1.Introduction
TrueInception Pvt Ltd (“TrueInception,” “we,” “us,” “our”) is committed to protecting your privacy. This Privacy Policy explains what personal information we collect, why we collect it, how we use and share it, and the rights and choices you have.
This policy applies to information collected through our website at trueinception.in, any sub-domains or pages that link to this policy, our contact and enquiry forms, and the services we provide to clients (collectively, the “Services”).
By using the Services you confirm that you have read and understood this policy. If you do not agree, please do not use the Services.
2.Who we are
TrueInception is an Indian technology company that builds custom software, provides DevOps and cloud infrastructure, runs product innovation / R&D engagements, and delivers training and internship programs.
For the purposes of the Digital Personal Data Protection Act, 2023 (India) (“DPDP Act”) and, where applicable, the EU/UK General Data Protection Regulation (“GDPR”):
- We act as a Data Fiduciary / Controller for information about our prospects, clients, website visitors and program participants (e.g. enquiry details, contract data, support correspondence).
- We act as a Data Processor / Processor for data that our clients ask us to process on their behalf when we build, host or maintain software and infrastructure for them.
3.Scope of this policy
This policy describes our general practices. Specific projects, integrations or regions may have additional notices, contracts or data processing agreements (DPAs) that supplement this policy. Where we process personal data on a client’s instructions, that client is the controller of the data and their privacy notice governs how that data is used — please contact the relevant client for questions about data they collected from you.
4.Information we collect
We collect information in three broad ways.
4.1 Information you give us
- Contact & identity: name, business name, role, email address, phone / WhatsApp number, and the contents of your enquiry.
- Project & engagement details: requirements, briefs, scope documents, technical specifications and any materials you share so we can scope or deliver work.
- Contract & billing: billing name, address, GSTIN (where applicable), purchase orders and invoice history. Card / UPI / NetBanking credentials are processed directly by our payment partners and are never stored on our servers.
- Program applications: for training and internship programs — education details, résumé / CV, portfolio links and similar information you submit.
- Support & communications: emails, chat transcripts, WhatsApp messages and call notes when you contact us.
4.2 Information we collect automatically
- Usage data: pages viewed, links clicked, referring URL, session duration and similar interaction data on our website.
- Device & network: IP address, browser type and version, operating system, device identifiers, language and time zone.
- Cookies & local storage: see our Cookie Policy and Section 13.
4.3 Information from third parties
- Analytics providers: aggregated, pseudonymised statistics about how visitors use our website.
- Payment providers: transaction status, reference IDs and limited masked payment metadata.
- Public sources & referrals: publicly available business information and referrals from partners, used to enrich account profiles or evaluate a potential engagement.
We do not intentionally collect special categories of personal data (for example, health data, biometrics, religious beliefs). Please do not share such data with us unless it is strictly necessary for an engagement and you have the appropriate legal basis to do so.
5.How we use your information
We use personal data for the following purposes:
- Provide the Services: respond to enquiries, prepare proposals, scope and deliver software, DevOps, cloud and R&D engagements, and provide support.
- Contracts & billing: manage agreements, generate invoices, process payments and detect billing fraud.
- Programs: evaluate applications and administer training and internship programs.
- Reliability & security: operate and secure our website and systems, diagnose incidents and maintain audit logs.
- Product & site analytics: understand how our website is used so we can improve it. We aggregate or pseudonymise this data wherever practical.
- Communications: service and project notices and, where you have opted in, newsletters and updates.
- Compliance: comply with applicable law, respond to lawful requests, and protect against abuse or misuse.
6.Legal bases for processing
Where the GDPR or comparable laws apply, we rely on the following legal bases to process personal data:
- Performance of a contract — to provide the Services you engaged us for.
- Legitimate interests — to operate, secure and improve the Services, prevent fraud, and run our business, balanced against your privacy rights.
- Consent — for optional processing such as marketing emails and non-essential cookies. You can withdraw consent at any time.
- Legal obligation — to comply with applicable laws, court orders and tax / accounting requirements.
Under the DPDP Act, we process your personal data on the lawful grounds of consent, performance of contract, compliance with law, and legitimate uses permitted by the Act.
7.Sharing & disclosure
We do not sell your personal data. We share it only as described below:
- With service providers / sub-processors that help us run our business (hosting, payments, email, analytics — see Section 8). These providers are contractually bound to confidentiality and limited use.
- With your authorised team members and the people you involve in an engagement.
- With professional advisors such as auditors, lawyers and accountants under appropriate confidentiality obligations.
- For legal reasons when we believe in good faith that disclosure is necessary to comply with law, enforce our terms, prevent fraud, or protect the rights, property or safety of TrueInception, our users or the public.
