Privacy Policy
In effect since 1st January 2024.
Introduction
This Privacy Policy (“Policy”) applies to the Services offered by Virgit Smart Solutions LLP ("Company", “We”, “Us”) on parth2success.com ("Website"). This Policy also applies to information we collect when you apply for a job at Company. This Policy covers the information about our usage of any data provided by you to the Company on our Website or any other platform. We are committed to protecting your privacy. Should we ask you to provide certain information by which you can be identified when using this website, then you can be assured that it will only be used in accordance with this Policy. The Company reserves the right to update this Policy frequently, hence you should check this page from time to time. Please read this Policy before using our Services. This Privacy Policy governs the types of information and data we collect and how we use and share this information. Your access to and use of the Services are available for your use are subject to the condition that you agree to the Terms of Use available under this page: Terms which includes the Privacy Policy set forth below. Company operates the Services. We use your data to provide and improve Services. By using the Services, you agree to the collection and use of information in accordance with this Policy. Unless otherwise defined in this Policy, the terms used in this Policy have the same meaning as in our Terms.
Purpose of the Privacy Policy
The goal of this policy is to make explicit the information we gather, how we will use it, and how we will not. The Policy is unfortunately longer than we would like, but we must unambiguously address all the relevant cases. We will try and keep the language simple and direct as much as possible.
Statement of Commitment to Privacy
We are committed to respecting and protecting the privacy of both Users and End Users and the personal information we may obtain through our Services or other Company operations. Accordingly, we have created this Policy to inform all Users about how we collect, use, and share User information and personal information of the End Users.
We are always ready to address questions and concerns regarding the Policy and our privacy practices. If you would like to contact our team, please contact us via contact
We have cared about our Users and their privacy since the inception of our venture. We ask for only the least amount of information necessary, gathering only what we believe is essential for doing business, or for the specific transaction at hand. We let Users know the information we have on them. Most importantly, we are committed to stay away from side revenues including personalized advertising, which inherently brings inevitable compromises in User privacy.
Definitions
Unless otherwise indicated, the following capitalized terms have the following meaning:
Account refers to the individualized panel for using the Services.
Agreement is the contract established by using any/all of the Services.
AI Services are artificial intelligence utilities provided as part of the Services.
API refers to the Parth application programming interface.
Chat Agent is a widget that can be implemented on the User’s website.
Content includes texts, pictures, and other materials published or sent by Users.
Cookies are small files stored on User’s Devices.
Data Controller means a natural or legal person who (either alone or jointly or in common with other persons) determines the purposes for which and the way any personal data are, or are to be, processed. For this Policy, the Company is a Data Controller of User data.
Data Processors (or Service Providers) means any natural or legal person who processes the data on behalf of the Data Controller. Company may use the Services of various Service Providers to process User data more effectively.
Data Subject is any living individual who is the subject of Personal Data.
Device covers electronic equipment like computers and smartphones for web browsing.
Intellectual Property encompasses exclusive rights of the Company.
Licence grants non-exclusive rights to use the Services.
Link denotes hyperlinks to other websites.
Notification is a message sent as part of the Services.
Personal Data means data about a living individual who can be identified from those data (or from those and other information either in our possession or likely to come into our possession).
Privacy Policy details personal data processing rules and is available at parth2success.com/privacy.
Services collectively refer to Website, Admin panel, Chat Agent, AI Services, and API.
Terms are these terms, available at Terms.
Usage Data is data collected automatically either generated by the use of Services or from Service infrastructure itself (for example, the duration of a page visit).
User is an individual or an entity representative using the Services or visiting the Website.
End User is an end-user of the User’s platforms and thus uses Services indirectly.
Website means collectively parth2success.com website and its sub-pages.
Widget means a Company widget (i.e. Parth chat agent) that may be implemented on User platforms.
These definitions apply in both singular and plural forms.
Data Controller, Data Processor, DPO and Compliance Details
Data Controller and Data Processor: In the context of Indian data protection laws, particularly under the Information Technology Act, 2000, and the IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, we act as a Data Controller for the data we collect directly from our Users. As a Data Controller, we determine the purposes and means of processing Personal Data. When we process data on behalf of our Users, we act as a Data Processor.
