Revuteck
PRIVACY POLICY INDIA
Introduction & Purpose
Revuteck Private Limited (“Revuteck,” “we,” “us” or “our”) respects your privacy and is committed to protecting the personal data you share with us. This Privacy Policy explains:
What information we collect when you visit our website, engage our services, or interact with us offline.
How and why we process, store and secure that information.
Your rights under applicable Indian laws.
How to contact us if you have questions or wish to exercise your privacy rights.
By using our website (www.revuteck.com), mobile applications, or any of our digital marketing, web-development, data-analytics or video-production services, you acknowledge the practices described in this Policy
.
Scope of This Policy
This Policy applies to all personal data collected, processed or stored by Revuteck in the course of providing our services, including:
Online collection via forms, cookies, analytics and user registrations on our website and subdomains.
Offline collection at events, workshops, meetings and during client engagements.
Automated data generated through our systems and tools (e.g., usage logs, IP addresses)
It covers data relating to:
Prospective, current and former clients or partners.
Visitors to our website and social-media channels.
Job applicants and contracted personnel.
Exclusions: This Policy does not apply to:
Personal data collected or processed by third-party websites linked from our site.
Anonymous or aggregated data that cannot be reverse-engineered to identify any individual.
Definitions
Personal Data
Any information that identifies you, directly or indirectly—such as your name, email address, phone number, IP address, job title or billing details.
Sensitive Personal Data or Information (SPDI)
As per Indian IT Rules, this includes passwords, financial account details, health data, government identifiers (e.g., Aadhaar), biometric information, sexual orientation, etc.
Processing
Any operation performed on Personal Data — collection, recording, organization, structuring, storage, adaptation, retrieval, use, disclosure, erasure or destruction.
Data Controller
The entity that determines the purposes and means of processing Personal Data. For all Revuteck services, Revuteck Infotech Private Limited acts as the Data Controller.
Data Processor
Any third party that processes Personal Data on behalf of the Controller (e.g., hosting providers, email-marketing platforms).
Data Subject
An individual whose Personal Data is processed by Revuteck under this Policy (e.g., website visitor, client contact, job applicant).
Consent
A freely given, specific, informed and unambiguous indication of the Data Subject’s wishes by which they signify agreement to the processing of their Personal Data.
Third Parties
Entities other than Revuteck and its employees or subcontractors who may receive Personal Data under contract or legal obligation.
Data Controller Details
Revuteck Infotech Private Limited (“Revuteck,” “we,” “us” or “our”) is the Data Controller responsible for your Personal Data under this Policy.
Registered Office: H.No: 13, 258/12/4, Sai Krupa Colony, Beeramguda, Hyderabad, Telangana 502032
E-mail: info@revuteck.com
Phone: +91-7075170615
You may contact us at any time for questions, to exercise your rights, or to lodge a complaint.
Personal Data We Collect
We collect only the data necessary to deliver our services, operate our website, and communicate with you. All items below are collected with your consent or under lawful basis (e.g., contractual necessity, legitimate interests).
Contact Information
Identity Details: Full name, job title, company name
Communication Details: Email address, telephone number, mailing address
Technical & Usage Data
Device & Browser: IP address, browser type/version, operating system, device identifiers
Website Interaction: Pages visited, clickstream paths, session duration, referring URLs
Log Files & Analytics: Server logs, error logs, Google Analytics, heatmaps
Cookies & Tracking: First- and third-party cookies, web beacons, local storage
Marketing & Communication Preferences
Subscription Status: Opt-in/out history for newsletters, promotional emails or SMS
Engagement Records: Webinar/event registrations, survey responses, feedback
Preferred Channels: Your chosen method of contact (email, phone, social media)
Sensitive Personal Data or Information (SPDI)
Only if you voluntarily provide it (for example, government ID for KYC or health information for specific services). Such data is treated under enhanced security and legal safeguards.
How We Collect Your Data
We gather your Personal Data through multiple channels to ensure smooth service delivery and a tailored user experience.
Directly From You
Website forms (contact, demo requests, job applications) Emails, phone calls, video-conferences with our sales or support teams Event registrations and offline sign-ups at workshops or conferences
Automatically
Cookies & Tracking Technologies: We use cookies to remember your preferences and measure site performance. You can manage your cookie settings via our cookie banner or your browser.
Analytics Tools: Google Analytics, Hotjar and similar services collect aggregated usage statistics.
Server & Application Logs: Capture technical details like request timestamps, error codes and user agents.
