Privacy Policy
LEGAL & COMPLIANCE
Effective Date: April 22, 2026 | Applies To: makinlaboratories.com
Makin Laboratories Pvt. Ltd. | Pithampur, Madhya Pradesh, India | makinlaboratories.com
SECTION 01 — Overview
Makin Laboratories Pvt. Ltd. (Makin Labs, we, us, or our) is a WHO-GMP certified contract manufacturer and CDMO headquartered in Pithampur, Madhya Pradesh, India. We operate the website at makinlaboratories.com (the "Website") to provide information about our services, capabilities, and to facilitate business enquiries.
This Privacy Policy explains how we collect, use, disclose, and protect information about visitors to our Website and individuals who contact us through digital channels including email, WhatsApp, and LinkedIn. It applies to all personal data processed in connection with our Website and digital marketing activities.
By using our Website or submitting your information through any of our digital channels, you acknowledge that you have read and understood this Privacy Policy.
SECTION 02 — Information We Collect
A. Information You Provide Directly
When you contact us through our Website contact form, email, or WhatsApp, you may provide:
- Full name
- Business email address
- Phone number (mobile/direct)
- Company name and designation
- Your message, product requirements, or enquiry details
- How you heard about Makin Laboratories (optional)
B. Information Collected Automatically
When you visit our Website, we and our third-party service providers automatically collect certain technical information, including:
- IP address and approximate geographic location (country/city level)
- Browser type and version, operating system, and device type
- Pages visited, time spent on pages, and navigation path
- Referring website (how you arrived at our site)
- UTM parameters (source, medium, campaign identifiers in page URLs)
- Date and time of your visit
C. Information from Third-Party Platforms
If you interact with our content on LinkedIn, respond to our email campaigns, or click through a WhatsApp broadcast message, we may receive engagement data such as message opens, link clicks, and interaction timestamps. We do not receive your personal profile data from these platforms without your explicit action.
SECTION 03 — How We Use Your Information
| Purpose | Data Used | Legal Basis |
|---|---|---|
| Respond to business enquiries and quotation requests | Name, email, phone, company, message | Legitimate interest / Contract performance |
| Send information about our manufacturing capabilities and services | Email address, name | Legitimate interest / Consent |
| Conduct email drip campaigns to prospective B2B partners | Business email, name, company, designation | Legitimate interest (B2B outreach) |
| Send WhatsApp broadcast messages with industry insights | Phone number (WhatsApp) | Consent |
| Show targeted advertisements on LinkedIn | Professional profile data (via LinkedIn Ads platform) | Legitimate interest / LinkedIn's terms |
| Analyse website traffic and improve our online presence | Analytics data (anonymised/aggregated) | Legitimate interest |
| Maintain records of business communications for compliance | All submitted information | Legal obligation / Legitimate interest |
We will not use your information for purposes materially different from those described above without notifying you and, where required, obtaining your consent.
SECTION 04 — Cookies & Tracking Technologies
Our Website uses cookies and similar tracking technologies to support analytics, advertising, and website functionality. Below is a description of the technologies currently in use:
| Tool / Technology | Purpose | Data Collected | Opt-Out |
|---|---|---|---|
| Google Analytics 4 (GA4) | Website traffic analysis and conversion tracking | Pages visited, session duration, device/browser, geographic region | tools.google.com/dlpage/gaoptout |
| Google Tag Manager (GTM) | Manages and deploys analytics and marketing tags | Facilitates data collection for other tools | Via browser settings |
| Google Ads (Remarketing) | Showing ads to past website visitors on Google's network | Cookie-based audience lists (no personal identifiers stored by us) | adssettings.google.com |
| LinkedIn Insight Tag | Ad conversion tracking and website audience retargeting | LinkedIn member ID (if logged in), page URL, referrer, IP, device/browser | linkedin.com/psettings/guest-controls |
| WhatsApp Chat Button | Allows visitors to initiate a WhatsApp conversation | Initiated by user action only; no passive tracking | N/A — user-initiated |
Managing Cookies
You can control and delete cookies through your browser settings. Note that disabling cookies may affect the functionality of certain parts of our Website. For more information on managing cookies, visit allaboutcookies.org.
SECTION 05 — Sharing Your Information
We do not sell or rent your personal information. We share your data only in the following limited circumstances:
Service Providers (Data Processors)
We work with trusted third-party service providers who process data on our behalf, subject to contractual data protection obligations:
- Apollo.io - Email outreach sequencing and contact management (US-based; Privacy Shield compliant)
- AiSensy / Meta WhatsApp Business API - WhatsApp broadcast messaging
- Google Workspace & Google Analytics - Email, cloud storage, and website analytics
- LinkedIn Campaign Manager - Professional advertising platform
- Canva - Design and creative asset production
- n8n - Workflow automation (self-hosted/cloud)
Legal Requirements
We may disclose your information if required to do so by law, court order, or government authority, or where we believe in good faith that such disclosure is necessary to protect our rights, your safety, or the safety of others.
Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you before your information becomes subject to a different privacy policy.
SECTION 06 — Data Retention
We retain your personal information for as long as necessary to fulfil the purposes outlined in this Privacy Policy, unless a longer retention period is required by law.
| Data Type | Retention Period |
|---|---|
| Contact form submissions and enquiry records | 3 years from date of last interaction |
| Email campaign engagement data (opens, clicks) | 2 years |
| WhatsApp broadcast opt-in records | Until you opt out, then 1 year for compliance records |
| Website analytics data (GA4) | 14 months (as set in GA4 data retention settings) |
| Active business relationship records | Duration of relationship + 7 years (Indian commercial law) |
When your data is no longer required, we securely delete or anonymise it.
SECTION 07 — Your Rights
Depending on your location and applicable law, you may have the following rights regarding your personal data:
- Right to Access - Request a copy of the personal data we hold about you.
- Right to Correction - Request that we correct inaccurate or incomplete data.
- Right to Erasure - Request deletion of your personal data, subject to our legal retention obligations.
- Right to Withdraw Consent - Where processing is based on consent (e.g., WhatsApp broadcasts), you may withdraw at any time by replying "STOP" to any message or contacting us directly.
- Right to Opt-Out of Email Campaigns - Every marketing email includes an unsubscribe link. You may also contact us to be removed from our mailing list.
- Right to Object - Object to processing for direct marketing or where we rely on legitimate interests.
- Right to Data Portability - Request your data in a structured, commonly used format (applicable under GDPR).
Unsubscribing from Communications
You can opt out of email communications at any time by clicking the "Unsubscribe" link in any email. To stop WhatsApp broadcasts, reply "STOP" to any message. To remove yourself from LinkedIn ad audiences, use LinkedIn's opt-out settings referenced in Section 4.
SECTION 08 — International Visitors
Makin Laboratories is incorporated and operates in India. Our Website is primarily intended for business professionals in India and other markets where our manufacturing services are relevant, including the United States, Europe, Southeast Asia, and the Middle East.
Indian Visitors — Digital Personal Data Protection Act, 2023 (DPDP Act)
We process personal data of Indian residents in compliance with the Digital Personal Data Protection Act, 2023. As a Data Fiduciary, we collect and process your personal data only for lawful purposes, with your consent where required, and maintain appropriate security safeguards. You have the rights described in Section 7, which align with your rights as a Data Principal under the DPDP Act.
EU/UK/EEA Visitors — General Data Protection Regulation (GDPR)
If you are located in the European Union, United Kingdom, or European Economic Area, the following applies:
- Our legal bases for processing your data are described in Section 3.
- Your data may be transferred outside the EEA to India and to US-based service providers. We rely on Standard Contractual Clauses (SCCs) or other approved transfer mechanisms for such transfers.
- You have the right to lodge a complaint with your local data protection authority.
- You have all rights described in Section 7, including explicit rights to restrict processing and to data portability under Articles 18 and 20 of GDPR.
SECTION 09 — Security
We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, accidental loss, destruction, or alteration. These measures include:
- SSL/TLS encryption for all data transmitted through our Website (https://)
- Two-factor authentication on all email accounts and marketing tools used to process your data
- Access controls ensuring only authorised personnel can access your information
- Regular review of our data handling practices and systems
- Secure password management and credential storage practices
While we take all reasonable precautions, no method of internet transmission or electronic storage is 100% secure. In the event of a data breach likely to affect your rights and freedoms, we will notify you and the relevant supervisory authority within the timeframes required by applicable law.
SECTION 10 — Children's Privacy
Our Website and services are directed exclusively to business professionals and corporate entities. We do not knowingly collect personal information from anyone under the age of 18. If you believe we have inadvertently collected information from a minor, please contact us immediately at partnership@makinlaboratories.com and we will delete such information promptly.
SECTION 11 — Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will:
- Update the "Last Reviewed" date at the top of this page
- Post a notice on our Website homepage for 30 days following the change
- Where required, notify you by email if we hold your contact details
Your continued use of our Website after the effective date of any changes constitutes your acceptance of the revised Privacy Policy. Previous versions are available on request.
SECTION 12 — Contact Us
If you have questions about this Privacy Policy, wish to exercise your rights, or have a concern about how we have handled your personal data, please reach out to us:
Makin Laboratories Pvt. Ltd.
We aim to respond to all privacy-related enquiries within 30 business days.
POSTAL ADDRESS
Pithampur, Madhya Pradesh, India
PRIVACY EMAIL
partnership@makinlaboratories.com
EMAIL SUBJECT LINE
"Privacy Request" or "DPDP Request"
WEBSITE
www.makinlaboratories.com