Legal
Privacy Policy
Effective 26 September 2026 · Last updated 26 September 2026
forUdyog is a business-to-business manufacturing and supply-chain discovery and networking platform. This policy explains what information we collect when you use forUdyog, why we collect it, who we share it with, and the choices available to you. We have written it to describe what the service actually does today rather than what it might do later.
1. Scope of this policy
This policy applies to the forUdyog public website at www.forudyog.com, to the member area you reach after signing in, and to the sourcing and request features offered through them. We refer to this service as "forUdyog", and to ourselves as "we", "us" and "our".
It does not apply to the websites, products or services of the manufacturers, suppliers, service providers, exhibition organisers or other businesses you may find, contact or transact with through forUdyog. Those organisations decide for themselves how they handle your information, and their own terms and privacy notices govern that.
If you do not agree with this policy, please do not use forUdyog.
2. Information we collect
We collect the following categories of information. We have listed what the service genuinely records; where a category depends on a feature you choose to use, we say so.
Account and identity information
To create an account you give us an e-mail address. We send a one-time code to that address to verify it, or you can sign in with Google as described in the next section. Account creation and e-mail delivery for sign-in are handled by our authentication provider, Supabase.
Registration and profile information
Before you can use the member features we ask you to complete a short registration. It records your full name, business e-mail address, mobile number, which kind of registration you chose (individual, company, educational institution or government organisation), your organisation's name where that applies, your business role, your industry affiliation, and how you heard about forUdyog. It also records whether you chose to receive updates from us; that choice is off unless you turn it on.
Company and organisation information you provide
If you claim or manage a company profile you may submit company details, descriptions, categories and capabilities, images and documents, certification information, and contact details for your business. Some of these, such as claim and verification evidence and private company contact records, are stored in restricted areas of our database and are not part of the public listing.
Sourcing requests (RFQs) and attachments
Submitting a request for quotation requires you to be signed in. The request itself records the service you selected and the technical details you enter for it, which may include materials, quantities, dimensions, tolerances, finishes, certifications and free-text notes. You may attach up to ten files, each up to 50 MB. The file types we accept depend on the service and on the field you are attaching to, and typically include engineering drawing and model formats, archives, spreadsheets, PDFs and common image formats; the form states which types that field accepts and rejects anything else. Attachments are stored in a private storage area and are not published. Because you must be signed in, the contact details associated with your request come from your account rather than from the form.
Other things you send us
If you use the "join our network" form we record the name, company e-mail address and contact number you enter, and which page you submitted it from. If you use the on-page sourcing assistant we receive the message you type and the page you were on in order to answer it; the assistant returns standard guidance and we do not keep the message.
Saved items and recent activity
If you save a company, a service listing or an exhibitor, we record that so your saved list works. We also record companies and service listings you have recently viewed so we can show them back to you. We record counts and summary records of directory and search activity for security, quota and abuse-prevention purposes.
Billing information, if you take a paid plan
Our pricing page displays paid plans. Using forUdyog does not require payment, and you are never charged without first being shown the price and confirming it. If you do take a paid plan, our records would hold your plan and subscription status, the amounts, currency, status and timestamps of a transaction, and the identifiers our payment provider returns. We do not store card numbers, CVV codes, UPI PINs or bank credentials at any time; those are handled by the payment provider and never reach our systems.
Device, request and security information
To keep the service safe we process technical information about requests: the time of the request, the page or action involved, whether it succeeded, and a value derived from your network address as described under "Security and anti-abuse information" below. We also set a cookie that lets us recognise a browser across requests for abuse-prevention purposes.
3. Google Sign-In and Google user data
forUdyog offers Google Sign-In so you can use an existing Google account instead of a password. We use it for identity and authentication only.
What we receive
When you choose Google Sign-In, our authentication provider requests only Google's basic identity scopes — your e-mail address and basic profile. Through that sign-in we receive basic identity information such as your name, your primary e-mail address, your profile image where Google makes one available, and an account identifier that lets us connect the sign-in to your forUdyog account This information is held in the account records maintained by our authentication provider; our own application tables do not copy it.
What we do with it
We use this information to authenticate you, to create or link your forUdyog account, to identify you within the product, and for account and security purposes such as recovering access and investigating suspicious activity.
What we do not request and do not access
forUdyog does not request access to your Gmail messages, your Google Drive files, your Google Contacts, your Google Calendar, or any other Google content in order to provide Google Sign-In. We do not request offline or background access to Google APIs on your behalf.