From Third Parties
Public Sources: Business directories (e.g., LinkedIn), social media profiles when you contact us there.
Service Providers: CRM platforms, marketing automation tools or payment gateways that you have interacted with.
Partners & Referrers: Data shared by authorized partners under confidentiality agreements.
Offline Sources
Business cards, printed sign-up sheets at events Interviews and surveys conducted in person
Every collection method is accompanied by clear notice or consent mechanism, and you may opt out or withdraw consent at any time (subject to contractual or legal obligations).
Purposes of Processing
We collect and use your Personal Data only for specific, explicit and legitimate purposes.
These include:
Service Delivery & Support
Onboarding new clients, provisioning accounts, configuring services. Troubleshooting, technical support and customer success follow-ups. Customizing solutions (e.g. tailoring web-apps, analytics dashboards).
Communications & Notifications
Responding to inquiries, meeting requests and service tickets. Sending operational messages (order confirmations, project status). Informing you of policy updates, security alerts or scheduled maintenance.
Billing, Invoicing & Payments
Generating quotes, invoices and payment reminders. Processing payments, managing subscriptions and refunds. Complying with tax, audit and accounting requirements.
Marketing & Engagement
Delivering newsletters, promotional offers and event invites (with your consent). Personalizing content and recommendations based on your preferences. Measuring campaign performance and optimizing outreach.
Analytics & Continuous Improvement
Monitoring website and application usage to improve functionality. Conducting A/B tests, heat-map analyses and user surveys. Driving product development, feature enhancements and UX optimizations.
Security, Fraud Prevention & Compliance
Detecting, preventing and investigating security incidents or unauthorized access. Enforcing our Terms of Service and preventing abusive or illegal activities. Meeting legal obligations (e.g. data-retention mandates, audit requests).
Recruitment & HR Management
Processing job applications, conducting interviews and background checks. Onboarding, payroll and performance-management of employees and contractors.
Research & Development
Aggregating anonymized usage data to identify trends and inform new offerings. Running pilot programs, proofs-of-concept and beta tests.
Legal Basis for Processing
Under applicable Indian data-protection regulations and global best practices, we rely on the following lawful bases:
Consent
Where you have explicitly opted in (e.g., marketing emails, cookies beyond essential). You may withdraw consent at any time by contacting us or via the “unsubscribe” link; withdrawal will not affect processing done prior to withdrawal.
Contractual Necessity
To perform our obligations under a contract you have with us (e.g., delivering services you’ve ordered, billing and support).
Legitimate Interests
We may process your data where it is necessary for our legitimate business interests—provided we balance those interests against your rights and freedoms. Examples include: Improving our website, products and services. Preventing fraud and ensuring network and information security. Internal record-keeping, analytics and quality control
Legal Obligation
To comply with statutory requirements (Indian Income Tax Act, Companies Act, audit rules) and government or regulatory orders. To cooperate with law-enforcement requests or court orders.
Vital Interests & Public Interest
In rare cases, to protect someone’s life or physical integrity (e.g., emergency health situations).
Data Retention & Disposal
We retain your Personal Data only as long as necessary for the purposes described above, and as required by law. When data is no longer needed, we securely delete or anonymize it.
Regular Reviews: We audit retention schedules annually to ensure compliance.
Secure Disposal: All electronic data is overwritten or cryptographically shredded; physical media and printouts are shredded or incinerated.
If you wish to request deletion of your Personal Data outside these schedules (where no legal obligation prevents it), please contact our Grievance Officer at info@revuteck.com.
