Privacy Policy
Learn how we collect, protect, and use your data when partnering with Rudra IT Solutions.
01Information We Collect
We collect information you provide directly to us when you interact with our services. This includes data submitted through lead generation forms on our website, requests for free consultations or project estimates, newsletter subscriptions, job applications, and direct communications via email, phone, or messaging platforms.
The types of information we typically collect include your full name, company or organization name, business email address, phone number, project budget parameters, technical requirements and scope descriptions, and any additional details you choose to share about your project goals.
We also collect information automatically when you browse our website, including IP addresses, browser type and version, device identifiers, operating system information, referring URLs, and pages visited. This data helps us optimize site performance and improve user experience.
02How We Use Your Information
We use the information we collect for the following purposes:
Reviewing and responding to project inquiries, scoping requests, and consultation bookings.
Scheduling and conducting technical discovery workshops and milestone planning sessions.Communicating project updates, delivery timelines, and development progress reports.Sending relevant content such as engineering guides, case studies, and industry insights (only with your explicit consent).Optimizing our website performance, diagnosing technical issues, and improving user interface responsiveness.Complying with contractual obligations, service level agreements, and legal regulatory requirements.
We do not sell, rent, or lease your personal information to third parties. Your data is used exclusively to deliver and improve our software engineering services.
03Data Security & Protection
Rudra IT Solutions employs industry-standard security measures to safeguard your information against unauthorized access, alteration, disclosure, or destruction.
Our security infrastructure includes:
SSL/TLS encryption for all data transmitted between your browser and our servers.AES-256 encryption for sensitive data stored in databases and backup systems.Strict Row-Level Security (RLS) policies on all PostgreSQL database instances.Regular security audits and vulnerability assessments on our infrastructure stack.Tokenized authentication workflows using secure session management and OAuth protocols.Role-based access controls limiting internal data exposure to authorized personnel only.
All project scopes, technical specifications, and NDA-bound materials are treated with the highest degree of confidentiality. Our engineering teams operate under strict data handling protocols aligned with SOC2 compliance principles.
In the event of a data breach that affects your personal information, we will notify you within 72 hours of discovery, detailing the scope of the incident and remediation steps taken.
04Cookies & Tracking Technologies
Our website uses cookies and similar tracking technologies to enhance functionality, analyze traffic patterns, and improve user experience.
Types of cookies we use:
Essential Cookies: Required for basic site functions such as form submissions and session management. These cannot be disabled.Analytics Cookies: We use Google Analytics and Microsoft Clarity to collect anonymous usage data including page views, session duration, click patterns, and navigation paths. This helps us identify performance bottlenecks and optimize page load speeds.Functional Cookies: These remember your preferences and settings to provide a personalized experience.
You can control cookie preferences through your browser settings. Most browsers allow you to block or delete cookies. However, disabling certain cookies may affect the availability or functionality of some website features.
We retain analytics data for a maximum of 26 months before automatic anonymization. You can opt out of Google Analytics tracking by installing the Google Analytics Opt-Out Browser Add-on.
05Data Retention & Deletion
We retain your personal information only as long as necessary to fulfill the purposes described in this policy or as required by applicable law.
Project-related data (scope documents, technical specifications, communications) is retained for the duration of the engagement plus 12 months for warranty and reference purposes.
Contact form submissions and pre-sales inquiries are retained for 24 months after the last interaction.Analytics and telemetry data is anonymized after 26 months.Newsletter subscription data is retained until you request unsubscription.
You may request deletion of your personal information at any time by contacting our privacy compliance desk. We will process deletion requests within 30 days, subject to any legal obligations that require continued retention.
After the retention period expires, your data is permanently and securely deleted from all active systems and backup rotations.
06Your Rights & Choices
Depending on your jurisdiction, you may have the following rights regarding your personal information:
Right to Access: Request a copy of the personal data we hold about you.
Right to Rectification: Request correction of inaccurate or incomplete data.Right to Deletion: Request deletion of your personal information (subject to legal exceptions).Right to Restrict Processing: Request limitation on how we use your data.Right to Data Portability: Request transfer of your data to another service provider.Right to Object: Object to processing based on legitimate interests or direct marketing.Right to Withdraw Consent: Withdraw consent at any time for processing based on consent.
To exercise any of these rights, email us at maulikk@rudraitsolutions.org. We will respond to your request within 30 days. We may need to verify your identity before processing certain requests.
You also have the right to lodge a complaint with your local data protection authority if you believe we have violated applicable privacy laws.
07Third-Party Services & Data Sharing
We engage trusted third-party service providers to support our business operations. These providers are contractually bound to handle your data securely and only for the specific purposes we authorize.
Third-party services we currently use include:
Cloud Infrastructure: AWS (US East) and Supabase for database hosting and file storage.Analytics: Google Analytics 4 and Microsoft Clarity for website usage analysis.Communications: Slack and email services for project coordination and support.Payment Processing: Stripe for any billing or invoicing transactions (we do not store credit card details).Form Management: Web-based form processors for handling consultation requests.
We do not share your personal information with third parties for their own marketing purposes. When required by law, we may disclose information to regulatory authorities or law enforcement in response to valid legal requests.
Any third-party services we use are vetted for compliance with GDPR, CCPA, and SOC2 standards where applicable.
08International Data Transfers
Your information may be transferred to and processed in countries outside your country of residence, including the United States where our primary servers and infrastructure are located.
When we transfer data across international borders, we ensure appropriate safeguards are in place:
Standard Contractual Clauses (SCCs) approved by the European Commission.Data Processing Agreements (DPAs) with all sub-processors.Compliance with the US-EU Data Privacy Framework where applicable.
By submitting your information to us, you acknowledge that your data may be transferred to and processed in jurisdictions that may have different data protection laws than your country of residence. We take reasonable steps to ensure your data receives an equivalent level of protection regardless of where it is processed.
09Children's Privacy
Our services are directed at businesses, entrepreneurs, and professional clients. We do not knowingly collect personal information from children under the age of 13 (or the applicable age of consent in your jurisdiction).
If we become aware that we have inadvertently collected personal data from a child without verified parental consent, we will take immediate steps to delete that information from our systems.
Parents or guardians who believe their child may have provided us with personal information should contact us at maulikk@rudraitsolutions.org so we can investigate and facilitate deletion.
10Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or operational needs. When we make material changes, we will:
Update the "Last updated" date at the top of this page.
Notify active clients and newsletter subscribers via email of significant changes.Post a notice on our website for at least 30 days following material updates.
We encourage you to review this policy periodically. Continued use of our website or services after changes take effect constitutes acceptance of the updated terms.
If you disagree with any changes to this policy, you may cease using our services and request deletion of your data as outlined in Section 5.
11Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or how we handle your personal information, please contact our privacy compliance desk:
Rudra IT Solutions HQ
Karunesh Business Center (KBC), Yogi Chowk, Surat, Gujarat, India
Response time: We aim to respond to all privacy inquiries within 5 business days.
© 2026 Rudra IT Solutions. All rights reserved.
