Configuration

COLORS
CUSTOM CURSOR
Company

PRIVACY POLICY INDIA

Choose the policy applicable to India or the global policy. Policy wording is reproduced from the supplied source content.

Revuteck

PRIVACY POLICY INDIA

Introduction & Purpose

  Revuteck Private Limited (“Revuteck,” “we,” “us” or “our”) respects your privacy and is committed to protecting the personal data you share with us. This Privacy Policy explains:

  • What information we collect when you visit our website, engage our services, or interact with us offline.

  • How and why we process, store and secure that information.

  • Your rights under applicable Indian laws.

  • How to contact us if you have questions or wish to exercise your privacy rights.

By using our website (www.revuteck.com), mobile applications, or any of our digital marketing, web-development, data-analytics or video-production services, you acknowledge the practices described in this Policy
.

Scope of This Policy

This Policy applies to all personal data collected, processed or stored by Revuteck in the course of providing our services, including:

  • Online collection via forms, cookies, analytics and user registrations on our website and subdomains.

  • Offline collection at events, workshops, meetings and during client engagements.

  • Automated data generated through our systems and tools (e.g., usage logs, IP addresses)

It covers data relating to:
  • Prospective, current and former clients or partners.

  • Visitors to our website and social-media channels.

  • Job applicants and contracted personnel.

Exclusions: This Policy does not apply to:
  • Personal data collected or processed by third-party websites linked from our site.

  • Anonymous or aggregated data that cannot be reverse-engineered to identify any individual.


Definitions

Personal Data

Any information that identifies you, directly or indirectly—such as your name, email address, phone number, IP address, job title or billing details.

Sensitive Personal Data or Information (SPDI)

As per Indian IT Rules, this includes passwords, financial account details, health data, government identifiers (e.g., Aadhaar), biometric information, sexual orientation, etc.

Processing

Any operation performed on Personal Data — collection, recording, organization, structuring, storage, adaptation, retrieval, use, disclosure, erasure or destruction.

Data Controller

The entity that determines the purposes and means of processing Personal Data. For all Revuteck services, Revuteck Infotech Private Limited acts as the Data Controller.

Data Processor

Any third party that processes Personal Data on behalf of the Controller (e.g., hosting providers, email-marketing platforms).

Data Subject

An individual whose Personal Data is processed by Revuteck under this Policy (e.g., website visitor, client contact, job applicant).

Consent

A freely given, specific, informed and unambiguous indication of the Data Subject’s wishes by which they signify agreement to the processing of their Personal Data.

Third Parties

Entities other than Revuteck and its employees or subcontractors who may receive Personal Data under contract or legal obligation.



Data Controller Details

Revuteck Infotech Private Limited (“Revuteck,” “we,” “us” or “our”) is the Data Controller responsible for your Personal Data under this Policy.

  • Registered Office: H.No: 13, 258/12/4, Sai Krupa Colony, Beeramguda, Hyderabad, Telangana 502032

  • E-mail: info@revuteck.com

  • Phone: +91-7075170615

You may contact us at any time for questions, to exercise your rights, or to lodge a complaint.



Personal Data We Collect

We collect only the data necessary to deliver our services, operate our website, and communicate with you. All items below are collected with your consent or under lawful basis (e.g., contractual necessity, legitimate interests).

Contact Information

Identity Details: Full name, job title, company name 

Communication Details: Email address, telephone number, mailing address

Technical & Usage Data

Device & Browser: IP address, browser type/version, operating system, device identifiers 

Website Interaction: Pages visited, clickstream paths, session duration, referring URLs 

Log Files & Analytics: Server logs, error logs, Google Analytics, heatmaps 

Cookies & Tracking: First- and third-party cookies, web beacons, local storage

Marketing & Communication Preferences

Subscription Status: Opt-in/out history for newsletters, promotional emails or SMS

Engagement Records: Webinar/event registrations, survey responses, feedback

Preferred Channels: Your chosen method of contact (email, phone, social media)

Sensitive Personal Data or Information (SPDI)

Only if you voluntarily provide it (for example, government ID for KYC or health information for specific services). Such data is treated under enhanced security and legal safeguards.


