Legal

Privacy Policy

Last updated 21 July 2026

This Policy explains what personal data we collect across this website and our hosted software products, why we collect it, and the rights you have under Indian law.

01Who we are

This Privacy Policy explains how Synchrology Software Solutions, a partnership firm having its registered office at 2-91/12/4/NR, Plot No. 4, Doc Bhavan, 5th Floor, Kondapur, Hyderabad, Telangana - 500081, India ("Synchrology", "we", "us", or "our"), handles personal data in connection with Synchrology Softwares.

Synchrology Softwares is our software products division. It covers this website (synchrologysoftwares.com) and the software products we host on its subdomains (each, a "Product").

For the purpose of the Digital Personal Data Protection Act, 2023 (the "DPDP Act"), we act as a Data Fiduciary in respect of personal data where we determine the purpose and means of processing. If you are the individual to whom the personal data relates, you are a "Data Principal".

By using this website or any Product, you acknowledge that you have read and understood this Policy.

02Scope of this policy

This Policy applies to personal data we collect through this website, through email and phone enquiries, and through your use of any Product hosted on a subdomain of this site.

Our client services work - custom software design and development carried out by Synchrology Software Solutions - is covered by the separate privacy policy published at synchrologysoftwaresolutions.com.

This Policy does not cover third-party websites or services that we may link to. Those are governed by their own privacy policies, and we encourage you to review them.

03Two roles: your data and your customers' data

When we handle personal data for our own purposes - for example your account details, your billing information, or an enquiry you send us - we act as a Data Fiduciary and this Policy governs that processing.

When you use a Product to run your business, you may upload or generate data about your own customers, staff, or suppliers ("Customer Data"). For that data you are the Data Fiduciary and we act as a Data Processor on your instructions. We process it only to provide the Product to you, and we do not use it for our own purposes.

You are responsible for having a lawful basis to collect the Customer Data you put into a Product and for giving the required notices to the individuals concerned.

04Information we collect

Account information: name, email address, phone number, business name, role, and the credentials used to sign in to a Product.

Billing information: the details needed to raise invoices and take payment for a subscription. Card and payment instrument details are handled by our payment providers and are not stored on our servers.

Customer Data: the business records you enter into or generate within a Product - which may include personal data about your customers, staff, or suppliers.

Usage and technical information: log data such as IP address, browser and device type, pages and features used, and timestamps, collected to keep the service secure, diagnose faults, and improve how the Products work.

Communications: the content of enquiries, support requests, and correspondence with us.

We collect only the personal data necessary for the purposes described in this Policy, and we do not knowingly collect more than we need.

05How and why we use your data

To create and administer your account, authenticate sign-ins, and provide the Product you have subscribed to.

To provide support, respond to your enquiries, and communicate with you about the service, including notices about changes, incidents, and maintenance.

To bill you and to keep the accounting and tax records we are required to keep.

To keep the service secure - detecting, investigating, and preventing fraud, abuse, and unauthorised access.

To understand aggregate usage so we can fix problems and improve the Products. Where we analyse usage in this way we work with aggregated or de-identified data wherever it will serve the purpose.

To meet our legal and regulatory obligations.

06AI features and automated processing

Some Products include AI-assisted features - for example forecasting, summarising, or flagging anomalies in your records. These features process your data to produce results inside your own workspace.

We do not use your Customer Data to train general-purpose AI models for our own benefit or for other customers. Where a feature relies on a third-party AI service, we select providers who are contractually bound not to train on data submitted through their business offerings.

AI-generated output is provided as assistance, not as advice or as a decision made on your behalf. You remain responsible for reviewing it before acting on it.

07Legal basis for processing

We process personal data on the basis of your consent, on the basis of the contract under which we provide the Product to you, and for certain legitimate uses permitted under the DPDP Act.

Where processing is based on consent, you may withdraw that consent at any time by contacting us. Withdrawing consent will not affect the lawfulness of processing carried out before the withdrawal, and may mean we can no longer provide part or all of a Product to you.

08Cookies and analytics

This website and our Products use cookies and similar technologies that are necessary to sign you in, keep your session secure, remember your preferences, and understand aggregate usage so we can improve the service.

