Privacy Policy
How we handle personal data collected through this website, and how to exercise your rights under India's Digital Personal Data Protection Act, 2023.
Last updated: 18 September 2026
1. Who we are
Zyvark Solutions (“Zyvark”, “we”, “us”) operates this website and is the Data Fiduciary for the personal data described below, as that term is used in the Digital Personal Data Protection Act, 2023 (“DPDP Act”). We are based in Chennai, India.
To be completed: registered entity name, CIN/registration number, registered office address, and the name and contact details of our Grievance Officer. If you need to reach us about this policy before that is published, use the contact form on this site.
2. What we collect
We only receive personal data that you actively submit. Specifically:
- Contact form: your name, email address, organisation (optional), the profile you select (for example investor or enterprise client), and your message.
- Newsletter and data-room forms: your email address, and which form you used.
- Technical data: your IP address is processed transiently to rate-limit our public forms and prevent abuse. It is not stored alongside your submission.
- Analytics: aggregate, cookieless page-view statistics. These do not identify you individually.
We do not collect financial information, government identifiers, or any special category of data through this website, and we ask that you do not send them to us.
3. Why we use it, and on what basis
We process this data on the basis of the consent you give when you submit a form, for these purposes only:
- To reply to your enquiry and to correspond with you about it.
- To provide investor materials you have asked for, such as data-room access.
- To send updates, where you have asked to receive them.
- To keep our forms secure and prevent automated abuse.
We do not use your data for automated decision-making or profiling.
4. Where your data is stored
We want to be straightforward about this. Submissions are stored in a managed PostgreSQL database hosted on Amazon Web Services infrastructure in the United States (us-east-1), and this website is served by Vercel's global edge network. This means your personal data is transferred outside India and stored there.
By submitting a form you consent to that transfer. If you would prefer your data not to leave India, please do not use the forms — contact us by post or telephone once those details are published, and we will handle your enquiry without storing it here.
5. Who else can see it
We do not sell your personal data, and we do not share it for anyone else's marketing. It is handled only by the service providers that run this site on our behalf:
- Vercel — website hosting, delivery and cookieless analytics.
- Neon — the managed PostgreSQL database where submissions are stored.
- An email or webhook provider — used only to alert us that a new enquiry has arrived, where configured.
We may also disclose data where we are legally required to do so, or to establish or defend a legal claim.
6. How long we keep it
- Enquiries: kept while we are in conversation with you and for up to 24 months afterwards, so we can pick up where we left off.
- Newsletter and data-room signups: kept until you ask us to remove you.
When data is no longer needed for the purpose you gave it, and we are not required to keep it by law, we delete it.
7. Your rights
Under the DPDP Act, as a Data Principal you have the right to:
- Ask what personal data of yours we hold and how we have used it.
- Have inaccurate or incomplete data corrected, completed or updated.
- Have your data erased, where we no longer need it for the purpose you gave it.
- Withdraw your consent at any time — this is as easy as giving it.
- Nominate another person to exercise these rights on your behalf.
- Raise a grievance with us, and escalate to the Data Protection Board of India if you are not satisfied with our response.
To exercise any of these, contact us through the form on this site. We will respond within a reasonable period, and in any case within the timelines the law requires. Withdrawing consent does not affect processing we carried out before you withdrew it.
8. Security
The site is served over HTTPS with HSTS, and submissions travel encrypted in transit. The database is access-controlled and reachable only over an encrypted connection. Our public forms are rate-limited and protected against automated abuse. No system is perfectly secure, but if a personal data breach occurs we will notify affected individuals and the Data Protection Board as required.
9. Cookies
This website sets no cookies — no advertising cookies, no tracking pixels, and no third-party trackers. Our analytics are cookieless and aggregate. That is why you are not seeing a cookie banner: there is nothing to consent to.
10. Children
This is a business-to-business website and is not directed at children. We do not knowingly collect the personal data of anyone under 18. If you believe a child has submitted data to us, contact us and we will delete it.
11. Changes
If we change how we handle personal data we will update this page and change the date at the top. Material changes will be highlighted here.
12. Contact
Questions about this policy, or want to exercise a right above? Use the contact form and mark your message as a privacy request.
This policy is provided for transparency about how this website works. It is not legal advice, and it is not a substitute for review by a qualified practitioner.