How We Collect Your Data

We gather your Personal Data through multiple channels to ensure smooth service delivery and a tailored user experience.

Directly From You

Website forms (contact, demo requests, job applications) Emails, phone calls, video-conferences with our sales or support teams Event registrations and offline sign-ups at workshops or conferences

Automatically

Cookies & Tracking Technologies: We use cookies to remember your preferences and measure site performance. You can manage your cookie settings via our cookie banner or your browser. 

Analytics Tools: Google Analytics, Hotjar and similar services collect aggregated usage statistics. 

Server & Application Logs: Capture technical details like request timestamps, error codes and user agents.

From Third Parties

Public Sources: Business directories (e.g., LinkedIn), social media profiles when you contact us there. 

Service Providers: CRM platforms, marketing automation tools or payment gateways that you have interacted with.

 Partners & Referrers: Data shared by authorized partners under confidentiality agreements.

Offline Sources

Business cards, printed sign-up sheets at events Interviews and surveys conducted in person

Every collection method is accompanied by clear notice or consent mechanism, and you may opt out or withdraw consent at any time (subject to contractual or legal obligations).

 

Purposes of Processing

We collect and use your Personal Data only for specific, explicit and legitimate purposes.

These include:

Service Delivery & Support

Onboarding new clients, provisioning accounts, configuring services. Troubleshooting, technical support and customer success follow-ups. Customizing solutions (e.g. tailoring web-apps, analytics dashboards).

Communications & Notifications

Responding to inquiries, meeting requests and service tickets. Sending operational messages (order confirmations, project status). Informing you of policy updates, security alerts or scheduled maintenance.

Billing, Invoicing & Payments

Generating quotes, invoices and payment reminders. Processing payments, managing subscriptions and refunds. Complying with tax, audit and accounting requirements.

Marketing & Engagement

Delivering newsletters, promotional offers and event invites (with your consent). Personalizing content and recommendations based on your preferences. Measuring campaign performance and optimizing outreach.

Analytics & Continuous Improvement

Monitoring website and application usage to improve functionality. Conducting A/B tests, heat-map analyses and user surveys. Driving product development, feature enhancements and UX optimizations.

Security, Fraud Prevention & Compliance

Detecting, preventing and investigating security incidents or unauthorized access. Enforcing our Terms of Service and preventing abusive or illegal activities. Meeting legal obligations (e.g. data-retention mandates, audit requests).

Recruitment & HR Management

Processing job applications, conducting interviews and background checks. Onboarding, payroll and performance-management of employees and contractors.

Research & Development

Aggregating anonymized usage data to identify trends and inform new offerings. Running pilot programs, proofs-of-concept and beta tests.



Legal Basis for Processing

Under applicable Indian data-protection regulations and global best practices, we rely on the following lawful bases:

Consent

Where you have explicitly opted in (e.g., marketing emails, cookies beyond essential). You may withdraw consent at any time by contacting us or via the “unsubscribe” link; withdrawal will not affect processing done prior to withdrawal.

Contractual Necessity

To perform our obligations under a contract you have with us (e.g., delivering services you’ve ordered, billing and support).

Legitimate Interests

We may process your data where it is necessary for our legitimate business interests—provided we balance those interests against your rights and freedoms. Examples include: Improving our website, products and services. Preventing fraud and ensuring network and information security. Internal record-keeping, analytics and quality control

Legal Obligation

To comply with statutory requirements (Indian Income Tax Act, Companies Act, audit rules) and government or regulatory orders. To cooperate with law-enforcement requests or court orders.

Vital Interests & Public Interest

In rare cases, to protect someone’s life or physical integrity (e.g., emergency health situations).



Data Retention & Disposal

We retain your Personal Data only as long as necessary for the purposes described above, and as required by law. When data is no longer needed, we securely delete or anonymize it.