Data Security Measures
We implement robust technical, organizational and physical controls to safeguard your Personal Data against unauthorized access, alteration, disclosure or destruction:
A. Technical Controls
Encryption:
In transit: TLS 1.2+ for all web and API traffic
At rest: AES-256 encryption on servers, databases and backups
Access Control & Authentication
Role-based access (least-privilege) for all systems
Multi-factor authentication (MFA) for privileged accounts
Periodic review of user access lists and permissions
Network & Infrastructure Security
Firewalls and intrusion detection/prevention systems (IDS/IPS)
Virtual private networks (VPNs) for remote administrative access
Regular vulnerability scanning, patch management and hardening of OS/applications
Secure Development & Testing
Formal code reviews, static-analysis and dependency-scanning on all releases
Segregated development, staging and production environments
Automated CI/CD pipelines with security gates (e.g. SAST, DAST)
Monitoring, Logging & Incident Response
Centralized log aggregation and real-time alerting
24×7 monitoring for anomalous behavior or breach indicators
Formal incident-response plan, including forensic analysis and root-cause remediation
Backup & Business Continuity
Daily encrypted backups with offsite replication
Periodic restore drills to verify data integrity and recovery time objectives (RTO/RPO)
B. Organizational Controls
Policies & Procedures
Documented Information Security Policy, Acceptable Use Policy and Data Classification Policy
Annual risk assessments and third-party security audits
Employee Training & Awareness
Mandatory data-protection and secure-coding training at onboarding and annually
Phishing simulations and tabletop exercises for key staff
Vendor Management
Due diligence and security questionnaires for all subprocessors
Data Processing Agreements (DPAs) requiring equivalent safeguards
Periodic vendor audit or certification review (e.g. ISO 27001, SOC 2)
C. Physical Security
Secure data centers with CCTV, 24/7 guards and biometric entry controls
Locked server racks, environmental controls (fire suppression, climate monitoring)
Visitor logs, escort requirements and periodic facility reviews
Disclosure to Third Parties
We share Personal Data only when necessary and always under strict contractual, legal or consent-based conditions:
Service Providers & Sub processors
Cloud hosting (e.g. AWS, Azure), data-storage, backup providers.
CRM, email-marketing and customer-support platforms.
Analytics, BI and performance-monitoring tools.
All bound by Data Processing Agreements mandating confidentiality, security controls and limited-use clauses.
Business & Strategic Partners
Agencies, consultants or technology alliances engaged to deliver integrated solutions.
Joint-marketing partners (only with your opt-in consent).
Legal Authorities & Regulators
To comply with subpoenas, court orders or lawful government requests.
To enforce our Terms of Service or defend legal claims.
Corporate Transactions
In the event of a merger, acquisition, reorganization or sale of assets, we may transfer data as an asset—subject to confidentiality covenants and notice to you.
Aggregated/Anonymized Data
We may share fully de-identified usage statistics or industry benchmarking reports that cannot be traced back to any individual.
Emergency & Safety
To protect the vital interests of any person (e.g. imminent threat to life or health).
At all times, we ensure third parties process your data only for the specified purpose and under at least the same level of protection described in this Policy.
Cross-Border Transfers (if any)
Revuteck may transfer Personal Data outside India to subsidiaries or third-party service providers in jurisdictions such as the United States, European Union, Singapore or Australia. To safeguard your data:
Adequacy & Legal Safeguards
Transfers to EU-based entities rely on Standard Contractual Clauses (SCCs) approved by the European Commission. Transfers to other countries are governed by DPAs incorporating SCCs or Binding Corporate Rules (BCRs) where available.
Encryption & Anonymization
Data is encrypted end-to-end before cross-border transmission. Sensitive Personal Data is additionally tokenized or pseudonymized when feasible.
Consent & Notification
Where required by law, we obtain your explicit consent before transferring data internationally. We will notify you of any new transfer mechanisms or changes to existing arrangements via updates to this Policy.
Right to Object
You may object to a proposed transfer on reasonable grounds related to your particular situation. To exercise this right, contact our Grievance Officer at info@revuteck.com
These measures ensure that, even when data moves beyond India’s borders, it remains subject to enforceable commitments and robust technical protections.
Your Rights under Indian Law
Under the Information Technology Act, 2000 and the SPDI Rules, you have the following rights with respect to your Personal Data. To exercise any right, please write to our Grievance Officer at info@revuteck.com. We will acknowledge your request within seven (7) days and respond substantively within thirty (30) days.
Right to Access
What it is: You can request a copy of all Personal Data we hold about you, including
The categories of data processed
Purposes of processing
Recipients or categories of recipients
Retention period or criteria
How to exercise: Send a written request with proof of identity (e.g., government ID) to info@revuteck.com, specifying “Data Access Request.”
Response time: We’ll provide the information in a structured, commonly used format within 30 days, free of charge for one request per calendar year.
Right to Correction
What it is: You can ask us to rectify or update any inaccurate, incomplete or outdated Personal Data we maintain.
How to exercise: Email us at info@revuteck.com with details of the data you believe is erroneous and the corrected values.
Action timeline: We will verify your identity and make the changes within 30 days. We will also notify any third parties to whom we previously disclosed the affected data, unless doing so is impossible or involves disproportionate effort.
Right to Withdrawal of Consent
What it is: If we process your data based on consent (e.g., for marketing communications, cookies beyond essential), you may withdraw consent at any time.