Data Protection Officer (DPO): Though not currently mandated under Indian law, in line with best practices, we have appointed a Data Protection Officer responsible for overseeing our data protection strategy and ensuring compliance with data protection regulations. Our DPO can be reached at: dpo@parth2success.com
Compliance with Indian Data Protection Laws: Our data processing practices are designed to comply with the current Indian data protection laws. All Personal Data collected by us through our Services is stored exclusively within secure hosting facilities in India. We adhere to the highest security regulations for data storage and processing within India, ensuring compliance with national standards. We are committed to adapting our practices as per the evolving legal framework, including the upcoming Personal Data Protection Bill.
Types of Data Collected and Modes of Data Usage
Personal Data
Personal Data refers to information that can personally identify a User as an individual, enabling direct contact or identification. This includes a User's first and last name, email address, contact information, physical address, and professional details. We collect Personal Data for the following purposes:
• To provide and maintain our Service, essential for the performance of the contract to which the User is a party.
• For customer support and complying with Know Your Customer (KYC) requirements.
• To provide account and subscription notices, including expiration and renewal notices.
• For communication purposes, like informing Users about changes to our Service.
• Administering sweepstakes and contests, enhancing the operation of the Company Services, and tailoring the experience of Customers in using the Company Services.
• Troubleshooting, resolving disputes, accomplishing administrative tasks, contacting Customers, and enforcing our agreements with Users, including our Terms of Use, and this Policy.
• Complying with applicable law and cooperating with law enforcement activities.
• Operating social media features integrated into our Services, which may collect IP addresses and other information governed by their respective privacy policies.
The collection and use of Personal Data are guided by our commitment to respecting User privacy and are integral to the effective delivery of our Services.
Usage Data
Usage Data is information collected automatically from a User's Device when accessing our Services. This includes the User's computer's Internet Protocol address (e.g., IP address), browser type, browser version, the pages of our Service that the User visits, the time and date of the visit, and the time spent on those pages. Usage Data helps us to:
• Monitor the usage of our Service.
• Gather analysis for service improvement.
• Detect, prevent, and address technical issues.
• Enhance overall service efficiency.
Additionally, in our AI Services, we utilize Usage Data for:
• Enhancing productivity and predictive capabilities through technologies like regex parsing, template matching, artificial intelligence, and machine learning.
• Developing models specific to an organization, using anonymized crops of service data to improve algorithm accuracy.
• Powering our automation and AI technologies primarily with our own organization's data, including internal communications and documents, as well as free and paid external sources.
Tracking Cookies Data
Our Service employs cookies and similar tracking technologies to monitor activity on our Services and hold certain information. Cookies are small data files that may include an anonymous unique identifier, sent to a User's browser from our Website and stored on the User's Device. They help us understand User preferences, improve the User experience, analyze website traffic patterns, and gather analysis for service improvement. Users have the option to refuse cookies, but this may limit the functionality of certain Service portions.
Session Cookies
We use Session Cookies to operate our Services efficiently. These cookies enable us to remember a User's actions during a browsing session, ensuring a seamless experience on our Website. Session Cookies are temporary and are deleted once the User closes the browser.
Other Modes of Tracking
We may utilize additional tracking technologies like pixel tags and web beacons to understand visitor traffic and behavior on our website. These technologies assist us in measuring the effectiveness of our marketing campaigns and promotions. They generate non-personally identifiable notices of User actions, providing valuable insights for enhancing our Services.
Website Data
Our website collects various types of information from Users, including personal identifiers such as name, company name, e-mail address, and telephone number. This information assists in User identification and communication for Services-related purposes. Our website's navigational information, gathered through cookies, etc., includes browser types, IP addresses, and User actions, aiding in the administration and improvement of our Services.
End User’s Data
We collect Personal Data from our Users and their End Users as part of our service provision. This includes data necessary for account management and service enhancement. End User Data, as determined by the applicable User, forms a part of the information we process to deliver our Services.
Data for AI Services
In providing AI Services, we may process portions of User Content, including End User Data, in either anonymized form or as-is, based on requirements. This data is essential for the effective functioning of AI Services and is shared with third-party AI providers, as authorized by the User. We ensure that data handling complies with applicable privacy standards.
Payment Data
Our approach to processing transactions is designed with user security and privacy in mind. When Users proceed to make payments for our Services, we facilitate this through secure third-party payment gateways, such as Razorpay. In aligning with stringent data protection standards, we do not collect or store any details pertaining to payment instruments. This includes, but is not limited to, credit card numbers, debit card details, and bank account information.