 

Data Category

Retention Period

Disposal Method

Client & Project Records

8 years (per Indian tax & audit laws)

Secure deletion of digital files; shredding archives

Financial & Billing Information

8 years

Wipe from active systems; archive per law; then erase

Employee & HR Records

6 years after employment end

Secure destruction of paper; irreversible deletion

Marketing Contacts & Consent Logs

Until consent withdrawal + 3 years

Remove from mailing lists; purge backup storage

Cookies & Tracking Data

Session or up to 24 months (based on cookie)

Automatic browser expiry; clear from analytics DBs

Website Analytics (Anonymous/Aggregated)

Up to 2 years, then aggregate/anonymize

Roll-up into long-term metrics; delete raw logs

Sensitive Personal Data or Information

Only as long as required for service delivery

Encrypted storage; securely destroy when obsolete

Support Tickets & Communications

3 years after ticket closure

Archive per service policy; then delete

Regular Reviews: We audit retention schedules annually to ensure compliance.

Secure Disposal: All electronic data is overwritten or cryptographically shredded; physical media and printouts are shredded or incinerated.

If you wish to request deletion of your Personal Data outside these schedules (where no legal obligation prevents it), please contact our Grievance Officer at info@revuteck.com.



Data Security Measures

We implement robust technical, organizational and physical controls to safeguard your Personal Data against unauthorized access, alteration, disclosure or destruction:

A. Technical Controls
Encryption:
  • In transit: TLS 1.2+ for all web and API traffic

  • At rest: AES-256 encryption on servers, databases and backups

Access Control & Authentication
  • Role-based access (least-privilege) for all systems

  • Multi-factor authentication (MFA) for privileged accounts

  • Periodic review of user access lists and permissions

Network & Infrastructure Security
  • Firewalls and intrusion detection/prevention systems (IDS/IPS)

  • Virtual private networks (VPNs) for remote administrative access

  • Regular vulnerability scanning, patch management and hardening of OS/applications

Secure Development & Testing
  • Formal code reviews, static-analysis and dependency-scanning on all releases

  • Segregated development, staging and production environments

  • Automated CI/CD pipelines with security gates (e.g. SAST, DAST)

Monitoring, Logging & Incident Response
  • Centralized log aggregation and real-time alerting

  • 24×7 monitoring for anomalous behavior or breach indicators

  • Formal incident-response plan, including forensic analysis and root-cause remediation

Backup & Business Continuity
  • Daily encrypted backups with offsite replication

  • Periodic restore drills to verify data integrity and recovery time objectives (RTO/RPO)

B. Organizational Controls

Policies & Procedures
  • Documented Information Security Policy, Acceptable Use Policy and Data Classification Policy

  • Annual risk assessments and third-party security audits

Employee Training & Awareness
  • Mandatory data-protection and secure-coding training at onboarding and annually

  • Phishing simulations and tabletop exercises for key staff

Vendor Management
  • Due diligence and security questionnaires for all subprocessors

  • Data Processing Agreements (DPAs) requiring equivalent safeguards

  • Periodic vendor audit or certification review (e.g. ISO 27001, SOC 2)

C. Physical Security

  • Secure data centers with CCTV, 24/7 guards and biometric entry controls

  • Locked server racks, environmental controls (fire suppression, climate monitoring)

  • Visitor logs, escort requirements and periodic facility reviews


Disclosure to Third Parties

We share Personal Data only when necessary and always under strict contractual, legal or consent-based conditions:

Service Providers & Sub processors

Cloud hosting (e.g. AWS, Azure), data-storage, backup providers.

CRM, email-marketing and customer-support platforms.

Analytics, BI and performance-monitoring tools.

All bound by Data Processing Agreements mandating confidentiality, security controls and limited-use clauses.

Business & Strategic Partners

Agencies, consultants or technology alliances engaged to deliver integrated solutions.

Joint-marketing partners (only with your opt-in consent).

Legal Authorities & Regulators

To comply with subpoenas, court orders or lawful government requests.

