Information Security and Data Protection Policy
This policy establishes the security measures, responsibilities, and procedures implemented by Zooperklook LLP, operator of the Autobro platform, to protect dealer information, vehicle inventory records, business analytics, financial data, customer information, and other business-critical assets.
1Purpose
The purpose of this Information Security and Data Protection Policy is to safeguard the confidentiality, integrity, and availability of information processed, stored, or transmitted through the Autobro platform.
2Scope
This policy applies to:
- Autobro platform users
- Employees, contractors, and authorized personnel
- Dealer and business accounts
- Vehicle inventory and stock management data
- Sales and financial reporting data
- Customer and communication records
- Uploaded images, documents, and files
- Cloud infrastructure, APIs, and supporting systems
3Data Classification
Zooperklook LLP classifies information based on its sensitivity and business impact.
| Data Category | Classification |
|---|---|
| Login Credentials and Authentication Data | Critical |
| Financial Reports, Profit and Loss Data | Critical |
| Customer Information and Communication Records | High |
| Vehicle Inventory and Business Data | High |
| Images, Documents and Attachments | Medium |
| Public Marketing Content | Low |
Appropriate security controls are applied based on the classification level.
4Information Security Controls
A. Technical Security Measures
Zooperklook LLP implements industry-standard security controls, including:
- SSL/TLS encrypted communication
- Secure cloud-hosted infrastructure
- Data encryption during transmission
- Firewall and network protection measures
- Automated backup systems
- Secure API authentication mechanisms
- Access logging and monitoring
B. Access Control Measures
Access to data is restricted based on business requirements. Controls include:
- Role-based access permissions
- Multi-level user authorization
- Administrative access restrictions
- Session management controls
- Password protection and authentication policies
C. Operational Security Measures
To maintain ongoing security, Zooperklook LLP conducts:
- Security monitoring
- System performance monitoring
- Internal security reviews
- Periodic vulnerability assessments
- Security awareness and compliance activities
5Platform and Account Security
Zooperklook LLP maintains security controls designed to protect user accounts and platform access, including:
- Secure authentication processes
- Protected login sessions
- Account activity monitoring
- Unauthorized access prevention measures
- Abuse detection and fraud prevention systems
Users are responsible for maintaining the confidentiality of their login credentials and account access information.
6Data Breach Response Procedure
Zooperklook LLP maintains an incident response process to address potential security incidents.
In the event of a suspected or confirmed data breach, the following actions may be taken:
- Immediate containment and system isolation.
- Internal investigation and impact assessment.
- Identification of affected systems and data.
- Remediation and corrective actions.
- Notification of affected users where legally required.
- Reporting to regulatory authorities when applicable.
The response process is designed to minimize disruption and protect affected information.
7Regulatory Compliance
Zooperklook LLP aims to maintain compliance with applicable laws, regulations, and industry practices, including:
- Information Technology Act, 2000 (India)
- Digital Personal Data Protection Act (DPDP), where applicable
- Applicable cybersecurity and privacy regulations
- Industry-standard SaaS security practices
- Security frameworks commonly adopted by cloud-based software providers
8Backup and Disaster Recovery
To ensure business continuity and data resilience, Zooperklook LLP maintains:
- Automated daily backups
- Redundant storage mechanisms where applicable
- Disaster recovery procedures
- Data restoration capabilities
- Business continuity planning processes
Recovery procedures are periodically reviewed and tested to ensure effectiveness.
9Data Retention and Secure Disposal
Data is retained only for as long as necessary to:
- Provide Services
- Meet operational requirements
- Comply with legal and regulatory obligations
- Resolve disputes and enforce agreements
When information is no longer required, Zooperklook LLP follows secure deletion and disposal practices designed to prevent unauthorized recovery or access.
10Third-Party Systems and API Dependency
Autobro may integrate with third-party APIs, government databases, automotive information providers, payment gateways, cloud infrastructure providers, communication services, and analytics platforms.
Data Source and Accuracy Disclaimer
Certain information displayed within Autobro, including vehicle details and related records, may be retrieved from external systems and third-party data providers.
While Zooperklook LLP takes reasonable measures to ensure service reliability, we do not control or guarantee the accuracy, completeness, availability, or timeliness of third-party data sources.
Accordingly, Zooperklook LLP shall not be liable for:
- Data inaccuracies
- Incomplete information
- Delayed updates
- API service interruptions
- Third-party server failures
- External system downtime
Users are encouraged to independently verify critical information before relying upon it for operational or business decisions.
11Employee and Personnel Responsibilities
All employees, contractors, consultants, and authorized personnel are required to:
- Maintain strict confidentiality of information.
- Access data only when authorized.
- Follow company security policies and procedures.
- Report suspected security incidents immediately.
- Participate in security and compliance awareness activities.
Unauthorized access, disclosure, or misuse of information may result in disciplinary action, termination, or legal proceedings.
12User Responsibilities
Users of the Autobro platform are responsible for:
- Protecting account credentials.
- Using strong passwords.
- Maintaining accurate account information.
- Ensuring authorized use of uploaded data.
- Reporting suspicious account activity.
Users should immediately notify Zooperklook LLP if they suspect unauthorized access to their account.
13Policy Review and Updates
This policy shall be reviewed:
- At least annually;
- Following significant platform changes;
- After major security incidents;
- Upon changes in applicable laws or regulatory requirements.
Zooperklook LLP reserves the right to update this policy as necessary to maintain compliance, security, and operational effectiveness.
14Contact Information
For security-related concerns, incident reporting, or compliance inquiries, please contact:
Zooperklook LLP
Autobro Security and Compliance Team
Email: info@zooperklook.com
Website: autobro.in