The integrity of your payment data is paramount, and hence, we entrust all aspects of payment processing to our payment gateway partners. They are equipped with robust security measures to safeguard your financial information. During the transaction process, our role is limited to utilizing the User’s essential personal and invoicing-related information. This includes billing addresses and GST numbers, where applicable, to ensure accurate and compliant billing practices.
This is to ensure that User’s sensitive financial data remains confidential and secure, minimizing the risk of unauthorized access or data breaches.
Social Media Data
We collect data from social media interactions and publicly available sources, including feedback, comments, and engagement on platforms like Facebook, Twitter, and LinkedIn. This data helps us understand User reactions, improve our Services, and provide Users with news, special offers, and general information about other goods, services, and events. We may collect profile information and other publicly available data to connect with Users and effectively address their needs.
Miscellaneous Data
Our collection of Miscellaneous Data focuses on specific, uncategorized types of information that are essential for enhancing our Services:
• Referral Source Data: This includes information about the URL of the website a User visited before and after using our Services. It helps in understanding User pathways and improving marketing strategies.
• Aggregated Service Interaction Data: We collect and analyze aggregated data about how Users interact with different aspects of our Services, which is vital for overall service improvement and User experience enhancement.
• Device Performance Metrics: This encompasses diagnostic data about device performance when using our Services, such as error rates, system stability data, and performance bottlenecks. Understanding these metrics helps us in optimizing our Services for diverse hardware configurations.
• Automated Interaction Data: When users engage with automated features of our Services, such as chatbots or AI-driven tools, we collect data on these interactions to assess the effectiveness and accuracy of these automated systems.
• Anonymized User Behavior Patterns: We analyze anonymized patterns of user behavior on our platform, which helps in identifying common usage trends and potential areas for service enhancement.
In our AI Services, this data, particularly Automated Interaction Data and Anonymized User Behavior Patterns, is crucial for:
• Improving the accuracy of AI algorithms.
• Tailoring AI models to specific organizational needs.
Each data type in this Miscellaneous Data category is uniquely relevant to the provision and improvement of our Services. It is handled with strict adherence to privacy regulations and our commitment to user data protection.
Additional Purposes and Basis for Data Utilization
In our commitment to enhancing our Services, we utilize User data for various supplementary purposes:
User Communications: We inform Users about updates, changes, and important notices related to our products and Services, including through email.
Marketing Activities: We keep Users updated on new products, events, offers, and promotions, aiming to provide content and opportunities of interest.
Feedback and Surveys: User feedback, collected through surveys, guides our service improvement and product development efforts.
Service Management: User data is crucial for account setup, maintenance, and facilitating essential service functions like collaboration, hosting, and data backup.
Usage Analysis: Analyzing how Users interact with our Services helps in troubleshooting and enhancing user experience and service efficiency.
Customer Support: We use data to improve our customer support interactions and responses to User inquiries and issues.
Fraud Prevention: Monitoring for fraudulent activities and illegal transactions is a key aspect of safeguarding User interests.
Record Maintenance: Updating and analyzing records helps in identifying new customer opportunities and tailoring our Services accordingly.
Website and Traffic Analysis: We track visitor navigations and preferences on our websites to align our content and Services with User interests.
Marketing Insights: Improving our marketing strategies based on User interactions and preferences is crucial for relevant and effective user engagement.
Compliance and Protection: Data processing for legal compliance, public interest, and protecting the rights of all stakeholders is an integral aspect of our operations.
Through these additional data processing activities, we ensure a secure, efficient, and user-centric service environment, prioritizing User data protection and privacy.
Data Storage and Retention
Our approach to data storage and retention is carefully structured to balance user needs, legal obligations, and our operational requirements. Here's how we manage different types of data:
Usage Data, Tracking Data, Session Data:
These types of data, which do not contain Personal Data, Invoice Details, or End User's Data, are retained for varying periods depending on our operational needs. We reserve the right to retain this data for as long as necessary at our sole discretion.
Such data is primarily used for internal analysis to strengthen the security and functionality of our Services. The retention period for this data is typically shorter, except when required for security enhancements or as mandated by legal obligations.
