Privacy Policy
Effective Date: 01 Jan 2026
Last Updated: 01 Jun 2026
Introduction
This Privacy Policy ("Privacy Commitment") applies to personal information and sensitive personal data or information, including information of a confidential nature (collectively, "Customer Information"), belonging to customers, potential customers, Partners, End Clients, and other users (each, a "Customer", "User", or "you") of https://ledgers.cloud, operated by LEDGERS IT Services Private Limited, its affiliates, group companies, and regional operating entities in the United Arab Emirates and the United States (collectively, "LEDGERS", "we", "our", or "us").
In the course of providing the LEDGERS software platform, including the website, mobile applications, browser extensions, APIs, and any associated documentation (collectively, the "Services"), whether accessed directly, through a Partner, or through any other online or offline platform, LEDGERS may collect, receive, possess, store, use, deal with, handle, transfer, retain, and otherwise process Customer Information. By using or accessing our Services, you confirm that you have read and understood this Privacy Commitment and consent to the collection, use, and processing of your Customer Information as described here.
This Privacy Commitment should be read together with the LEDGERS End User License Agreement (EULA) and Terms & Conditions, both of which are incorporated by reference. On data-handling matters, this Privacy Commitment shall govern where there is a direct conflict.
LEDGERS is strongly committed to protecting the privacy of its Customers and has taken all necessary and reasonable measures to protect the confidentiality of Customer Information and its transmission.
Regional Scope
LEDGERS operates across India, the United Arab Emirates, and the United States. Depending on where your Account is registered, the following region-specific frameworks may additionally apply to you:
2.1 India
This Privacy Commitment is intended to comply with the Information Technology Act, 2000, the IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, and the Digital Personal Data Protection Act, 2023, as applicable.
2.2 United Arab Emirates
This Privacy Commitment is intended to operate consistently with UAE Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data (PDPL), and, where applicable, any relevant free zone data protection regulations (such as those of the DIFC or ADGM).
2.3 United States
This Privacy Commitment is intended to operate consistently with applicable U.S. state privacy laws, including the California Consumer Privacy Act, as amended by the California Privacy Rights Act (CCPA/CPRA), to the extent such laws apply to you. Section 11 describes additional rights available to California residents.
Customer Information We Collect
Customer Information includes, without limitation, the following categories of personal data/sensitive personal data that we may collect, receive, possess, store, use, deal with, handle, transfer, and otherwise process as permitted under applicable law:
- Data about you: Your name, user IDs, signature, email addresses, phone numbers, addresses, KYC/identity documents (e.g., Aadhaar and PAN in India, Emirates ID in the UAE, or SSN/EIN in the USA), biometric data, communications with us, device and location data, and information about how you use our Services.
- Financial data: Information about your bank accounts, financial information, payment information, transaction data, sales, tax, and expense details.
- Marketing and communications data: Your preferences relating to receiving marketing messages from us and our service providers, and your communication preferences.
You must ensure that all Customer Information you provide is accurate, up-to-date, and true. You are responsible for any errors or inaccuracies in the Customer Information you share with us. When you use our Services, we make best efforts to allow you to access and correct inaccurate or deficient Customer Information, subject to any legal requirements.
How We Collect Customer Information
4.1 Direct interactions
Customer Information you consent to give us when you use our Services or interact with us, including when you create an Account, use the Services, consent to marketing communications, report a problem, give feedback, or contact us.
4.2 Automated technologies or interactions
When you use the Services, we may automatically collect data about your equipment, browsing actions, and patterns using cookies, web beacons, pixel tags, server logs, and similar technologies. We may also receive such data if you visit other websites that use our cookies.
4.3 Third parties or publicly available sources
We receive Customer Information from publicly available sources and various third parties, such as our service providers, credit bureaus, partners, alliance partners, group companies, agents, affiliates, and government portals (including GSTN, Protean/NSDL, the Ministry of Corporate Affairs, the UAE Federal Tax Authority, and the U.S. Internal Revenue Service, as applicable).
