files.
You must store exported lead files securely, restrict access and delete them when no longer required.
You must notify us promptly if exported lead data is lost, leaked, misused or accessed by an unauthorised person.
13. Cookies and Tracking
dipB2B may use cookies, local storage and similar technologies to:
Keep you logged in
Secure your account
Remember preferences
Process payments
Understand dashboard usage
Improve performance
Detect fraud or abuse
You can control cookies through your browser, but some features may not work properly if cookies are disabled.
14. Data Retention
We retain business, campaign, payment, lead and activity records for as long as required to provide services, comply with law, resolve disputes, prevent fraud, maintain accounting records and enforce agreements.
Lead data may be retained for audit, consent evidence, campaign reporting, support and legal purposes.
Businesses should not retain exported student lead data longer than necessary for the specific campaign, unless the student becomes their customer or law requires longer retention.
15. Security
We use reasonable security measures including access controls, authentication, technical safeguards, internal restrictions and monitoring.
No digital system is completely secure. Businesses are responsible for keeping account access, exported files and internal systems secure.
16. Your Rights
Subject to applicable law, individuals may request access, correction, update, deletion or withdrawal of consent by contacting us.
We may verify identity or business authority before acting on a request.
17. Changes
We may update this Privacy Policy from time to time. Updated versions will be posted on this page.
18. Contact
Email: support@dipapp.in
Phone: +91 70414 20605
Business Name: ByteCitadel Private Limited
Website: dipapp.in, dipb2b.com
Last updated: 14 July, 2026
dipb2b Privacy Policy
1. Introduction
This Privacy Policy explains how ByteCitadel Private Limited collects, uses, stores, shares and protects information in connection with dipB2B and the Backpack Program.
This policy applies to businesses, advertisers, business representatives, agencies, offer creators, partners and users of the dipB2B dashboard.
The separate dip student app Privacy Policy applies to student users of dip.
2. Information We Collect from Businesses
We may collect:
Business number
Business email
Business name
Owner name
CIN number
GSTIN, where applicable
Website URL
Business address
City and state
Business category
Representative name
Phone number used for OTP
Business verification details
Campaign and offer details
Uploaded images and logos
Payment and subscription status
Support messages
Activity logs
3. Offer and Campaign Information
When you create an offer, we may collect:
Offer image
Brand logo
Offer title
Offer details
Brand name
Offer link
Flat discount
Percentage discount
CTA button choice
Offer terms and conditions
How to use the offer
Student types selected for boosted push notifications
Preview data
Approval status
Rejection reason or support message
Edits and resubmissions
4. Payment Information
We may collect payment-related information such as:
Payment ID
Payment status
Payment type
Amount paid
Credits or plan purchased
Subscription status
Invoice and billing details
Refund or cancellation status
Payments may be processed by Razorpay or another authorised payment gateway.
We do not store complete card numbers, CVV, UPI authentication credentials, bank passwords or full payment instrument details on our own servers.
5. Dashboard and Activity Data
We may collect dashboard activity such as:
Business account creation
Profile updates
Offer creation
Offer edits
Offer approval or rejection
Payment completion
Subscription cancellation
Downloads of CSV/XLSX files
Login and activity timestamps
IP address and technical logs
Filtering and analytics activity
This helps us operate the platform, prevent misuse, support advertisers and maintain audit records.
6. Analytics and Lead Information
dipB2B may show businesses analytics such as:
Views
Offer clicks
Copies
Soft Intent Leads
Hard Leads
Time-based graphs
Offer performance trends
A Soft Intent Lead may include a student who opened or viewed the offer.
A Hard Lead may include a student who pressed “Copy Code”, “Claim Offer”, opened a selected CTA or performed a stronger offer action.
Depending on the student consent screen and product flow, lead details may include:
Student name
College
City
Phone number or WhatsApp number
Offer selected
Action taken
Date and time of action
Lead type
7. Student Consent Before Sharing Data
Student data is not shared with an advertiser merely because a student sees an offer.
Before student data is shared with a business, dip should show a confirmation screen that explains:
The advertiser receiving the data
The offer or campaign involved
The exact fields being shared
The purpose of sharing
That the business may contact the student about that offer
The student must be able to cancel before confirming.
8. How Businesses May Use Lead Data
Businesses receiving lead data must use it only to respond to the specific offer or campaign for which the student showed interest.
Businesses must not:
Sell student data
Rent student data
Share it with unrelated third parties
Use it for unrelated marketing
Spam students
Upload it to unrelated ad platforms
Contact students after opt-out
Retain it longer than necessary
9. How We Use Business Information
We use business information to:
Create and manage business accounts
Verify businesses and representatives
Send OTPs
Review offers
Process payments
Activate subscriptions
Publish student offers
Manage listings
Show analytics
Provide lead exports
Provide support
Handle refunds and cancellations
Detect fraud or misuse
Maintain audit logs
Comply with law
Enforce our policies
10. Sharing with Service Providers
We may share limited information with service providers such as:
Payment gateways
Cloud hosting providers
SMS, WhatsApp and email providers
Analytics providers
Customer support tools
Fraud-prevention systems
Accounting or invoicing systems
Legal or compliance advisors
Such sharing is done only for business, operational, security, payment, compliance or support purposes.
11. Sharing with Authorities
We may disclose information where required by law, court order, government authority, regulator, payment partner or law-enforcement agency.
We may also disclose information to protect dip, dipB2B, students, businesses, partners or the public.
12. Lead Export Responsibility
If you download leads as CSV or XLSX, you become responsible for protecting those files.
You must store exported lead files securely, restrict access and delete them when no longer required.
You must notify us promptly if exported lead data is lost, leaked, misused or accessed by an unauthorised person.
13. Cookies and Tracking
dipB2B may use cookies, local storage and similar technologies to:
Keep you logged in
Secure your account
Remember preferences
Process payments
Understand dashboard usage
Improve performance
Detect fraud or abuse
You can control cookies through your browser, but some features may not work properly if cookies are disabled.
14. Data Retention
We retain business, campaign, payment, lead and activity records for as long as required to provide services, comply with law, resolve disputes, prevent fraud, maintain accounting records and enforce agreements.
Lead data may be retained for audit, consent evidence, campaign reporting, support and legal purposes.
Businesses should not retain exported student lead data longer than necessary for the specific campaign, unless the student becomes their customer or law requires longer retention.
15. Security
We use reasonable security measures including access controls, authentication, technical safeguards, internal restrictions and monitoring.
No digital system is completely secure. Businesses are responsible for keeping account access, exported files and internal systems secure.
16. Your Rights
Subject to applicable law, individuals may request access, correction, update, deletion or withdrawal of consent by contacting us.