Personal Data, Invoice Details, and End User’s Data:
Following the termination of a User's Account, we may retain Personal Data, invoice details, and the End User's Data for a duration determined by us, unless the User explicitly requests their deletion.
Users have the option to request the deletion of their data post-termination. Absent such a request, we may continue to store data as deemed necessary.
This retention allows us to comply with legal obligations, resolve disputes, and enforce our policies and agreements. It also enables us to handle any residual matters related to discontinued services.
Transfer of Data
Your information, including Personal Data, is processed, and stored on servers of our cloud service partners such as Amazon Web Services (AWS), potentially located outside of India. Despite this, we commit to not selling or indiscriminately sharing Personal Data of the Users or the End Users with external entities. Our use of such data is confined strictly to providing our Services to Users.
In cases of organizational restructuring, such as mergers or acquisitions, the acquiring entity will inherit the data we hold, including Personal Data, under the assurance that it remains protected as stipulated in this Privacy Policy. Any transfer of Personal Data across borders, including for storage or processing, adheres to stringent security measures and contractual safeguards, ensuring compliance with applicable data protection legislation and maintaining the integrity of your data.
Furthermore, our collaboration with ChatGPT involves data sharing strictly for the purpose of improving service offerings and capabilities. This partnership operates under rigorous data protection agreements that respect and uphold the privacy of your Personal Data, consistent with legal requirements and this Privacy Policy.
Disclosure of Data
We may disclose Personal Data to comply with legal obligations, including responding to lawful requests by public authorities and to adhere to judicial proceedings, court orders, or legal processes. Such disclosures are made to protect our rights, ensure compliance with our policies, and safeguard the interests of our users and the Company. Additionally, in the event of a merger, acquisition, or asset sale, Personal Data may be transferred as part of the transaction.
We may also share Personal Data with our subsidiaries, affiliates, employees, contractors, and third-party service providers who assist in operating our business and providing our Services. This includes using Personal Data to include your company’s logo on our website, with your consent.
In extraordinary circumstances, we reserve the right to disclose information to prevent imminent harm, address fraud, security, or for the protection of our rights and property.
Data Security Measures
We prioritize the security of your data, understanding that no digital platform can guarantee absolute security. Our primary data storage and processing are handled through AWS, leveraging its robust security measures. Additionally, data interactions with ChatGPT and payment gateway (primarily Razorpay) are protected under their respective security protocols.
For securing data transmission, we implement SSL technology, ensuring encrypted connections for the safeguarding of Personal Data during its transit to us. Access to User Data, including Personal and Non-Personal Data, is strictly regulated within our system, allowing access only to the authorized personnel through secure authentication mechanisms.
We encourage Users to maintain the confidentiality of their login credentials and to implement best practices for digital security on their end, such as logging out after accessing their accounts and using strong, unique passwords.
While we strive to employ commercially reasonable security measures, we acknowledge the inherent risks of data transmission over the internet. Consequently, we cannot assure the impenetrability of the data shared with us. In alignment with our commitment to transparency, we will endeavor to inform Users promptly should we become aware of any security breach affecting their data.
Our database, hosted on MongoDB within AWS infrastructure, benefits from the advanced security features and compliance certifications provided by AWS, ensuring a secure environment for data storage and processing.
Measures to Protect the Privacy of Children
Our Services are not designed for individuals under the age of 18. We do not intentionally gather Personal Data from children under 18. If a parent or guardian becomes aware that their child has supplied us with Personal Data, they should contact us at dpo@parth2success.com. Upon notification, we commit to removing any such data from our servers promptly.
Third-Party Service Providers
We engage third-party companies and individuals ("Service Providers") to support our Services’ operations, such as analytics, hosting, and assistance with technical and administrative aspects. These Service Providers are granted access to User’s Personal Data solely for the purpose of performing tasks on our behalf, under obligations of confidentiality and non-use beyond the scope of their services to us.
Payment Gateways
For the provision of paid Services, we utilize third-party payment gateways, such as Razorpay, for payment processing. We do not collect, process, or store User’s Payment Data. Payment Data is directly transmitted to our third-party payment gateways, whose handling of your Payment Data and Personal Data is dictated by their privacy policies. These payment gateways comply with the standards set by PCI-DSS, managed by the PCI Security Standards Council, ensuring the secure processing of User’s Payment Data.
