Effective Date: June 26, 2026
Last Updated: June 26, 2026
1. Parties and scope
This Checkout Data Processing Addendum ("Addendum") forms part of the agreement between:
- SEQUENS LLP (operating QuantaRoute), a company registered in India ("QuantaRoute", "Data Processor", "Processor")
- The merchant entity that accepts this Addendum during QuantaRoute Checkout onboarding ("Merchant", "Data Fiduciary" for buyer personal data)
This Addendum applies when Merchant uses QuantaRoute Checkout — the address capture widget, OTP authentication, saved addresses, payment configuration, webhooks, and related Edge Functions — to process personal data of Merchant's buyers ("Buyers", "Data Principals").
Our general Privacy Policy and Terms & Conditions govern Merchant's use of the QuantaRoute developer portal and APIs. This Addendum supplements those documents for checkout buyer data.
2. Roles under the DPDP Act
Merchant acknowledges that QuantaRoute does not control Merchant's relationship with Buyers and is not responsible for Merchant's privacy notices, consent practices, or lawful bases for processing.
3. Data categories processed
QuantaRoute may process the following categories of Buyer personal data on behalf of Merchant:
QuantaRoute does not store full payment card numbers. Card data is handled directly by Razorpay when Merchant uses BYO Razorpay mode.
3.1 Search library enhancement (de-identified)
Buyer delivery address data captured through Checkout may contribute to QuantaRoute Search — the shared geocoding and address-autocomplete library — only in de-identified form and only where Merchant has obtained valid Buyer consent (or another lawful basis under the DPDP Act).
Merchant must inform Buyers in its privacy notice that de-identified address components may be used to improve QuantaRoute location services, and obtain consent where required.
Included in the search library (location components only):
- Coordinates (latitude, longitude), DigiPin codes
- Pincode, locality, district, state, country
- Street name, building or premises name (where part of the address structure), normalized address tokens
- Administrative and street-context fields derived from spatial conflation (see QuantaRoute technical documentation)
Explicitly excluded — never written to the search library index:
- Email address, phone number, personal name
- Flat or unit number, floor number, saved-address label (e.g., "Home", "Office")
Excluded fields may still be processed transactionally for Checkout (OTP, delivery, saved addresses) but are stripped before search-library indexing. Merchant remains responsible for lawful collection and Buyer notices for all fields.
Buyer rights: Buyers should direct access, correction, erasure, and consent-withdrawal requests to Merchant (Data Fiduciary). Merchant may request search-library removal via Checkout erasure tools or quantaroute@gmail.com.
Merchant opt-out: Merchant may disable search-library contribution for Checkout address data by contacting hello@quantaroute.com (prospective effect; transactional Checkout continues).
4. Processor obligations
QuantaRoute will:
5. Merchant obligations
Merchant will:
- Provide Buyers with a clear privacy notice explaining checkout data collection, purposes (including de-identified search-library enhancement per Section 3.1), and rights
- Obtain valid consent or establish another lawful basis under the DPDP Act before collecting Buyer personal data before Buyer address data may be used for QuantaRoute Search library improvement
6. Sub-processors
Merchant authorises QuantaRoute to engage the following categories of sub-processors. Material changes will be reflected in an updated Privacy Policy or notice where required by law:
Merchant CRM integrations (MoEngage, CleverTap, WebEngage) are activated only when Merchant provides credentials; QuantaRoute routes events on Merchant's instruction.
7. Security
QuantaRoute maintains technical and organisational measures aligned with the IT Rules, 2011 and DPDP Act, including TLS encryption, hashed credentials, API key authentication, rate limiting, and access controls on production systems.
Merchant is responsible for securing its Admin API key (qca_…), geocoding keys, webhook secrets, and Razorpay credentials. Keys displayed once at onboarding must be stored in a password manager.
8. Personal data breach
If QuantaRoute becomes aware of a personal data breach affecting Buyer data processed on behalf of Merchant, QuantaRoute will:
- Take reasonable steps to contain and remediate the breach
- Notify Merchant without undue delay with information reasonably available about the nature of the breach and mitigation steps
- Cooperate with Merchant's obligations to notify the Data Protection Board of India and affected Data Principals as required under the DPDP Act <!-- counsel should verify notification timelines when rules are final -->
Merchant is responsible for notifying Buyers and authorities when Merchant, as Data Fiduciary, determines notification is required.
9. Erasure and retention
Merchant may request Buyer erasure via the Checkout dashboard (Buyer data & DPDP section) or POST checkout-admin?action=erase_buyer with buyer ID, email, or phone. QuantaRoute will process verified erasure requests within 30 days, providing at least 48 hours' notice before permanent deletion where practicable.
10. Audit rights
Upon reasonable written request and subject to confidentiality, QuantaRoute will provide Merchant with information reasonably necessary to demonstrate compliance with this Addendum. On-site audits may be conducted no more than once per year with 30 days' notice, during business hours, and without disrupting operations. Merchant bears its own audit costs unless a material breach by QuantaRoute is confirmed.
11. Liability
Each party's liability under this Addendum is subject to the limitation of liability in the Terms & Conditions. Neither party excludes liability for fraud, wilful misconduct, or matters that cannot be limited under applicable law.
Processor liability for Buyer data breaches caused by QuantaRoute's failure to meet Processor obligations is limited to direct damages reasonably foreseeable at the time of the breach, except where law requires otherwise.
12. Term and termination
This Addendum begins when Merchant accepts it during checkout onboarding and continues while Merchant uses QuantaRoute Checkout. Upon termination, QuantaRoute will delete or anonymise Buyer personal data per Section 9, except where retention is required by law.
13. Governing law
This Addendum is governed by the laws of India. Courts in West Bengal, India have exclusive jurisdiction, consistent with the Terms & Conditions.
14. Acceptance
By checking the acceptance box during merchant onboarding or continuing to use QuantaRoute Checkout after this Addendum is posted, Merchant agrees to this Checkout Data Processing Addendum.
Questions: quantaroute@gmail.com | hello@quantaroute.com
SEQUENS LLP — QuantaRoute Checkout Data Processing Addendum