Privacy Policy

Privacy Policy

MZM Legal LLP and its related entities (“MZM”, “We”, “Us”, or “Our”) and manage the website at https://www.mzmlegal.com/and or use our mobile applications (collectively referred to as the “Website“/ “Platform”). We value Your privacy and take Our responsibilities regarding the collection, use, and protection of Your information seriously.

This Privacy Policy (“Privacy Policy”) is published in compliance with Section 43A of the Information Technology Act, 2000 (“IT Act”); Rule 4 of the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 (“SPDI Rules”); Rule 3(1) of the Information Technology (Intermediaries Guidelines) Rules, 2011; the Digital Personal Data Protection Act, 2023 (“DPDP Act”); and other applicable Indian laws.

This Privacy Policy provides a clear explanation of how We collect, use, store, process, share, and protect personal information through Our Platform, and applies to all users accessing the Platform or otherwise communicating with Us.

Scope of this Policy

This Privacy Policy applies to all current and former users who access or use Our Platform or otherwise interact with Us through email, digital forms, or other means (You” or “Your”) mentioned below;

  • Visitors who browse our Website
  • Individuals submitting inquiries through contact forms
  • Clients accessing our digital legal services or subscribing to our newsletters
  • Job applicants submitting resumes or applications online.

The collection and processing of information during the course of providing legal services, compliance assignments, due diligence, research mandates, or other contractual engagements shall be governed exclusively by the terms of such engagements and not by this Privacy Policy.

General

  1. By accessing or using the Platform or voluntarily providing Your information, You confirm that You have read and understood this Privacy Policy and consent to the collection, use, storage, sharing, and disclosure of Your information in accordance with it.
  2. We may modify, add, or remove portions of this Privacy Policy at any time. Continued use of the Platform constitutes acceptance of the revised Policy. If You do not agree with the updated terms, You must discontinue use immediately. Even if you discontinue using the Website, your previous usage will remain subject to the Policy in effect at that time.
  3. If You access or use the Platform from outside India, You do so at Your own risk and are solely responsible for compliance with local laws.
  4. If applicable data protection laws change, You expressly consent to Our continued use, storage, and disclosure of Your information to the fullest extent permitted, subject to additional consents We may seek.
  5. Provision of Personal Information and Sensitive Personal Data or Information (“SPDI”) is voluntary. However, refusal to provide necessary information may restrict Your access to certain services or features of the Platform.

Types of Personal Information Collected

We may collect various types of personal information when you interact with our Website/Platfrom, including but not limited to:

  1. Provision of Personal Information and Sensitive Personal Data or Information (“SPDI”) is voluntary. However, refusal to provide necessary information may restrict Your access to certain services or features of the Platform.
  2. Business details related to projects or contracts with MZM, including instructions, payment information, requests, or project specifics. This includes client engagement information, compliance data, matter-related documentation, regulatory requirements, dispute-related information, and billing/transaction data
  3. We may collect authentication credentials or digital access tokens necessary for accessing certain Platform features
  4. Information obtained from public sources, integrity databases, and credit agencies. We may also receive information from Your organization, government databases, regulators, credit agencies, service providers, or publicly available platforms.
  5. Details concerning significant legal cases or proceedings involving You or associated third parties, as necessary for compliance. This may include criminal history where required for compliance or due diligence.
  6. Experience, qualifications, or job preferences provided when applying for positions at MZM. This includes resumes, CV data, references, professional memberships, skills, and assessment or interview notes.
  7. Other personal information about Your preferences. For instance, communication preferences, event participation preferences, and marketing subscription preferences.
  8. Records of Your visits to our offices, which includes entry logs, security checks, time-stamped records, and CCTV footage (where applicable).
  9. We may also collect the following categories
    • age, gender, general location
    • IP address, device ID, OS/browser data, traffic logs, usage pattern
    • data collected via linked third-party widgets, embedded tools, analytics tools, cookies

Sensitive Personal Data or Information (SPDI)

  1. Under the SPDI Rules, it includes:
    • Details relating to an individual’s physical, physiological, or mental health condition.
    • Financial information, including bank accounts, cards, and other payment credentials.
    • Passwords or similar authentication information.
    • Medical records, treatment information, or health history.
    • Biometric identifiers, such as fingerprints, facial or voice data.
    • Information relating to an individual’s sexual orientation.
    • Any information that is linked to or derived from the above categories.
    • Any such information shared with MZM for processing or under a lawful contract.
    • Some information collected by MZM, such as dietary needs, accessibility requirements, legal case history, or compliance information, may constitute personal information qualifying as SPDI.
  2. Please note we collect SPDI only where necessary and only with Your explicit consent unless another legal basis is available.
  3. If You choose not to provide SPDI or withdraw consent, certain services or access to the Platform may be restricted.
  4. If Indian data protection laws change, You consent to continued processing of Your information to the fullest extent permitted. We may contact You for additional consents as required by law.