How to exercise:
Click “unsubscribe” in any marketing email or SMS
Use our cookie banner controls to disable non-essential cookies
Send a request to info@revuteck.com with “Withdraw Consent” in the subject line
Effect: Withdrawal will apply only to future processing; it does not invalidate any processing carried out before we received your withdrawal.
Right to Erasure (“Right to be Forgotten”)
What it is: You may request deletion of your Personal Data when:
It is no longer necessary for the purpose collected
You withdraw consent and no other legal basis for processing applies
You object to processing and there are no overriding legitimate grounds
How to exercise: Email dpo@revuteck.com with “Erasure Request,” specifying the data to be deleted.
Exceptions: We may refuse or partially fulfill requests if retention is required to:
Comply with legal obligations (e.g., tax records)
Establish, exercise or defend legal claims
Protect public interest, national security or freedom of expression
Fulfillment: If eligible, we will erase the data and notify you (and, where feasible, downstream recipients) within 30 days.
Cookies & Tracking Technologies
We use cookies, web beacons and similar technologies to operate our website, enhance user experience and analyze performance.
Types of Cookies
Session cookies expire when you close your browser; persistent cookies remain until their expiry date or you delete them.
How We Use Cookies
Site Operations:
Keep you logged in, prevent fraud, optimize load balancing.
Analytics & Performance:
Track page views, user flows, error rates to improve UI/UX.
Personalization:
Remember your language, display recent projects or resources.
Advertising:
Serve tailored ads on third-party platforms and measure campaign effectiveness.
Third-Party Trackers
We allow the following third-party services to place cookies:
Google Analytics:
For traffic analysis and site optimization
Hotjar:
For heatmaps and session recordings
LinkedIn Insight Tag:
To measure LinkedIn ad conversions
Facebook Pixel:
For remarketing and conversion tracking
These providers act as Data Processors under contract and do not share your Personal Data with other parties.
Managing & Disabling Cookies
Cookie Banner Controls:
On your first visit, use the banner to accept or reject non-essential cookies.
Browser Settings:
You can disable cookies or set your browser to alert you whenever a cookie is being placed. Links:
Chrome: Settings → Privacy and security → Cookies and other site data
Firefox: Options → Privacy & Security → Cookies and Site Data
Edge: Settings → Site permissions → Cookies and site data
Opt-Out Links:
Google Analytics Opt-Out Browser Add-on
Digital Advertising Alliance (DAA) consumer choice page
Note: Disabling certain cookies may impact functionality and your overall experience on our site.
Grievance Officer & Redressal Mechanism
In accordance with the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, we have appointed a dedicated Grievance Officer to address any concerns or complaints you may have regarding our handling of your Personal Data.
Grievance Officer:
Name: Utej Kodali Designation:
Founder Email: info@revuteck.com
Phone: +91-7075170615
Postal Address: H.No: 13, 258/12/4, Sai Krupa Colony, Beeramguda, Hyderabad, Telangana 502032, India
How to Lodge a Complaint:
1. Send us a written description of your grievance via email or post, including:
Your name and contact details
The nature of your complaint (e.g., request for access, correction, erasure)
Any relevant supporting information or documentation
2. We will acknowledge receipt of your complaint within seven (7) working days.
3. We will investigate your complaint and provide a substantive response within thirty (30) calendar days of receipt.
4. If you are not satisfied with our response, you may escalate the matter to the Secretary, Ministry of Electronics & Information Technology, Government of India, or to any other supervisory authority under applicable law.
Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements or business operations.
Version & Effective Date: Each revision is assigned a version number and an “Effective Date,” both displayed at the top of this Policy.
Notification of Material Changes: If we make material changes that significantly affect your rights or the ways in which we use your Personal Data, we will:
Post a prominent notice on our homepage or within the affected Services, and Send you an email or in-app notification (where you have provided contact details and consent).
Your Continued Use: Your continued use of our website or services after the Effective Date constitutes your acceptance of the revised Policy. We recommend that you review this Policy periodically.
Annual Review: We conduct a formal privacy-policy review at least once every 12 months to ensure ongoing compliance with legal and industry standards.
Contact Information
If you have any questions, requests or feedback regarding this Privacy Policy or our data-processing practices, please contact us at:
Data Protection Officer / Grievance Officer
Name: Kodali Utej
Designation: Founder
Email: info@revuteck.com
Phone: +91-7075170615
General Privacy Queries: info@revuteck.com
Registered Office: H.No: 13, 258/12/4, Sai Krupa Colony, Beeramguda, Hyderabad, Telangana 502032, India