Consumer Policy
Security Policy
Security is shared: we protect the storefront and transaction flow, while customers should protect their devices, OTPs, passwords and payment credentials.
Last updated: 5 August 2026
QuirkyHome will never ask for
1. Website and account safeguards
- Encrypted HTTPS connections are used to protect data in transit between supported browsers and the website.
- Authentication, access controls, server-side validation, audit/security logging and restricted administrative permissions help protect accounts and operations.
- Backups, monitoring and service-provider controls support availability and incident response.
- Security measures are reviewed as the platform changes; no website or transmission method can guarantee absolute security.
2. Payment security
Online payment sessions are created through the configured authorised payment service provider. Card, UPI or banking authentication occurs in the provider or bank-controlled flow. QuirkyHome support does not need your complete card number, CVV, UPI PIN or banking password to help with an order.
Where tokenisation or saved-payment functionality is offered by a bank, card network or provider, it is governed by that service's controls and customer consent process.
3. Protect your account and orders
- Use a private device, secure screen lock and updated browser. Do not leave an authenticated account open on a shared device.
- Verify the domain before entering information. Official consumer email uses care@quirkyhome.in.
- Do not share delivery or login OTPs with unknown callers. Independently verify any request claiming an order problem or refund.
- Review order and payment alerts promptly and contact your bank immediately for an unauthorised financial transaction.
4. Reporting a security concern
If you believe your account, order or personal information has been misused, contact us promptly at care@quirkyhome.in or through Contact Us. Include a clear description, affected URL/order reference and supporting screenshots, but do not send secrets or payment credentials.
Do not exploit, retain or publicly disclose customer data while reporting a vulnerability. We may request additional information necessary to reproduce and assess the issue.
5. Fraud and abuse prevention
We may verify, limit, pause or cancel activity reasonably associated with payment fraud, account takeover, abusive automation, false reviews, referral manipulation, coupon misuse, bid misuse or threats to customers and systems. These controls are applied subject to applicable law and legitimate customer remedies.