4.4 Through a Partner
If you are an End Client whose data is managed within the Software by a Partner (such as a chartered accountant, tax practitioner, or other reseller operating on the LEDGERS PRO Platform), we may also collect your Customer Information from that Partner on your behalf. Section 10 describes how this works in more detail.
How We Use Customer Information
We will only use your Customer Information as permitted under applicable law or pursuant to contractual obligations. Most commonly, we will use it to perform the Services or to comply with a legal or contractual obligation. Specific purposes include, without limitation:
- Verify your identity, register you as a Customer, and create and operate your Account(s).
- Provide the Services, including AI-powered features such as automated reconciliation, journal posting, document extraction, and conversational AI agents.
- Process payments made through our Services.
- Comply with legal obligations, including statutory and regulatory filings.
- Administer and protect our business and the Services, including for troubleshooting, data analysis, system testing, and performing internal operations.
- Risk control, fraud detection, and prevention.
- Perform our obligations arising out of arrangements we have or are about to enter into with you.
- Respond to court orders, establish or exercise our legal rights, or defend ourselves against legal claims.
- Improve customer service and effectively respond to your service requests and support needs.
- Improve the functionality of our Services based on information and feedback we receive from you.
- Send notifications to manage our relationship with you, including changes to our Services, updates pertaining to Services availed, and occasional company news.
- Monitor trends and personalise your experience.
- Market and advertise the Services to you.
- Conduct training and AI-based skill training, including training and improvement of LEDGERS' AI models and systems, subject to the safeguards described in this Privacy Commitment.
Disclosure of Customer Information
LEDGERS undertakes not to disclose Customer Information to any person, unless such disclosure is necessary to:
- Offer and provide our Services, including for the purposes set out in Section 6.
- Conform to legal requirements or comply with legal process.
- Protect or defend LEDGERS, its affiliates, or group companies' rights, interests, or property.
- Enforce the terms and conditions of the Service.
- Protect the interests of LEDGERS, its affiliates, group companies, members, constituents, or other persons.
LEDGERS will limit the collection and use of Customer Information to a need-to-know basis to deliver better service. LEDGERS may share or otherwise transfer Customer Information to third parties (including affiliates, group companies, successors, service providers, vendors, and partners), subject to suitable confidentiality obligations and in accordance with contractual terms and applicable laws. Such third parties may include partner banks, service professionals, vendors, social media companies, storage providers, data analytics providers, consultants, and lawyers.
LEDGERS may exchange, transfer, or share all or part of Customer Information with its affiliates, group companies, governmental agencies, and any third parties as may be required by applicable law, or for credit reporting, statistical analysis, credit scoring, verification, or risk management processes. The Customer shall not hold LEDGERS liable for such use or disclosure.
Storage and Transfer of Customer Information
LEDGERS complies with applicable laws and internal policies regarding the storage and transfer of Customer Information. As part of your use of the Services, the Customer Information you provide to us may be transferred to and stored in countries other than the country in which you are based. This may occur because our servers, vendors, partners, or service providers are from time to time located in a different country, including transfers between our India, UAE, and U.S. operating entities and their respective service providers.
We ensure that any recipients of Customer Information we transfer are subject to suitable confidentiality obligations, and that access to and processing of Customer Information is conducted in accordance with contractual terms, applicable laws, and our instructions, including any applicable cross-border data transfer requirements under Indian, UAE, or U.S. law.
Retention of Customer Information
LEDGERS may retain your Customer Information for as long as required to provide you with the Services in accordance with applicable laws and our internal policies, such as managing your Account, dealing with any concerns that may arise, or where required for compliance with legal or regulatory requirements, or for the institution, enforcement, or defence of legal claims.
LEDGERS may also retain your Customer Information where we need to use it for our business and related purposes, including responding to queries or complaints, fighting fraud and financial crime, or pursuant to contractual obligations.
If we do not require the retention of Customer Information, we use best efforts to destroy or delete such Customer Information in accordance with our internal policies.
Customer Information Managed by Partners (PRO Platform)
This section applies where your Customer Information is input into the Software by a Partner such as a chartered accountant, tax practitioner, or other reseller operating under the LEDGERS PRO Platform on your behalf, rather than directly by you.