Confidentiality and Usage of Personal Information

Your personal information will be treated as confidential and used solely to support your relationship with MZM, in accordance with Indian laws concerning sensitive data. Information you post in public areas of the Website is not considered personal information under this Policy.

How We Collect Information

We may collect your personal data through the following means:

  1. When you or your organization use our Website/Platform, attend our events, sign up for updates, or provide services
  2. Data received from your organization, other companies, government agencies, credit agencies, service providers, or public records
  3. Generally, you provide your personal data voluntarily. There are typically no adverse consequences if you choose not to consent or provide personal data.

How We Use Your Personal Information

MZM does not sell or rent your personal information. We use Your Information, including Personal Information and SPDI, for the following purposes (“Purposes”)

  1. We use Your Information to verify Your eligibility to access Our Platform and to enhance Your overall experience while using it.
  2. We use Your Information to provide legal advice, professional services, and any other services You request from Us.
  3. We use Your Information to manage Our business relationship with You, including administering Your account, responding to correspondence, handling payments, issuing invoices, and providing ongoing client support.
  4. We use Your Information to fulfil legal, statutory, and regulatory obligations, including record-keeping, documentation, compliance checks, and screening against sanction lists, as well as confirming Your identity where required.
  5. We use Your Information to review, assess, and improve the quality, relevance, and delivery of Our services, communications, and digital interactions.
  6. We use Your Information to maintain the security, integrity, and proper functioning of Our offices, information systems, digital infrastructure, and online platforms, and to detect, prevent, or investigate fraud, cybersecurity incidents, or unlawful conduct.
  7. We use Your Information to address insurance-related matters, including risk assessment, claim management, and compliance with insurance requirements applicable to Our business.
  8. We use Your Information to ensure compliance with Our internal policies, professional standards, operational procedures, and ethical obligations.
  9. We use Your Information to identify authorised representatives acting on behalf of clients, suppliers, partners, or other relevant stakeholders for the purpose of communication or service delivery.
  10. We use Your Information to comply with regulatory requirements, respond to enquiries from government authorities and regulators, and fulfil obligations relating to audits, inspections, filings, and legal reporting.
  11. We may share Your Information with third-party vendors, consultants, and service providers operating under confidentiality obligations, where such sharing is necessary for delivering services, processing data, hosting infrastructure, storing information, or supporting Our operations.
  12. We may disclose Your Information to courts, tribunals, governmental bodies, law-enforcement authorities, or regulators for complying with judicial orders, legal processes, or for protecting MZM’s legal rights, interests, or obligations.
  13. We may use and process Your Information for any related purpose or any specific reason for which You voluntarily provided Your Information to Us.
  14. With your express consent, we may also use your personal information to:
    • Communicate legal updates newsletters, regulatory alerts, and information about our services
    • Invite you to participate in surveys, events, webinars, seminars, workshops, or other engagements conducted by Us.
    • Collect your preferences to personalize our communications

We will only send you marketing communications if you have opted in, as required by law, and you may opt out at any time. We do not use your personal information for automated decision-making or profiling beyond the purposes described above. Depending on the case, we may process your data to fulfill client instructions or contracts, comply with legal obligations, pursue our legitimate interests (unless overridden by your rights), or with your express consent.

Sharing of Personal Information

We may share your personal information in the following situations:

  1. With other MZM entities for internal administration, coordination, and service delivery
  2. With third-party service providers, consultants, technology partners, IT support teams, and cloud-hosting vendors who assist in operating and securing Our systems, subject to confidentiality obligations.
  3. With professional advisors such as auditors, accountants, insurers, and external legal counsel for compliance, insurance, audit, and advisory purposes.
  4. With government authorities, regulatory bodies, and enforcement agencies when required to comply with statutory obligations, regulatory requests, or lawful investigations.
  5. With courts, tribunals, arbitrators, dispute-resolution bodies, and law-enforcement authorities as necessary for legal proceedings, enforcement of rights, or protection against legal claims.
  6. With trusted partners who assist with due-diligence activities, background verification, anti-fraud measures, and compliance checks.
  7. Anonymised and aggregated data (which does not identify You) is shared with third parties for analysis, research, industry insights, or service-improvement purposes.
  8. With individuals or entities specifically authorised or instructed by You, or where sharing is necessary for the purpose for which You provided the information.

