We believe privacy is a fundamental human right , not a legal formality. This policy explains β in plain language β exactly what data we collect, why we collect it, how we protect it, and the complete control you hold over it.
Six unbreakable commitments β not legal jargon
Welcome to the Privacy Policy of the Luckybhau Prosperity Architect Platform ("Platform," "we," "us," or "our"). This document governs how we collect, use, store, protect, and share your personal information when you interact with our website, services, educational sessions, WhatsApp groups, Telegram communities, or any associated digital touchpoint.
We wrote this policy in plain, human language β not legal gibberish β because we believe you have the right to clearly understand how your data is handled. If you ever have questions about anything here, please reach out. We genuinely welcome the conversation.
By using our platform, you consent to the practices described in this policy. If you disagree with any part of this Privacy Policy, please discontinue use of our platform and contact us to have your data removed. We will process deletion requests within 30 days.
This policy is compliant with India's Digital Personal Data Protection (DPDP) Act, 2023 , the Information Technology Act, 2000, and aligns with international best practices including GDPR principles .
For the purpose of data protection laws, the data controller responsible for your personal information is:
Platform Name: Luckybhau Prosperity Architect Platform
Founder / DPO: Luckybhau
Primary Email: hello@luckybhau.com
Privacy Email: privacy@luckybhau.com
Country of Operation: India
Grievance Officer Email: grievance@luckybhau.com
We act as the Data Fiduciary under India's DPDP Act 2023, meaning we determine the purpose and means of processing your personal data. We are committed to processing your data lawfully, fairly, and transparently in accordance with all applicable regulations.
We collect only the minimum data necessary to deliver our services effectively. Here is a complete, transparent breakdown:
β οΈ This data is used exclusively to prepare your HLV report. It is never shared externally and is treated with the highest sensitivity.
What we NEVER collect: Government ID numbers (Aadhaar, PAN), bank account or card details, passwords or PINs, biometric data, precise real-time location, or any sensitive personal information beyond what is explicitly listed above.
We collect data through the following clearly defined channels β always with your awareness:
We never purchase data lists or obtain your information from data brokers. Every piece of data we have about you was either provided directly by you or collected with your knowledge through legitimate platform interactions.
Every use of your data has a clear, specific purpose. Here is our complete, transparent table of purposes:
| Purpose | Data Used | Legal Basis | Can Opt Out? |
|---|---|---|---|
| Session Booking & Confirmation | Name, Phone, Email | Contract performance | No (core service) |
| HLV Calculation & Report | Financial awareness data | Consent (explicit) | Yes β always |
| WhatsApp Follow-Up | Phone number | Legitimate interest + Consent | Yes β opt out anytime |
| Email Newsletter / Updates | Email address | Consent | Yes β unsubscribe link |
| Platform Improvement | Anonymous usage data | Legitimate interest | Partial (cookies) |
| Community Events & Invitations | Name, Phone, City | Consent | Yes β always |
| Legal Compliance | As required by law | Legal obligation | No (legal mandate) |
We will never use your data for a purpose not listed above without first seeking your explicit consent. If our purposes change, we will notify you in advance and give you the opportunity to withdraw consent before the new processing begins.
We NEVER sell, rent, or trade your personal data. This is an absolute, unconditional commitment β not subject to exceptions based on business circumstances, partnerships, or financial pressures.
We may share your data only in these strictly defined, limited circumstances:
We work with a small number of trusted technology providers who help us operate our platform. These include: email service providers, website hosting services, and analytics tools. All providers are bound by Data Processing Agreements (DPAs) and may only use your data to deliver services to us β never for their own purposes.
We may disclose data if required by a valid court order, law enforcement request, regulatory authority, or to protect the legal rights, safety, or property of our platform and its users. We will notify you of such disclosures where legally permissible.
In the unlikely event of a merger, acquisition, or asset sale, your data may be transferred to the acquiring entity. We will notify you 30 days in advance and give you the option to delete your data before any transfer occurs.
We take the security of your personal data seriously and implement multiple layers of protection to safeguard it from unauthorized access, alteration, disclosure, or destruction.
Your data is stored on secure servers located in India or within jurisdictions that provide adequate data protection standards. All storage facilities are ISO 27001 certified or equivalent.
In the event of a data breach that affects your personal information, we will notify you within 72 hours of becoming aware of the breach, in compliance with DPDP Act requirements. Notification will include: the nature of the breach, data affected, steps we are taking, and recommended actions for you.
Important: No method of data transmission or storage is 100% secure. While we use best-in-class security measures, we cannot guarantee absolute security. We encourage you to use strong passwords and not share session access links with others.