You can control or disable cookies through your browser settings. Disabling the necessary ones will prevent you from signing in and using a Product.

09How we share your data

We do not sell your personal data or your Customer Data.

We share personal data with trusted service providers (Data Processors) who help us operate - including hosting and infrastructure, database, email delivery, payment, error monitoring, and analytics providers - and only to the extent needed to perform their function, under appropriate confidentiality and security obligations.

We may share data with your instruction or consent, for example when you connect a Product to another service you use.

We may disclose personal data where required to do so by law, by a court, or by a competent authority, or where necessary to establish, exercise, or defend legal claims.

If our business or a Product is transferred to another entity, personal data may be transferred as part of that transaction. We will give you notice before that happens and the recipient will remain bound by protections no weaker than those in this Policy.

10Data retention

We retain account and Customer Data for as long as your subscription is active and you continue to use the Product.

After an account is closed or a subscription ends, we retain the data for a limited grace period so that you can export it or reactivate, and then delete or anonymise it. Where a longer period is required for legal, accounting, tax, or dispute-resolution reasons, we keep only what is necessary for that purpose.

Backups are cycled on a rolling basis, so deleted data may persist in backup copies for a short period before being overwritten.

11How we protect your data

We maintain reasonable security safeguards designed to protect personal data against unauthorised access, disclosure, alteration, and loss, in line with the Information Technology Act, 2000 and the rules made under it.

These include encryption of data in transit, access controls that limit who within Synchrology can reach production data, separation between customer workspaces, and logging of administrative access.

If a personal data breach occurs, we will notify the Data Protection Board of India and affected Data Principals as required under the DPDP Act.

No method of transmission or storage is completely secure, but we work to protect your data and review our safeguards periodically. Keeping your own sign-in credentials confidential is your responsibility.

12Your rights as a Data Principal

Subject to the DPDP Act, you have the right to access a summary of the personal data we hold about you and how it is processed.

You have the right to request correction, completion, updating, or erasure of your personal data.

You have the right to export the data held in your workspace in a commonly used format.

You have the right to nominate another individual to exercise your rights in the event of your death or incapacity, and the right to grievance redressal as set out below.

Where we hold personal data as a Data Processor on behalf of a business customer, requests from that business's own customers or staff should be directed to that business. We will assist our customer in responding.

To exercise any of these rights, please contact us using the details at the end of this Policy. We will respond within the timelines required by law.

13Children's data

Our Products and this website are intended for businesses and adults. We do not knowingly collect the personal data of children as defined under the DPDP Act without verifiable consent from a parent or lawful guardian.

If you believe a child has provided us personal data, please contact us and we will take appropriate steps to delete it.

14Transfers of data

We aim to host data in India wherever practical. Where we use service providers located outside India, any transfer of personal data is carried out in accordance with applicable Indian law, including the DPDP Act and any restrictions notified by the Government of India, and under contractual safeguards with those providers.

15Changes to this policy

We may update this Policy from time to time to reflect changes in our practices, our Products, or the law. The revised version will be posted on this page with an updated effective date.

Where a change materially affects how we handle your personal data, we will give you notice by email or through the Product before it takes effect.

16Grievance redressal and contact

If you have any questions, requests, or complaints about how we handle your personal data, please contact us at synchrologysoftwaresolutions@gmail.com or +91 90632 22952.

You may also write to us at our registered office: Synchrology Software Solutions, 2-91/12/4/NR, Plot No. 4, Doc Bhavan, 5th Floor, Kondapur, Hyderabad, Telangana - 500081, India.

For the purposes of the DPDP Act, complaints may be addressed to our Grievance Officer using the contact details above. We acknowledge and respond to grievances within the timelines prescribed by law.

This Policy is governed by the laws of India, including the Digital Personal Data Protection Act, 2023 and the Information Technology Act, 2000. Any disputes are subject to the exclusive jurisdiction of the courts at Hyderabad, Telangana. For any privacy-related concern, reach us at synchrologysoftwaresolutions@gmail.com.