We will only disclose your personal information based on your instructions or permission, as required by law, or to investigate suspected fraud or criminal activity.

If you provide information about others, you must have proper authorization and ensure they are informed about this Policy and its contents.

Data Security

  1. MZM implements appropriate technical, organizational, and administrative measures to protect Your Personal Information against unauthorized access, disclosure, alteration, or destruction. Such measures include internal security protocols, access-control restrictions, secure storage systems, encryption-based protections where applicable, and confidentiality obligations imposed on personnel handling such information.
  2. Access to Personal Information is strictly limited to authorised personnel who require such access for legitimate business or professional purposes, and all such personnel are bound by confidentiality and data-protection obligations.
  3. While We take reasonable care and adopt industry-standard security safeguards, You acknowledge that the transmission of information over the internet carries inherent risks, and MZM shall not be liable for any unauthorised access, interception, or misuse of information beyond its reasonable control, except in cases of gross negligence or wilful misconduct
  4. Personal Information may be stored in electronic or physical form and may be processed or hosted on servers located within or outside India, in compliance with applicable data-protection laws. Where third-party service providers, technology partners, or cloud-hosting entities process such information on Our behalf, they do so subject to contractual confidentiality and security obligations.
  5. MZM shall not be responsible for any loss, damage, or unauthorized access arising from circumstances beyond its reasonable control, including force-majeure events such as natural disasters, system failures, cyberattacks, civil unrest, power disruptions, or other unforeseen events.

Accuracy and Responsibility

  1. We take reasonable steps to ensure that the Personal Information We hold is accurate, complete, and up to date; however, You remain responsible for ensuring the accuracy and authenticity of the information You provide, and for obtaining any necessary permissions or authorisations required for its submission.
  2. You may request access to, correction of, or updates to Your Personal Information or SPDI, subject to legal requirements and verification processes. MZM may deny or limit such requests where permitted under applicable law or where such access may affect another person’s rights or confidentiality.
  3. MZM cannot guarantee the accuracy, completeness, or authenticity of any information submitted by You, and shall not be liable for any consequences arising from incorrect, incomplete, or unauthorised information provided by You.

Your Rights and Contact Information

  1. You can withdraw your consent for the use of your sensitive personal information at any time by emailing grievance.officer@mzmlegal.com. This withdrawal will only affect future use and may impact your access to certain services.
  2. If you want MZM to delete your sensitive personal information, you can request deletion by emailing grievance.officer@mzmlegal.com.
  3. Changing or deleting specific details may result in the cancellation of your Website registration or loss of access to certain features.
  4. Some information cannot be changed or deleted if required by law or for legal proceedings.
  5. We are committed to protecting your personal information and value your trust and support.
  6. If you have questions about privacy or data protection, contact lawyers@mzmlegal.com.
  7. We welcome your feedback regarding our Website and Privacy Policy.
  8. For other questions or comments, please email lawyers@mzmlegal.com.

Disclaimer

MZM takes reasonable security measures to protect Your Information; however, no system is fully secure. MZM does not guarantee that Your Information or communications will always remain private or free from unauthorized access. You assume all responsibility and risks associated with Your use of the Platform and any information You submit or access online.

Indemnity

You agree to indemnify and hold harmless MZM from any claims, losses, or liabilities arising from Your disclosure of information to third parties or Your use of third-party websites or resources. MZM is not responsible for actions of third parties with whom You choose to share Your Personal Information.

13. Grievance Officer

13.1 For any questions or concerns regarding this Privacy Policy, You may contact the Grievance Officer at:

Name: Nirang Mehta

Email: grievance.officer@mzmlegal.com

Address: MZM Legal LLP, Level 6, One Forbes, Kalaghoda, Fort, Mumbai – 400001, India

The Grievance Officer will address grievances within the timelines prescribed under applicable law.