Configuration

COLORS
CUSTOM CURSOR
Company

PRIVACY POLICY GLOBAL

Choose the policy applicable to India or the global policy. Policy wording is reproduced from the supplied source content.

Revuteck

PRIVACY POLICY GLOBAL

Introduction & Purpose

We respect your privacy and are committed to handling your personal data with transparency and care. This Policy describes:

  • The categories of personal data we collect.

  • How and why we process that data.

  • Legal bases for processing under global privacy laws.

  • Your rights and how to exercise them.

  • Our data-protection practices and safeguards.

  • How to contact us or lodge a complaint.


Scope & Applicability


This Policy governs personal data collected or processed when you:

  • Visit any Revuteck digital property (websites, portals, mobile apps).

  • Engage our digital-marketing, software-development, data-analytics or video-production services.

  • Attend our events, webinars or meetings.

  • Apply for a job, internship or contractor role.

It does not cover:

  • Data processed by third-party websites, apps or services linked from our platforms.

  • Aggregated or anonymized data that cannot be traced back to an individual.


Definitions

  • Personal Data: Any information relating to an identified or identifiable natural person (e.g., name, email, IP address).

  • Special Category Data (GDPR) / Sensitive Personal Data (various laws): Data revealing racial origin, health, biometric data, etc.

  • Processing: Any operation performed on personal data (collection, storage, use, disclosure, deletion).

  • Data Controller: The entity determining the purposes and means of processing (Revuteck).

  • Data Processor: A third party that processes data on our behalf.

  • Supervisory Authority: The governmental body responsible for enforcing data-protection laws in your jurisdiction.


Data Controller & Processor Roles

Controller: H.No: 13, 258/12/4, Sai Krupa Colony, Beeramguda, Hyderabad, Telangana 502032, India

Processors:

  • Cloud hosting (AWS, Azure, GCP)

  • CRM, email-marketing and analytics platforms

  • Payment, payroll and HR systems

  • Each bound by binding Data Processing Agreements requiring equivalent safeguards



Types of Personal Data Collected

We collect only what is necessary to provide and improve our services:


Category

Examples

Identity & Contact

Name, title, company, email, phone, mailing address

Account & Credentials

Username, password (hashed), API keys

Professional & Transactional

Contract details, invoices, purchase history region)

Technical & Usage

IP address, device type, browser, operating system, log files

Marketing & Preferences

Newsletter opt-ins, event registrations, communication history

Support & Feedback

Chat transcripts, support tickets, survey responses

Location Data

Approximate geolocation from IP, or precise GPS data if granted

Sensitive Data

Only where explicitly provided and legally permitted (e.g. health data for certain projects)


Methods of Data Collection

Directly from You

  • Web forms (contact, demo requests, job applications)

  • Emails, calls, video-conferences with sales/support teams

  • Event sign-ups, in-person interviews

Automatically

  • Cookies, web beacons, pixel tags

  • Analytics tools (Google Analytics, Hotjar, Mixpanel)

  • Server logs and application telemetry

From Third Parties

  • Public sources (LinkedIn, company websites)

  • Authorized data providers (business directories)

  • Partners and subcontractors under confidentiality agreements

Offline

  • Business cards, paper forms collected at events

  • Surveys and feedback collected in person


Legal Grounds for Processing

We rely on the following lawful bases, depending on your jurisdiction:

 

Legal Basis

When We Rely On It

Consent

Marketing communications, non-essential cookies, certain data categories. Withdrawable at any time.

Contractual Necessity

Providing services you’ve requested (e.g. software development, consulting).

Legal Obligation

Complying with tax, audit, regulatory or court orders.

Legitimate Interests

Fraud prevention, improving our services, network security—balanced against your rights.

Vital Interests / Public Interest

Rare cases: to protect life, public health emergencies, or official public-interest tasks.


Purposes of Processing

We process your personal data for these primary purposes:

 

Service Delivery & Support

  • Onboarding, configuration, implementation

  • Technical support, troubleshooting, account management

Communications

  • Transactional emails (invoices, project updates)

  • Customer success check-ins, satisfaction surveys

Billing & Finance

  • Generating quotes, invoices, receipts

  • Processing payments, refunds, compliance with financial regulations

Marketing & Engagement

  • Newsletters, promotions, event invitations (with consent)

  • Personalized content recommendations

Analytics & Improvement

  • Usage analysis to enhance UX, performance and features

  • A/B testing, heat-mapping, funnel analysis

Security & Compliance

  • Monitoring for unauthorized access or abuse

  • Enforcing Terms of Service, responding to legal requests

Recruitment & HR

  • Reviewing applications, conducting interviews

  • Onboarding and managing employees or contractors

Research & Development

  • Developing new products, features or AI/ML models

  • Aggregating anonymized data for market insights


Data Retention Periods

We retain your data only as long as necessary for each purpose, and in accordance with legal or contractual requirements:

 

Data Category

Retention Period

Disposal Method

Client & Project Records

8 years (tax & audit laws)

Secure deletion; shred archives

Financial & Billing Information

8 years

Wipe, then archive per law; final erase

Employee & HR Records

6 years after end of engagement

Shred paper; irreversibly delete digital

Marketing Contacts & Consent Logs

Until consent withdrawal + 3 years

Purge lists; remove from backups

Cookies & Tracking Data

Session or up to 24 months

Browser expiry; clear from analytics DB

Website Analytics (Anonymous)

2 years, then aggregate/anonymize

Roll-up metrics; delete raw logs

Sensitive Data

Only as long as needed for service delivery

Encrypted storage; secure destruction

Support Tickets & Communications

3 years after ticket closure

Archive then delete




We review retention schedules annually and securely delete or anonymize data that is no longer required.