To enforce our Terms of Service or defend legal claims.

Corporate Transactions

In the event of a merger, acquisition, reorganization or sale of assets, we may transfer data as an asset—subject to confidentiality covenants and notice to you.

Aggregated/Anonymized Data

We may share fully de-identified usage statistics or industry benchmarking reports that cannot be traced back to any individual.

Emergency & Safety

To protect the vital interests of any person (e.g. imminent threat to life or health).


At all times, we ensure third parties process your data only for the specified purpose and under at least the same level of protection described in this Policy.

 

Cross-Border Transfers (if any)

Revuteck may transfer Personal Data outside India to subsidiaries or third-party service providers in jurisdictions such as the United States, European Union, Singapore or Australia. To safeguard your data:

Adequacy & Legal Safeguards

Transfers to EU-based entities rely on Standard Contractual Clauses (SCCs) approved by the European Commission. Transfers to other countries are governed by DPAs incorporating SCCs or Binding Corporate Rules (BCRs) where available.

Encryption & Anonymization

Data is encrypted end-to-end before cross-border transmission. Sensitive Personal Data is additionally tokenized or pseudonymized when feasible.

Consent & Notification

Where required by law, we obtain your explicit consent before transferring data internationally. We will notify you of any new transfer mechanisms or changes to existing arrangements via updates to this Policy.

Right to Object

You may object to a proposed transfer on reasonable grounds related to your particular situation. To exercise this right, contact our Grievance Officer at info@revuteck.com


These measures ensure that, even when data moves beyond India’s borders, it remains subject to enforceable commitments and robust technical protections.

 

Your Rights under Indian Law

Under the Information Technology Act, 2000 and the SPDI Rules, you have the following rights with respect to your Personal Data. To exercise any right, please write to our Grievance Officer at info@revuteck.com. We will acknowledge your request within seven (7) days and respond substantively within thirty (30) days.

 

Right to Access

What it is: You can request a copy of all Personal Data we hold about you, including

  • The categories of data processed

  • Purposes of processing

  • Recipients or categories of recipients

  • Retention period or criteria

How to exercise: Send a written request with proof of identity (e.g., government ID) to info@revuteck.com, specifying “Data Access Request.”

Response time: We’ll provide the information in a structured, commonly used format within 30 days, free of charge for one request per calendar year.



Right to Correction

What it is: You can ask us to rectify or update any inaccurate, incomplete or outdated Personal Data we maintain.

How to exercise: Email us at info@revuteck.com with details of the data you believe is erroneous and the corrected values.

Action timeline: We will verify your identity and make the changes within 30 days. We will also notify any third parties to whom we previously disclosed the affected data, unless doing so is impossible or involves disproportionate effort.



Right to Withdrawal of Consent

What it is: If we process your data based on consent (e.g., for marketing communications, cookies beyond essential), you may withdraw consent at any time.

How to exercise:

  • Click “unsubscribe” in any marketing email or SMS

  • Use our cookie banner controls to disable non-essential cookies

  • Send a request to info@revuteck.com with “Withdraw Consent” in the subject line

Effect: Withdrawal will apply only to future processing; it does not invalidate any processing carried out before we received your withdrawal.



Right to Erasure (“Right to be Forgotten”)

What it is: You may request deletion of your Personal Data when:

  • It is no longer necessary for the purpose collected

  • You withdraw consent and no other legal basis for processing applies

  • You object to processing and there are no overriding legitimate grounds

How to exercise: Email dpo@revuteck.com with “Erasure Request,” specifying the data to be deleted.

Exceptions: We may refuse or partially fulfill requests if retention is required to:

  • Comply with legal obligations (e.g., tax records)

  • Establish, exercise or defend legal claims

  • Protect public interest, national security or freedom of expression

Fulfillment: If eligible, we will erase the data and notify you (and, where feasible, downstream recipients) within 30 days.



Cookies & Tracking Technologies

We use cookies, web beacons and similar technologies to operate our website, enhance user experience and analyze performance.

