PRIVACY POLICY

1. Information We Collect

Personal Data

Name, email, phone, designation, login details.

Organizational Data

Employee records, payroll, financial, operational, and workflow data.

Technical Data

IP address, device details, browser information, system logs.

Behavioral Data

Usage patterns, audit trails, access logs.

2. How Data is Collected

Platform usage

API integrations

Website forms

Cookies and analytics tools

Mobile/desktop applications (if applicable)

3. Purpose of Data Processing

Deliver ERP and enterprise services

Automate workflows and analytics

Improve product performance

Provide customer support

Ensure compliance and audit readiness

Prevent fraud and security threats

Enhance AIbased recommendations and automation

4. Legal Basis for Processing

Contractual necessity

Legal compliance

Legitimate business interests

Explicit consent (where required)

5. Data Sharing & Disclosure

Data may be shared with:

Authorized employees and implementation partners

Cloud infrastructure providers

Government authorities (when legally mandated)

Data is never sold.

6. Data Security Measures

Encryption (in transit & at rest)

Role-based access control

Multi-factor authentication (if enabled)

Audit logs and monitoring

Regular security updates

Secure cloud infrastructure

Vulnerability assessments and penetration testing

7. Data Retention

Data is retained:

As long as required for service delivery

As required by law

As per contractual retention policies

Clients may request deletion or export of data.

8. User & Client Rights

Users may request:

Access to their data

Correction of inaccuracies

Deletion (subject to legal constraints)

Restriction of processing

Withdrawal of consent

Enterprise clients manage user rights internally.

9. Cookies & Tracking

Used for:

Analytics

Performance monitoring

User experience optimization

Users may disable cookies via browser settings.

10. CrossBorder Data Transfers

If data is stored or processed outside India, appropriate safeguards and contractual protections are applied.

11. ThirdParty Services

Thirdparty integrations operate under their own privacy policies.

The Company is not responsible for thirdparty data practices.

12. Children’s Data

The Platform is not intended for minors.

No intentional collection of children’s data occurs.

13. Data Breach Protocol

In case of a data breach:

The Company will notify the Client promptly

Provide details of the breach

Assist in mitigation and compliance reporting

14. Policy Updates

This Policy may be updated due to legal or product changes.

Clients will be notified where required.

15. Contact & Grievance Officer

For data access, complaints, or privacy concerns, Clients may contact the designated Grievance Officer as per Indian IT Rules.