We do not use Google Sign-In information for advertising or ad targeting, and we do not sell it. Google user data obtained through Google Sign-In is used only for the purposes disclosed in this policy, and is shared only with the infrastructure providers described below that operate the service on our behalf, or where the law requires disclosure.
You can review and withdraw the access you have granted at any time in your Google account's security settings. If you withdraw it you can still sign in to forUdyog with your e-mail address and a one-time code.
4. How we use information
We use the information described above to:
- create your account, authenticate you and keep you signed in;
- provide manufacturer, supplier, service and exhibition discovery;
- receive your sourcing requests and work on them, including seeking quotations;
- operate member features such as saved lists and recently viewed items;
- respond to you and provide support;
- administer plan entitlements, access limits and quotas where those apply;
- detect, investigate and prevent abuse, scraping, fraud and other misuse;
- keep the service secure and available, and diagnose faults;
- meet legal and regulatory obligations and handle disputes.
We send you service communications connected to your account and your requests. We send other updates only where you have asked to receive them, and you can tell us to stop at any time using the contact details at the end of this policy.
5. How we handle sourcing requests
This section matters, so we have set it out plainly.
A sourcing request is not public and is not published on forUdyog. When you submit one, authorised forUdyog personnel may review it in order to act on it.
To obtain quotations or otherwise respond to your request, the information in it — which may include the specifications you entered, the attachments you provided and the contact details needed to reply to you — may be shared with selected manufacturers, suppliers or service providers that we consider relevant to what you have asked for. That is the purpose of submitting a request, and it is how a quotation reaches you.
If your request contains drawings, specifications or other material you do not want shared with third parties, please do not include it, or tell us before you send it.
6. Business directory and contact information
forUdyog publishes business directory information about companies, exhibitions and exhibitors. That information is business information about organisations, and it is different from the account information described in section 2.
Directory information may come from the companies themselves, from exhibition organisers, from public and business sources, or from people who contribute or claim a listing. It changes over time, and we do not represent that every listing has been independently audited or that every detail is current.
Business contact information is treated separately from the rest of a listing. Where contact details have been legitimately provided, authorised or designated for directory use, they may be made available to eligible signed-in users in accordance with the access, visibility and quota rules that apply to that listing and to that user's plan. Not all contact information is public. Contact details held for an exhibiting company are not shown to visitors unless that listing is marked as publicly contactable. Contact details for the organisers of an exhibition — typically an organisation's name, city, telephone number, e-mail address and website — are published openly on our public exhibition pages, because they are the published enquiry contacts for those events. Where a listing is marked as verified, that reflects the checks our platform has actually carried out for it and nothing more.
When contact information is made available to a user, we record that it happened so that we can apply quotas, prevent bulk extraction and investigate misuse.
If you are a business and you believe information about your organisation on forUdyog is inaccurate or should not be shown, contact us using the details at the end of this policy.
7. Who we share information with
We do not sell personal information. We share it in the following circumstances:
- Infrastructure and service providers who operate parts of the service for us: Supabase, which provides our database, authentication and file storage; and Vercel, which hosts and delivers the application.
- Google, where you choose to use Google Sign-In, for authentication only.
- Our authentication provider, which delivers the one-time codes used to sign in. If we later engage a separate provider to deliver other product e-mail, it would receive what it needs to send those messages.
- Selected manufacturers, suppliers and service providers, for the purpose of responding to a sourcing request you have submitted, as described in section 5.
- A payment provider, if and when paid features are enabled. Payment details are collected and processed by that provider.
- Professional advisers, and authorities or other parties where we are required to disclose information by law, or where disclosure is necessary to establish, exercise or defend legal claims, or to protect the rights and safety of users and the public.
- A successor organisation, if the service or the business operating it is reorganised or transferred, subject to this policy continuing to apply to the information transferred.
We ask providers acting on our behalf to handle information only for the purposes we have engaged them for.
8. Where information is processed
forUdyog is operated from India and serves Indian and international users. Our database is hosted in a data region in India.
The providers that run parts of the service operate globally, and some processing — including the execution of the application that serves these pages — may take place on infrastructure located outside India. Information may therefore be processed or stored in other countries, subject to appropriate contractual and technical safeguards and to applicable law.
By using forUdyog you understand that information may be processed in the jurisdictions where our providers operate.
9. How long we keep information
We keep information for as long as we need it for the purpose we collected it for. In practice that means:
- account, registration and profile information for as long as your account is active;
- sourcing requests, attachments and related correspondence for as long as needed to act on the request and for our ordinary business, accounting and dispute-handling purposes afterwards;
- company and directory information for as long as the listing is maintained on the platform;
- security, abuse-prevention and audit records for the period needed to detect and investigate misuse and to meet our legal obligations;
- billing and transaction records, where paid features apply, for the period required by tax and accounting law.
