Privacy Policy

Privacy Policy.

This Privacy Policy explains how Maruti Auto Agency, operating the Hyper EV One platform, collects, uses, stores, shares, protects and deletes personal data across the public website, customer application, business portals, marketplace, vehicle, battery, payment and service features.

Last updated: 2 September 2026

What this means

Clear boundaries at every step.

Who operates Hyper EV One

Maruti Auto Agency operates Hyper EV One ("Hyper EV", "we", "us" or "our") from 00 Krishna Vihar Colony, Opposite Guru Nanak College, Faizabad, Uttar Pradesh 224001, India. This Policy applies to hyperev.in, the Hyper EV customer application, and the authenticated dealer, manufacturer, service-provider and administration portals that link to it. It applies only to processing controlled by Hyper EV. A dealer, manufacturer, financier, insurer, payment provider or service professional may separately control information it collects under its own notice and legal duties.

Account and identity information

When an account is created or used, we may process a user ID, name, mobile number, email address, profile image, login provider, authentication status, role, preferred language and communication preferences. Phone numbers and email addresses may be verified through an OTP, email link or an approved identity provider. We use these records to authenticate the user, maintain the account, apply role-based access, recover access, prevent duplicate or fraudulent accounts, provide support and record acceptance of the Terms and this Policy. Passwords are handled by the authentication service and are not intended to be visible to Hyper EV staff.

Google Sign-In and Google user data

If a user chooses Google Sign-In, Hyper EV requests only the identity information needed for sign-in, currently the Google account identifier, name, email address and profile image made available by Google and Firebase Authentication. We use it to sign the user in, create or match the Hyper EV account, display the account profile and protect account security. Hyper EV does not request access to Gmail messages, Google Drive files, Google Contacts or Google Calendar through this sign-in flow. We do not sell Google user data, use it for personalised advertising, determine creditworthiness, or allow unrelated human access. Hyper EV's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Business, KYC and organisation records

A dealer, manufacturer, service professional, financier, insurer or other business applicant may submit its legal or trade name, contact person, business address, service area, tax or registration identifiers, bank or settlement details, authorisations, certificates, premises or inventory photographs and supporting KYC documents. We use this information to evaluate and verify the organisation, prevent impersonation, assign the correct portal role, manage commercial relationships, meet tax and compliance duties and maintain an auditable approval history. Only authorised reviewers and service providers supporting the verification process may access restricted KYC material.

Vehicle, ownership and battery information

Vehicle features may process a vehicle identification or registration reference, make and model, purchase and ownership records, warranty and service history, odometer information, charging events, diagnostic information, battery identifiers, battery-management-system readings, state of charge, battery-health indicators, alerts and related photographs or documents. Connected features may also process time and location associated with a trip, charging session, safety event or diagnostic record. We use this information to provide the Digital Vehicle Passport, service history, battery insights, safety functions, warranty or ownership verification and fraud-resistant records. Private vehicle records are not made public merely because a public catalogue page exists.

Marketplace, stock, orders and service records

When a user searches, compares, enquires, reserves, purchases, sells, transfers stock or raises a service case, we may process search and location criteria, selected products or vehicles, dealer or manufacturer identity, quotations, availability, stock movements, order and delivery details, service symptoms, estimates, approvals, job status, parts used, invoices, cancellation or refund reasons and communications linked to the transaction. These records are used to display relevant availability, route an enquiry to the selected provider, fulfil and support the transaction, maintain accurate inventory, resolve complaints, prevent manipulation and create the evidence required for warranty, accounting and consumer-protection obligations.

Payments, finance, insurance and refunds

Hyper EV may process an amount, currency, invoice, payment status, transaction or provider reference, masked payment method, settlement result, refund reference and fraud or reconciliation signals. Complete card numbers, CVV, UPI PINs and banking passwords must be entered only on the authorised provider's interface and are not intended to be stored by Hyper EV. If a user requests finance, insurance or repayment services, the information shown before submission may be shared with the selected authorised provider to obtain or service the requested product. Hyper EV does not use Google Sign-In data to determine creditworthiness. The responsible provider applies its own privacy notice, eligibility rules and regulatory duties.

Location and device permissions

Location may be requested when a user asks for nearby vehicles, dealers, charging or service options, chooses to tag a branch or stock location, starts a location-dependent safety feature, or records a trip or service event. Depending on the chosen feature and permission, we may receive an approximate or precise location and the associated time. Hyper EV does not treat denial as permission and does not collect location merely because the public website is opened. A user can deny or revoke location permission through browser or device settings, although location-dependent features may then be unavailable or require manual location entry.

Camera, photos, contacts, Bluetooth and notifications

Camera or photo-library access is requested when the user chooses to scan, photograph or upload a vehicle, part, invoice, KYC document, payment proof, service evidence or profile image. Contacts access is requested only for a feature in which the user selects or manages a trusted contact; the app must not upload an unrelated address book for marketing. Bluetooth access is used only when the user starts a supported nearby vehicle, battery or diagnostic-device connection. Notification permission allows order, service, safety, account and other requested operational alerts. These permissions are optional until the relevant feature is used and can be changed in operating-system settings.

Technical, analytics and security data

Our systems and infrastructure providers may automatically process IP address, browser or device type, operating-system and app version, language, time zone, session and request timestamps, notification token, App Check or integrity result, crash diagnostics, performance information, security events and limited feature-use analytics. We use this data to deliver the service, diagnose failures, measure reliability, prevent automated abuse, protect accounts and improve user-facing features. Analytics and diagnostic events are designed to avoid passwords, OTPs, full payment credentials and unnecessary document content. Advertising or promotional content, if offered, does not authorise the sale of personal data or the use of Google user data for personalised advertising.