Analytics
We may utilize third-party services, including Google Analytics and Mixpanel, to monitor and analyze web traffic and user interactions with our Services. Google Analytics helps us understand how Users engage with our Services, sharing data with other Google services and potentially using it for advertising personalization. For more details on Google's data practices and how to safeguard your data, please visit their privacy and data protection pages. Mixpanel offers insights into User behavior, with options for Users to opt-out of tracking. For opt-out information and Mixpanel's data collection policies, please refer to their respective pages.
Third-Party Links and Services
Our Services may include links to external sites not operated by us. Clicking on a third-party link will navigate you away from our site. We encourage reviewing the Privacy Policy of any external site visited, as we do not control and are not responsible for their content, privacy policies, or practices. These links do not imply our endorsement of third-party sites. Our Privacy Policy applies solely to Personal Data collected through our Services and does not cover third-party sites or their privacy practices.
Data Breach Notification Procedures
In the event of a data breach involving Personal Data, our priority is to address the issue promptly and transparently. While we are committed to maintaining the highest standards of data security, we acknowledge the inherent risks associated with data transmission over the internet.
Notification Process:
• Detection and Assessment: Upon detecting a data breach, we will assess the nature and scope of the incident to understand the potential impact on User and End User Data.
• Notification Timeline: We aim to notify affected Users of a data breach within 48 hours of its discovery. However, this timeframe is an aim rather than an obligation, given the complexities that can be involved in a breach investigation.
• Notification Methods: Affected Users will be informed through the primary email associated with their account and, where feasible, via admin notifications within our Services.
• User Responsibilities: Users are responsible for the accuracy, legality, and security of their Data. In the event of a breach, Users should assess the impact on the End Users and take appropriate actions in line with applicable data protection laws.
• Reporting: Users must report any observed or suspected data protection breaches to the team at support@parth2success.com within 48 hours of discovery. This prompt reporting aids in the swift action to mitigate the breach's effects.
• Third-Party AI Providers: For data shared with third-party AI providers, as authorized by Users, the responsibility for the security of such data in the third-party environment lies with the respective provider. We will coordinate with these providers as necessary to address any breaches affecting shared data.
We emphasize that while we strive to implement robust safeguards against unauthorized access or use of User data, complete security cannot be guaranteed. Users acknowledge this risk and are encouraged to take proactive measures to secure their accounts and sensitive information.
Changes to the Privacy Policy
Our Privacy Policy may undergo updates to reflect changes in our data protection practices. We encourage all Users, including End Users, to review this Policy regularly. The "Last Updated" date at the top of the Policy will indicate the latest revision.
Notification of Changes:
• Significant updates to this Policy will be communicated via email, or via admin notifications, or via other standard methods.
• For substantial changes affecting User rights, we will provide notice via email to Users' primary email addresses. Users are encouraged to ensure their email addresses are verified and up-to-date to receive important notifications.
• Continued use of our Services after the effective date of any changes will constitute Users' acceptance of the revised Privacy Policy. If Users feel the updated Policy affects their rights, they have the option to discontinue the use of the Services by contacting the support team.
• Minor modifications to the Policy may not be notified to the Users. Users concerned about how their personal information is used should visit https://www.parth2success.com/privacy.html periodically for the most current Policy version.
This streamlined approach ensures Users are informed of any changes in a timely manner while maintaining the integrity of our commitment to privacy and data protection.
We make every effort, including periodic reviews, to ensure that personal information provided by the User is used in conformity with this Privacy Policy. If the User has any concerns about our adherence to this Privacy Policy or the way their personal information is used, they may write to us at support@parth2success.com. We'll contact them, and if required, coordinate with the appropriate regulatory authorities to effectively address their concerns.
Data Protection Officer
If a User has a complaint about our privacy practices, they may submit a complaint to our Data Protection Officer. Our Data Protection Officer and compliance team will evaluate their complaint and may request additional information. Providing sufficient information to understand the facts and circumstances of a complaint is important and necessary to resolve complaints.
For any questions or comments about this privacy policy and our privacy practices, or to register a complaint or concern, the Users may contact us through our Data Protection Officer at: dpo@parth2success.com.
Jurisdiction
All disputes arising from or related to these Terms shall be exclusively resolved in the courts of Ahmedabad, India, and governed by Indian law, disregarding conflict of law principles.
Contact Information
For any questions about this Policy, please contact us at support@parth2success.com or 97731-00045.