Some security records expire automatically: short-term rate-limiting counters are discarded within days, and the pseudonymous security identifiers described in section 11 expire within months unless they are connected to an ongoing investigation. Other records, including sourcing requests and the records showing that contact information was released, are retained while they remain relevant to our business, to our obligations and to the resolution of disputes. We review what we hold and remove or disconnect information when it is no longer reasonably required and we are not required to keep it.
10. How we protect information
We protect the service with technical and organisational measures appropriate to the risk. These include encrypted connections, access control enforced in the database itself so that a signed-in account can reach only the records it is entitled to, restricted private storage for documents and attachments with short-lived access links, separation of privileged server credentials from anything that reaches your browser, and logging designed to redact personal and secret values.
No online service can be completely protected against every risk, and we do not claim otherwise. If you believe your account has been compromised, or you find a security problem in forUdyog, please contact us using the details at the end of this policy.
11. Security and anti-abuse information
We keep the security of the service under continuous review and process only the technical information we need for it.
Our application does not store your network address. When you perform a protected action, we derive an irreversible identifier from your network address using a secret key, and record that derived value instead of the address itself. Our authentication provider, however, records the network address and browser identification string associated with your sign-in sessions and authentication events as part of its own security logging, and we may access those records when investigating a security incident. The same approach is used for the browser identifier described under cookies. These values let us enforce rate limits, detect automated scraping and investigate abuse without keeping a record of where you connected from.
We also record security and audit events, such as sign-in outcomes, administrative actions, changes to company records, request rates and risk decisions. These records are kept in restricted areas of our database and are not visible to other users.
12. Cookies and browser storage
forUdyog uses cookies and similar browser storage only for purposes that are necessary to run the service:
- Authentication cookies set by our authentication provider, which keep you signed in and let the server recognise your session.
- A security cookie that lets us recognise a browser between requests for abuse prevention and rate limiting, as described in section 11.
- Limited browser storage used to remember interface preferences and to keep a form draft you have typed but not yet submitted, so that you do not lose it.
forUdyog does not use third-party measurement, advertising or session-recording services, and there are no advertising or cross-site tracking technologies on the site. Some pages display country flag images loaded from a third-party image host, flagcdn.com, which, like any service that delivers an image to your browser, receives the request needed to send it; the typefaces we use are served from our own domain. Because the cookies we set are necessary for the service to work, there is no optional category for you to turn off; you can block or delete cookies in your browser, but parts of the service, including signing in, will not work if you do.
13. Your choices and your rights
You can ask us to:
- give you access to the personal information we hold about you;
- correct information that is inaccurate or incomplete;
- delete information, or close your account, where we are not required to keep it;
- stop sending you updates you previously asked for;
- explain how we have handled your information, or raise a concern about it.
In the member area you can clear your recently viewed history, remove items you have saved, manage the security settings for your sign-in, and edit any company profile you control. forUdyog does not currently offer a self-service control for deleting your account or exporting your data, so for access, correction, deletion and account closure please write to us at the address at the end of this policy and we will act on your request in accordance with applicable data protection and privacy laws. We may need to verify your identity before we act. Some records cannot be removed on request: records of transactions, of sourcing requests we have acted on, and security and audit records are retained where we need them for our obligations, for accounting, or to resolve disputes. If we cannot action part of your request, we will tell you which part and why.
If you have raised a concern with us and you are not satisfied with our response, you may be able to complain to the relevant data protection authority.
14. Our approach to data protection law
We handle personal information in accordance with applicable data protection and privacy laws, including the framework applicable in India. We aim to collect only what we need for the purposes described in this policy, to be transparent about what we do with it, to keep it secure, and to give you a clear channel for questions and requests.
15. Children
forUdyog is a business-to-business service intended for professional and business users. It is not directed to children, and we do not knowingly collect personal information from children. If you believe a child has provided us with personal information, contact us and we will take appropriate steps.
16. Changes to this policy
We may update this policy as the service changes or as the law requires. When we do, we will change the "last updated" date at the top of this page, and where the change is significant we will take reasonable steps to bring it to your attention. Continuing to use forUdyog after an update means you accept the updated policy.
17. How to contact us
For privacy questions, requests about your information, or complaints about how we have handled it, contact us and mark your message for the attention of the privacy team:
- E-mail: rfq@forudyog.com
- Telephone: +91-9147327729
We will acknowledge your request and respond within a reasonable period.
© 2026 forUdyog. All rights reserved.