Executive Summary
Cognify Solution is committed to safeguarding client privacy, maintaining enterprise security standards, and adhering strictly to the Digital Personal Data Protection (DPDP) Act 2023 (India) and international privacy frameworks. We never sell or compromise client data.
Data Controller & Policy Scope
This Privacy Policy applies to all services, websites, software solutions, and digital applications operated by Cognify Solution ("Company", "We", "Us", "Our"), registered and physically operating at Hanjer Nagar, Andheri East, Mumbai, Maharashtra 400093.
As a leading IT services and digital transformation agency in Mumbai, India, Cognify Solution acts as the Data Controller responsible for deciding how your personal information is stored, processed, and protected when you access our official website (cognifysolution.com), sign service contracts, or interact with our client support desk.
Categories of Personal Data We Collect
Depending on your interaction with Cognify Solution, we collect the following structured categories of information:
- Contact Identification Data: Full name, professional email address, official mobile number (e.g., +91 62614 83696), job title, company name, and registered business address.
- Technical & Browsing Data: IP address, device type, operating system, browser model, referrer URLs, page view duration, and interaction logs.
- Project & NDA Information: Software requirements, business workflows, design assets, database specifications, and credentials shared under Non-Disclosure Agreements (NDAs).
- Financial & Transaction Data: GST number, billing address, invoice numbers, bank transfer receipts, and gateway transaction tokens. Note: Credit card / banking credentials are processed directly through PCI-DSS compliant payment gateways (Razorpay, Stripe) and are never stored on our servers.
Methods of Data Collection
We collect personal information through legitimate, transparent channels including:
- Direct submission via website contact forms, project quote requests, and appointment bookings.
- Direct communication via official phone (+91 62614 83696), WhatsApp chat widget, or corporate email.
- Automated cookies, web beacons, and Google Analytics tracking during site browsing.
- Official client onboarding agreements, Statements of Work (SOW), and service contracts.
Purpose and Legal Basis for Processing
Cognify Solution processes personal and commercial data strictly for legitimate operational purposes:
| Processing Purpose | Legal Basis |
|---|---|
| Executing & delivering contracted web/app development services | Contractual Necessity |
| Issuing tax invoices, GST reporting, and audit compliance | Statutory Legal Obligation |
| Providing technical helpdesk support & SLA maintenance | Legitimate Business Interest |
| Sending service updates, security patches & technical bulletins | Legitimate Business Interest |
| Marketing communications & newsletters (Opt-out available) | Explicit Consent |
Data Protection & Enterprise Security Protocols
Cognify Solution implements robust physical, administrative, and technical security measures to prevent unauthorized access, data loss, or disclosure:
- Encryption in Transit: 256-bit SSL / TLS encryption on all web endpoints and API transmissions.
- Storage Encryption: AES-256 bit encryption for databases and client cloud backups.
- Access Control: Strict Role-Based Access Control (RBAC) ensuring only authorized project engineers and NDA-bound staff access client files.
- Security Audits: Periodic vulnerability scanning, malware checks, and server patch management.
Third-Party Disclosure & Infrastructure Partners
Cognify Solution NEVER sells, rents, trades, or monetizes client data. We share data only with verified third-party infrastructure providers necessary to deliver our services:
- Cloud Hosting & Servers: Amazon Web Services (AWS), Hostinger, DigitalOcean.
- Payment Gateways: Razorpay, Stripe, Net Banking channels.
- Communication Tools: Google Workspace, Mailchimp, WhatsApp Business API.
Data Retention & Eradication Schedule
Personal and project data is retained only as long as necessary to fulfill contractual obligations. Active client records are maintained throughout the project lifecycle. Upon contract completion, project records and invoices are archived for up to 7 years to comply with Indian Statutory Tax Laws, after which they are permanently and securely deleted.
Your Rights Under DPDP Act 2023 & GDPR
As a valued client, you retain full ownership of your data rights:
- Right to Access: Request a copy of all personal data held by Cognify Solution.
- Right to Rectification: Request instant correction of inaccurate or outdated contact info.
- Right to Erasure: Request permanent deletion of non-statutory data ("Right to be Forgotten").
- Right to Withdraw Consent: Unsubscribe from marketing communications at any time.
Grievance Redressal & Contact Desk
For privacy inquiries, data access requests, or grievance redressal, please contact our designated Data Protection Officer:
Cognify Solution - Privacy & Legal Desk
Address: Hanjer Nagar, Andheri East, Mumbai, Maharashtra 400093
Mobile: +91 62614 83696
Email: support@cognifysolution.com
Policy Frequently Asked Questions
No. All project code, client data, and specifications are strictly confidential and governed by Non-Disclosure Agreements (NDAs).
Need Further Assistance or Clarification?
Our corporate legal and client advisory team at Cognify Solution is here to assist you with any inquiries regarding our operational agreements.