 

Data Security & Confidentiality

We implement comprehensive safeguards:

Encryption:

  • TLS 1.2+ for data in transit; AES-256 at rest.

Access Controls:

  • Role-based permissions, multi-factor authentication for administrators.

Network Security:

  • Firewalls, intrusion detection/prevention systems (IDS/IPS), VPN for remote admin.

Secure Development:

  • Code reviews, static/dynamic scanning, segregated dev/test/prod environments.

Monitoring & Incident Response:

  • 24×7 log aggregation, alerting, formal breach-response plan with notification timelines.

Backups & Business Continuity:

  • Encrypted daily backups, offsite replication, regular recovery drills.

Third-Party Assurance:

  • All processors undergo security reviews and must maintain equivalent controls (e.g. ISO 27001, SOC 2).



Disclosure to Third Parties

We share personal data only when necessary and under strict agreements:

Service Providers:

  • Hosting, CRM, email, analytics—only to fulfill services.

Business Partners:

  • Joint-marketing, implementation partners by explicit consent or contractual need.

Legal & Compliance:

  • To comply with laws, court orders, or to protect rights and safety.

Acquisitions & Corporate Transactions:

  • As part of a merger or sale, with obligations to maintain confidentiality.

Aggregated / Anonymized Data:

  • Shared for research or benchmarking, without personal identifiers.


International Transfers & Safeguards

When transferring data across borders, we ensure adequate protection:

EU ↔ India / Other Regions:

  • We adopt European Commission Standard Contractual Clauses (SCCs),Binding Corporate Rules (BCRs) or equivalent legal instruments.

Encryption & Pseudonymization:

  • We encrypt data before transfer and pseudonymize where feasible.

Consent & Notification:

  • Where required, we obtain your explicit consent for transfers.

Right to Object:

  • You may object to transfers on legitimate grounds by contacting our DPO.


Your Global Privacy Rights

Depending on your location, you may have the following rights. To exercise them, contact info@revuteck.com

 

 

Right

Description

Timeline

Access

Obtain a copy of your personal data and processing details.

Within 30 days

Rectification

Correct inaccurate or incomplete data.

Within 30 days

Erasure (“Right to be Forgotten”)

Delete data when no longer needed or consent is withdrawn.

Within 30 days (subject to exceptions)

Restriction

Temporarily block processing under certain conditions.

Within 30 days

Objection

Object to processing based on legitimate interests or marketing.

Within 30 days

Portability

Receive data in a structured, machine-readable format.

Within 30 days

Withdraw Consent

Withdraw consent for marketing or cookies at any time

Effect for future processing

Lodge a Complaint

File a complaint with your local supervisory authority or our DPO.

As per local regulations

Note: We may require verification of your identity before fulfilling requests and may refuse requests that are manifestly unfounded or excessive.

 

 

Cookies, Web Beacons & Other Trackers

We use the following technologies to enhance functionality and analyze performance:

 

 

Type

Purpose

Retention

Essential

Core site operation (security, login)

Session or persistent

Analytics

Traffic analysis (Google Analytics)

12–24 months

Functional

Remember preferences (language, layout)

6–12 months

Marketing

Targeted advertising, remarketing

12 months

  • Manage Cookies: Use our cookie banner or your browser settings to accept/reject non-essential cookies.

  • Opt-Out Links:

  • Google Analytics Opt-Out Browser Add-on

  • Digital Advertising Alliance (DAA) consumer choice page

  • Network Advertising Initiative (NAI) opt-out

 

 

Children’s Data Protection

Our services are not directed to children under 16. We do not knowingly collect data from minors. If you believe we have collected data from a minor, please contact us at info@revuteck.com to request deletion.

 

 

Third-Party Links & Embedded Content

Our websites may contain links to third-party sites or embedded content (e.g. YouTube, social-media widgets). We are not responsible for their privacy practices. Please review their privacy policies before providing any personal data.

 

 

Data Breach Notification

In the event of a personal-data breach, we will:

  • Assess the risk to data subjects.

  • Notify affected individuals and relevant supervisory authorities within applicable legal timeframes (e.g., 72 hours under GDPR).

  • Provide details of the breach, its impact and mitigation steps.

 


Dispute Resolution & Governing Law

Governing Law: Indian law for Indian users; GDPR and local privacy laws for EU users; CCPA for California residents; other local laws as applicable.

Dispute Resolution: We seek to resolve disputes amicably. If unresolved, you may escalate to your local supervisory authority or pursue arbitration under mutually agreed rules.

 

 

Contact Details

Data Protection Officer / Grievance Officer

Name: Kodali Utej

Designation: Founder

Email: info@revuteck.com

Phone: +91-7075170615

General Privacy Queries: info@revuteck.com

Registered Office: H.No: 13, 258/12/4, Sai Krupa Colony, Beeramguda, Hyderabad, Telangana 502032, India

 

We endeavor to respond to all privacy inquiries within seven (7) business days. Thank you for trusting Revuteck with your data.


Last updated August 10, 2026