ARZENLABS STANDALONE LEGAL GOVERNANCEDoc ID: ARZ-PRIVACY

Privacy Policy

Comprehensive Privacy Policy describing how Arzenlabs collects, processes, protects, stores, and retains your personal and technical data.

Applicable Entity
Arzenlabs
Udyam: UDYAM-KL-02-0152552
Effective Date
April 4, 2026
Last Revision
August 28, 2026
Document Version
v2.1

1. Overview & Data Fiduciary Identity

Arzenlabs ("Arzenlabs", "we", "us", or "our"), an enterprise registered under Udyam Registration Number UDYAM-KL-02-0152552 at Door No: 15/257 AS, Heiley Offices, FACT Kalamassery Road, Kalamassery, Ernakulam, KERALA - 683104, India, is committed to respecting your privacy and safeguarding your personal data.

This Privacy Policy explains how we collect, process, disclose, and secure your data when you visit our website https://arzenlabs.com, interact with our software applications, subscribe to technical publications, or engage our engineering consulting services.

2. Categories of Information We Collect

A. Account & Contact Information

When you register, request a consultation, or communicate with us, we collect your name, business email address, phone number, organization name, job title, and billing details.

B. Technical, Device & Network Telemetry

When you access our websites or APIs, we automatically log your Internet Protocol (IP) address, browser user-agent string, operating system version, referrer URL, requested endpoint, and request timestamp for security and operational monitoring.

C. Communication & Support Data

Records of correspondence, technical support inquiries, email exchanges, feedback submissions, and system diagnostic logs submitted to our engineering team.

D. Customer Verification Data (Where Applicable)

For enterprise contracts requiring identity validation or compliance screening, we may collect authorized representative identification, business address proof, and corporate registration documents.

3. Purposes & Legal Bases for Data Processing

We process your personal and technical data for the following legitimate business purposes:

  • Service Delivery & Account Management: To provide custom software engineering, APIs, technical reports, and maintain account relationships (Legal basis: Contractual necessity).
  • System Security & Fraud Prevention: To monitor system traffic, prevent unauthorized API access, mitigate DDoS attacks, and protect infrastructure (Legal basis: Legitimate interest & legal obligation).
  • Legal & Regulatory Compliance: To comply with statutory requirements under the Digital Personal Data Protection (DPDP) Act 2023, IT Act 2000, CERT-In cybersecurity guidelines, and applicable tax regulations.
  • Communication & Updates: To send service notices, engineering updates, security advisories, and respond to support tickets (Legal basis: Consent & contractual performance).

4. Data Sharing & Third-Party Disclosures

Arzenlabs does NOT sell, rent, or trade your personal data to third parties for marketing purposes. We share data only with trusted service providers ("Data Processors") who operate under strict Data Processing Agreements (DPAs):

  • Cloud Infrastructure Providers: Serverless web hosting providers (Vercel Inc.) and edge DNS / DDoS protection networks (Cloudflare Inc.) for delivering resilient website content.
  • Datacenter & Storage Partners: Encrypted database hosts for storing persistent application records.
  • Legal Requirements: When mandated by valid legal process, court orders, or statutory authorities under Indian law.

5. Data Retention & Security Safeguards

We retain personal information only for as long as necessary to fulfill the purposes for which it was collected or to satisfy statutory retention mandates (e.g., 180-day log retention under CERT-In guidelines).

We employ robust technical and organizational security measures, including TLS 1.3 encryption for data in transit, AES-256 encryption for data at rest, role-based access control (RBAC), and continuous vulnerability monitoring.

6. Your Rights as a Data Principal / Subject

Under the Digital Personal Data Protection Act, 2023 and GDPR (where applicable), you have the right to:

  • Access a summary of your personal data processed by Arzenlabs.
  • Request correction, completion, or updating of inaccurate personal data.
  • Request erasure of your personal data, subject to statutory legal retention exceptions.
  • Withdraw previously granted consent for non-essential processing.
  • Nominate an individual to exercise your rights in the event of incapacity.

7. Grievance Redressal Officer

In accordance with the Information Technology Act, 2000 and DPDP Act, 2023, the details of our Grievance Redressal Officer are:

Grievance Redressal Officer: Adithya s arun
Entity: Arzenlabs (Udyam: UDYAM-KL-02-0152552)
Address: Door No: 15/257 AS, Heiley Offices, FACT Kalamassery Road, Kalamassery, Ernakulam, KERALA - 683104, India
Phone: +91 8891443928
Arzenlabs(UDYAM-KL-02-0152552)

Arzenlabs seeks to comply with applicable data protection and privacy laws including the Digital Personal Data Protection Act (DPDP) 2023, Information Technology Act 2000, and applicable international privacy principles.

Legal Portal Index