Types of Cookies

Cookie Type

Purpose

Retention

Essential

Enable core site functionality (login, security)

Session or persistent

Analytics

Measure usage and performance (Google Analytics, Hotjar)

12–24 months

Functional

Remember preferences (language, region)

6–12 months

Marketing

Deliver relevant ads, track conversions

12 months

Session cookies expire when you close your browser; persistent cookies remain until their expiry date or you delete them.

How We Use Cookies

Site Operations:
  • Keep you logged in, prevent fraud, optimize load balancing.

Analytics & Performance:
  • Track page views, user flows, error rates to improve UI/UX.

Personalization:
  • Remember your language, display recent projects or resources.

Advertising:
  • Serve tailored ads on third-party platforms and measure campaign effectiveness.

Third-Party Trackers

We allow the following third-party services to place cookies:

Google Analytics:
  • For traffic analysis and site optimization

Hotjar:
  • For heatmaps and session recordings

LinkedIn Insight Tag:
  • To measure LinkedIn ad conversions

Facebook Pixel:
  • For remarketing and conversion tracking

These providers act as Data Processors under contract and do not share your Personal Data with other parties.

Managing & Disabling Cookies
Cookie Banner Controls:
  • On your first visit, use the banner to accept or reject non-essential cookies.

Browser Settings:
  • You can disable cookies or set your browser to alert you whenever a cookie is being placed. Links:

  • Chrome: Settings → Privacy and security → Cookies and other site data

  • Firefox: Options → Privacy & Security → Cookies and Site Data

  • Edge: Settings → Site permissions → Cookies and site data

Opt-Out Links:
  • Google Analytics Opt-Out Browser Add-on

  • Digital Advertising Alliance (DAA) consumer choice page

Note: Disabling certain cookies may impact functionality and your overall experience on our site.

 

Grievance Officer & Redressal Mechanism

In accordance with the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, we have appointed a dedicated Grievance Officer to address any concerns or complaints you may have regarding our handling of your Personal Data.


Grievance Officer:

Name:  Utej Kodali Designation: 

Founder Email:  info@revuteck.com

Phone:  +91-7075170615 

Postal Address:  H.No: 13, 258/12/4, Sai Krupa Colony, Beeramguda, Hyderabad, Telangana 502032, India



How to Lodge a Complaint:

1. Send us a written description of your grievance via email or post, including:

Your name and contact details

The nature of your complaint (e.g., request for access, correction, erasure)

Any relevant supporting information or documentation

2. We will acknowledge receipt of your complaint within seven (7) working days.

3. We will investigate your complaint and provide a substantive response within thirty (30) calendar days of receipt.

4. If you are not satisfied with our response, you may escalate the matter to the Secretary, Ministry of Electronics & Information Technology, Government of India, or to any other supervisory authority under applicable law.



Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements or business operations.

  • Version & Effective Date: Each revision is assigned a version number and an “Effective Date,” both displayed at the top of this Policy.

  • Notification of Material Changes: If we make material changes that significantly affect your rights or the ways in which we use your Personal Data, we will:

  • Post a prominent notice on our homepage or within the affected Services, and Send you an email or in-app notification (where you have provided contact details and consent).

  • Your Continued Use: Your continued use of our website or services after the Effective Date constitutes your acceptance of the revised Policy. We recommend that you review this Policy periodically.

  • Annual Review: We conduct a formal privacy-policy review at least once every 12 months to ensure ongoing compliance with legal and industry standards.


Contact Information

If you have any questions, requests or feedback regarding this Privacy Policy or our data-processing practices, please contact us at:

 

Data Protection Officer / Grievance Officer

Name: Kodali Utej

Designation: Founder

Email: info@revuteck.com

Phone: +91-7075170615

General Privacy Queries: info@revuteck.com

Registered Office: H.No: 13, 258/12/4, Sai Krupa Colony, Beeramguda, Hyderabad, Telangana 502032, India



Last updated August 10, 2026