10.1 Partner as Point of Contact
Where you engage a Partner who uses LEDGERS to manage your accounting, compliance, payroll, or related records, your primary relationship for the engagement of services is with that Partner. The Partner is responsible for obtaining your consent before inputting your Customer Information into the Software.
10.2 LEDGERS' Role
LEDGERS processes Customer Information submitted by a Partner on your behalf in order to provide the Software and Services to that Partner, in accordance with this Privacy Commitment. LEDGERS does not independently verify that a Partner has obtained your consent before submitting your Customer Information.
10.3 Your Rights as an End Client
If you wish to access, correct, or request deletion of Customer Information held about you within a Partner's workspace, we recommend you contact the Partner directly in the first instance. You may also contact LEDGERS using the details in Section 13, and we will direct your request appropriately.
10.4 Partner Responsibility
Nothing in this Section reduces a Partner's own obligations to its End Clients under applicable professional conduct rules, contractual arrangements, or data protection law, as further described in the LEDGERS EULA.
Your Rights
11.1 General Rights
Subject to applicable law, you may have the right to request access to, correction of, or deletion of your Customer Information, or to object to or restrict certain processing. You may exercise these rights by contacting us using the details in Section 13.
11.2 India
Where applicable under the Digital Personal Data Protection Act, 2023, you may have the right to obtain a summary of the personal data we process about you, request correction or erasure, and nominate another individual to exercise your rights in the event of death or incapacity.
11.3 United Arab Emirates
Where applicable under the UAE PDPL, you may have the right to request access to, correction of, or erasure of your personal data, to object to processing for direct marketing purposes, and to withdraw consent where processing is based on consent.
11.4 California Residents (CCPA/CPRA)
If you are a California resident, you may have the right to: (a) know what personal information we have collected, used, disclosed, or sold about you; (b) request deletion of your personal information, subject to certain exceptions; (c) correct inaccurate personal information; (d) opt out of the sale or sharing of your personal information LEDGERS does not sell personal information for monetary consideration; and (e) not be discriminated against for exercising these rights. Contact us using the details in Section 13 to exercise these rights.
11.5 Response Timeframes
We will respond to verified requests within the timeframes required under applicable law. We may decline or limit a request where permitted by applicable law, such as where retention is required for legal, regulatory, or legitimate business purposes.
Security of Customer Information
LEDGERS endeavours to safeguard and ensure the security of Customer Information using appropriate measures to protect it from unauthorised access, in accordance with standards prescribed by applicable law. LEDGERS uses appropriately secure encryption for the transmission of Customer Information.
The Customer is required to cooperate with LEDGERS to ensure the security of Customer Information. It is recommended that the Customer choose passwords carefully so that no unauthorised access is made by a third party. To make a password complex and difficult to guess, use a combination of alphabets, numbers, and special characters (such as !, @, #, $). The Customer should not disclose their password to anyone or keep any written or other record of the password such that a third party could access it.
Contact Us and Details of Grievance Officer
We welcome you to reach out to us with your queries, grievances, feedback, and comments by contacting our Grievance Officer, whose details are provided below:
Name: Mr. Deepak Menion
Designation: Grievance Officer
Company: LEDGERS IT Services Private Limited
Contact: ledgers.cloud/c/about-us
Our Opt-Out Policy
Email Marketing and sharing of confidential information: To stop receiving newsletters or marketing communications from us, or to opt out of having your email address or other data/confidential information shared with third parties, please use the "unsubscribe" mechanism provided in the communication (such as the "unsubscribe" link at the bottom of a marketing email) for us to process your request.
Updates to this Privacy Commitment
We may occasionally update this Privacy Commitment, including to reflect changes in our practices, the regions in which we operate, or applicable law. By using our Services after such an update, you consent to the updates made to this Privacy Commitment.
We encourage you to periodically review this Privacy Commitment for the latest information on our privacy practices.
This Privacy Commitment should be read together with the LEDGERS EULA and Terms & Conditions.