How and why information is processed

Information is obtained directly from users, their devices when permission is granted, authorised organisations participating in a transaction, connected equipment initiated by the user, authentication or payment providers and operational records created while the service is used. We process it to provide a service requested by the user, act on consent, perform authentication and security measures, fulfil contractual and customer-support obligations, comply with applicable law, and carry out other legitimate uses permitted by applicable data-protection law. We do not use a permission or data category for an unrelated hidden purpose. Where a new purpose materially changes the processing, we will update the notice and request fresh consent where required.

When information is shared

We share personal data only as needed with the dealer, manufacturer, service professional, logistics provider, financier, insurer or other business selected for the user's transaction; with Google, Firebase and other infrastructure, analytics, messaging, maps, identity, storage and security providers acting for the platform; with an authorised payment provider or bank for payment, settlement or refund processing; with professional advisers, auditors or support contractors under confidentiality and access controls; or with a government authority, court or law-enforcement body when disclosure is legally required. We may also disclose data to prevent fraud or protect users and the service. Hyper EV does not sell personal data to data brokers.

Storage, access and international processing

Data may be stored in Firebase, Google Cloud or another approved service used to operate Hyper EV. Providers may process information in India or other countries in which they maintain secure infrastructure, subject to their contractual safeguards and applicable law. Access is limited according to account role, organisation, vehicle ownership, assigned case and operational need. A customer does not receive another customer's private record, and a business user may access only the organisation, inventory, transaction or service information authorised for that role. Public catalogue and aggregate information is separated from authenticated account, KYC, payment, location, document and vehicle records.

Retention

Account and profile information is retained while the account is active and for the limited period needed to complete closure, security and deletion processing. Notification tokens are retained only while needed to deliver enabled notifications and are removed or invalidated when no longer usable. Uploaded documents, location, vehicle, battery, service and support records are retained for the feature, ownership, warranty, safety, fraud-prevention or dispute period for which they are required. Orders, invoices, settlement, tax and legally regulated records may be retained for the period required by applicable law even after account deletion. When retention is no longer required, records are deleted, anonymised or securely isolated; identity fields in legally retained records may be pseudonymised.

Security

Hyper EV uses authenticated access, server-side authorisation, organisation and role boundaries, Firebase App Check where supported, controlled file access, audit records, validation, encryption in transit and provider-managed security controls. Administrative and sensitive operations may require recent authentication and are logged for accountability. Users should keep devices and login methods secure and must never share an OTP, password, CVV or UPI PIN with Hyper EV or a marketplace participant. No internet system can guarantee absolute security. Suspected account compromise, unauthorised access or privacy misuse should be reported promptly using the contact below.

User choices and data rights

Subject to applicable law, a user may request a summary of personal data and processing, correction of inaccurate or incomplete data, withdrawal of consent, deletion of eligible data and grievance redressal. Device permissions can be changed in browser or operating-system settings, notification preferences can be changed in the app where available, and promotional messages can be opted out of without stopping essential account or transaction messages. Withdrawing consent does not affect processing already lawfully completed and may make the related optional feature unavailable. We may verify the requester before acting so that one person cannot obtain or delete another person's records.

Account deletion

A signed-in user should open Profile and choose Delete Account, or use the secure process described at https://hyperev.in/data-deletion. If account access is unavailable, a request may be sent to marutimotors99999@gmail.com. Login access is removed through the verified deletion workflow and eligible profile, contact, uploaded-file and account-linked identity records are deleted. Records that must remain for payment, tax, warranty, safety, fraud prevention, dispute resolution or another legal duty may be retained in restricted form and their direct identity fields may be pseudonymised. The deletion response identifies the applicable outcome. Never send a password or OTP with a request.

Children

Hyper EV is a general-audience electric-mobility platform and is not directed to children under 13. Commercial purchases, payments, finance, business onboarding and partner portals are intended for persons legally capable of entering the relevant transaction or for an authorised guardian or representative. We do not knowingly use Google Sign-In to collect a child's Google account data for a child-directed service. If a parent or guardian believes a child has provided personal data without appropriate authority, they may contact us so the account and data can be reviewed and deleted where required.

Legal requests, business changes and policy updates

We may preserve or disclose information when reasonably necessary to comply with applicable law, enforce lawful rights, respond to a valid legal process, investigate fraud or protect the safety of users and the public. If the Hyper EV business is reorganised, merged or transferred, personal data may move as part of that transaction subject to applicable notice, consent and protection requirements; Google user data will remain subject to the Google API Services User Data Policy. Material changes to this Policy will be identified by a new effective date and, where required, an in-product notice or renewed consent before the new processing begins.

Privacy and grievance contact

For access, correction, consent withdrawal, deletion, a privacy complaint or a question about this Policy, contact Maruti Auto Agency by email at marutimotors99999@gmail.com, by phone at +91 83686 87082, or write to: 00 Krishna Vihar Colony, Opposite Guru Nanak College, Faizabad, Uttar Pradesh 224001, India. Please provide only the account email or phone number and a safe description of the request initially. Do not include a password, OTP, CVV, UPI PIN or unnecessary identity document. We may request proportionate verification through a secure channel before acting on an account-specific request.

Need a clear next step?

Choose the support route that matches your question.

View support options