We keep your data only as long as necessary for the purposes outlined in this policy or as required by law. Our retention schedule is transparent and time-bound:
| Data Type | Retention Period | Reason | Deletion Method |
|---|---|---|---|
| Session booking data | 3 years | Service records & legal compliance | Secure wipe |
| HLV calculation data | 2 years | Follow-up session preparation | Permanent deletion |
| Email communications | 3 years | Dispute resolution capability | Secure archive then deletion |
| WhatsApp messages | 1 year | Service quality & compliance | Deletion from records |
| Website analytics data | 26 months | Platform improvement | Anonymization then deletion |
| Financial / payment records | 7 years | Indian tax & legal requirements | Secure archive |
| Newsletter subscribers | Until unsubscribed | Consent-based communication | Immediate on unsubscribe |
Right to early deletion: You may request deletion of your data at any time before the standard retention period expires. We will fulfill verified deletion requests within 30 days, except where legal obligations require us to retain certain records.
Under India's Digital Personal Data Protection Act 2023, and consistent with international privacy standards, you have the following comprehensive rights regarding your personal data:
To exercise any of these rights: Email privacy@luckybhau.com with your full name, contact number, and the specific right you wish to exercise. We will verify your identity and respond within the timelines above. All rights are exercised at zero cost to you.
Our website uses cookies and similar tracking technologies to improve your experience and understand how visitors use our platform. Here is a complete breakdown:
You can control cookies through your browser settings. Most browsers allow you to refuse cookies or delete existing ones. Please note that disabling essential cookies may impact website functionality. You can also use browser extensions like uBlock Origin for additional tracking protection.
We use WhatsApp and Telegram as primary communication channels. Understanding the privacy implications of these platforms is important:
What we use it for: Session confirmations, follow-up communications, sharing HLV reports, community updates, and responding to your queries.
Your number: Never shared with third parties. Only used for platform communications.
Community groups: When you join our WhatsApp groups, your number may be visible to other group members. Leave any group at any time.
WhatsApp's own privacy: WhatsApp has its own Privacy Policy (Meta/Facebook). We recommend reviewing it at whatsapp.com/legal/privacy-policy.
Our Telegram community channels are public/semi-public spaces. Messages you post in these channels may be visible to other members. We do not store or process Telegram message content on our own servers.
Our official pages on YouTube, Instagram, and Facebook are governed by those platforms' privacy policies. We collect only publicly visible interactions (likes, comments) for engagement analytics. We do not access your private social media data.
Opt-out of WhatsApp communication: Simply send "STOP" to our WhatsApp number or email us at privacy@luckybhau.com and we will remove you from all WhatsApp communication within 24 hours.
Protecting the privacy of children is of paramount importance to us. Our platform is designed for adults aged 18 and above.
If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately at privacy@luckybhau.com. We will investigate and delete the data within 7 days.
Our platform may contain links to external websites, resources, or services that are not operated by us. These include:
We have no control over, and assume no responsibility for, the content, privacy policies, or practices of any third-party websites or services. We strongly advise you to review the Privacy Policy of every site you visit. Clicking a link on our platform does not mean we endorse the privacy practices of the linked site.
AstoneaOne is a separate platform with its own Privacy Policy and Terms of Service. Your participation in AstoneaOne creates a data relationship directly with AstoneaOne. We recommend reviewing their policies independently at their official website.
As a primarily India-based platform, we store and process most data within India. However, some of our service providers may operate internationally, which could result in your data being processed in other countries.
When your data is transferred internationally, we ensure adequate protections are in place:
Common international services we use: Google Analytics (USA β anonymized, Standard Contractual Clauses apply), Email service providers (India/USA β DPA in place). All transfers comply with India's DPDP Act 2023 and applicable regulations.
We may update this Privacy Policy periodically to reflect changes in our data practices, legal requirements, or platform services. We are committed to transparent communication about any such changes.
Your options on policy change: If you disagree with material changes to this policy, you have the right to discontinue use of our platform and request deletion of your data before the new policy takes effect. Continued use after the effective date constitutes acceptance.
The date at the top of this policy ("Last Updated") indicates when the most recent changes were made. We encourage you to review this policy periodically. The current version is always available at luckybhau.com/privacy .
If you have any questions, concerns, or wish to exercise any of your data rights β please contact us. We promise to respond promptly, personally, and helpfully.
If you are not satisfied with our response to a privacy complaint, you have the right to lodge a complaint with India's Data Protection Board of India once established under the DPDP Act 2023, or approach the Consumer Forum under the Consumer Protection Act 2019. National Consumer Helpline: 1800-11-4000 (toll-free).
By using our platform, you acknowledge that you have read and understood this Privacy Policy. We are committed to honoring every promise made in this document β not because the law requires it, but because your trust is the foundation of everything we do.
No question about your privacy is too small. We read every email, respond personally, and take every concern seriously. Your trust means everything to us.