- In a business transaction such as a merger, acquisition, financing or sale of assets — subject to standard confidentiality protections and continued application of this policy.
8.Sub-processors & service providers
We engage carefully selected providers to help operate the Services. Our current key categories of providers include:
| Provider | Purpose | Region |
|---|---|---|
| Amazon Web Services | Application hosting, databases, storage | India / Singapore |
| Microsoft Azure / Google Cloud | Cloud infrastructure (project-dependent) | Global |
| Cloudflare, Inc. | CDN, edge security, DDoS protection | Global |
| Razorpay Software Pvt. Ltd. | Payment processing (UPI / NetBanking / cards) | India |
| Google Workspace | Internal email and document collaboration | Global |
| Analytics provider | Aggregated website analytics | EU / US |
We update this list as we add or replace providers. For an up-to-date list or to be notified of changes, email info@trueinception.in.
9.International data transfers
TrueInception is headquartered in India and primarily processes data on infrastructure located in India and Singapore. Some providers (for example Cloudflare, Google and our analytics providers) may process data in the United States, the European Union or other regions.
Where we transfer personal data internationally, we rely on appropriate safeguards such as Standard Contractual Clauses, the data-importer’s adequacy certifications, or other recognised transfer mechanisms.
10.Data retention
We retain personal data only for as long as necessary to fulfil the purposes described in this policy, unless a longer period is required by law:
- Enquiry & prospect data — up to 24 months from last contact, unless you become a client.
- Client & engagement data — for the life of the engagement and up to 36 months after completion to satisfy tax, audit and dispute-resolution requirements.
- Billing records & invoices — 8 years, as required by Indian tax and accounting regulations.
- Program application data — up to 12 months after the application or program cycle.
- Security & audit logs — 12 months.
- Backups — rolling encrypted backups; deleted personal data is purged from backups within the backup cycle.
11.Security
We take security seriously and apply industry-standard administrative, technical and physical safeguards, including:
- TLS in transit and encryption at rest for sensitive data.
- Role-based access control with principle-of-least-privilege; multi-factor authentication on internal systems.
- Secrets management, hashed credentials and key rotation.
- Network isolation, firewalls, rate limits and abuse / fraud detection.
- Regular dependency and vulnerability scanning and a secure-development lifecycle.
No system is impenetrable. If you believe your account has been compromised or you discover a vulnerability, please email info@trueinception.in immediately.
12.Your rights & choices
Subject to applicable law (including the DPDP Act and the GDPR), you have the following rights with respect to your personal data:
- Access — request a copy of the personal data we hold about you.
- Correction — ask us to correct inaccurate or incomplete data.
- Erasure — request deletion of your personal data, subject to legal retention requirements.
- Restriction & objection — ask us to pause certain processing or object to processing based on legitimate interests.
- Portability — receive your data in a structured, commonly used and machine-readable format.
- Withdraw consent — where we rely on consent, you can withdraw it at any time. This does not affect the lawfulness of processing carried out before withdrawal.
- Nominate — under the DPDP Act, you may nominate another individual to exercise your rights in the event of your death or incapacity.
- Complain — lodge a complaint with the Data Protection Board of India or, where applicable, your local supervisory authority.
To exercise any of these rights, email info@trueinception.in from the address associated with your account. We will respond within the timeframes prescribed by applicable law (typically within 30 days).
13.Cookies & similar technologies
We use a small number of cookies and similar technologies to keep our website working and to understand how it is used. For full details on the cookies we use and how to control them, please read our Cookie Policy.
14.Children’s privacy
The Services are intended for use by businesses and adults aged 18 or older. We do not knowingly collect personal data from children. If you believe a child has provided us personal data, please contact info@trueinception.in and we will take appropriate steps to delete it.
15.Changes to this policy
We may update this Privacy Policy from time to time. When we make material changes we will update the “Last updated” date at the top of this page and, where appropriate, notify you by email or in-product. Your continued use of the Services after the changes take effect constitutes your acceptance of the updated policy.
16.Grievance officer (India)
In accordance with the Information Technology Act, 2000, the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021, and the DPDP Act, 2023, the contact details of our Grievance Officer / Data Protection Officer are:
- Role
- Grievance & Data Protection Officer
- Company
- TrueInception Pvt Ltd
- Address
- Zara Palace, Opposite Water Tank, Wadala Road, Nashik 422009
- Phone
- +91 8600000889
We acknowledge complaints within 48 hours and aim to resolve them within 15 days.
17.How to contact us
For any privacy-related question or request, contact us at:
- +91 8600000889
- Address
- Zara Palace, Opposite Water Tank, Wadala Road, Nashik 422009
© 2026 TrueInception Pvt Ltd. This document is provided for informational purposes and does not constitute legal advice.