Privacy policy
Working draft — subject to legal review before launch.
What we collect
Account details (name, email), verification documents (company registration / GST), report documents (contracts, invoices, delivery proofs, correspondence), and standard usage logs. Invoice amounts are stored only as ranges.
How we use it
To verify suppliers, review reports, compute trust scores, notify companies of reports concerning them, and operate the platform. We do not sell personal data. Aggregated, de-identified statistics may appear in industry publications.
Reporter anonymity
Reporter identity is never disclosed to reported companies — not in notifications, public pages, or shared documents. Internally, identity is visible only to platform admins in the audit log.
Documents
Uploaded documents live in private storage, are never publicly accessible, and are viewable only by platform admins for verification purposes.
Your rights (GDPR / DPDP)
You can export all data we hold about you from your profile page at any time, and you can delete your account, which removes your personal data and unpublished reports. Published reports are business records of the reported company; deletion requests for them are assessed under applicable law.
Team member data
Company representatives listing team members in the directory attest they have consent to do so. Any listed individual can request removal at privacy@trustedmr.com.
Contact
privacy@trustedmr.com — DreamlockMR Private Limited.
Fraud prevention & security screening (MSP)
To keep our surveys and marketplace free of fraud, bots, and duplicate or fraudulent respondents, we operate Metal Shield Protection (MSP). When you enter a survey (or are screened through our API), we collect and analyse technical and behavioural signals, including:
- Device & browser characteristics — a device "fingerprint" (for example screen size, timezone, language, canvas / WebGL / audio rendering, and installed fonts) used to detect duplicate or spoofed devices.
- IP address & approximate location — country, region and (approximate) city, and whether the connection is a proxy, VPN, Tor, or datacenter network — to enforce a study's geographic targeting and detect masked traffic. IP addresses are stored in hashed form.
- Automation signals — indicators of bots, headless browsers, or anti-detect tooling.
- Interaction patterns — on survey pages we analyse behavioural signals such as mouse movement, keystroke timing, and taps to distinguish genuine human respondents from automated or scripted input. This is used only to score authenticity, not to identify you personally.
We use these signals solely to prevent fraud and protect research data quality, on the basis of our legitimate interest in keeping the platform trustworthy. To ask a question or exercise your data rights, contact us at the address in the section above.