Privacy Policy
This Privacy Policy explains how Nausha Technologies collects, uses, stores, shares, and protects personal data when you interact with our websites, software platforms, and digital services.
We are committed to handling personal data responsibly and in accordance with applicable data-protection, privacy, information-technology, and other applicable laws and regulations, including the Digital Personal Data Protection Act, 2023 (DPDP Act), to the extent applicable.
1Overview & Data Fiduciary
Nausha Technologies operates a technology business providing software development, digital services, software platforms, and related technology solutions.
This Privacy Policy applies to personal data collected through our corporate website at https://nausha.in, our communications with you, and other Nausha-operated digital services where this Privacy Policy is specifically referenced.
Certain Nausha products or platforms may have additional or product-specific privacy notices. Where such notices apply, they will supplement this Privacy Policy and may provide additional information about the particular data processing carried out by that product.
Data Fiduciary Details
Where Nausha determines the purpose and means of processing personal data covered by applicable data-protection law, Nausha acts as the relevant Data Fiduciary.
The proprietor information above corresponds to the business registration information maintained by Nausha with the competent authorities.
2Information We Collect
We adhere to the statutory principle of data minimization, seeking to collect only the personal data reasonably necessary for the purposes described in this Privacy Policy. The information we collect depends on how you interact with Nausha.
You may provide personal data when you:
- Submit a contact or consultation form
- Request information about our services or platforms
- Communicate with us by email or WhatsApp
- Request a quotation, proposal, or architectural scope
- Enter into a service agreement or SOW
- Make or initiate an online or wire payment
- Request customer or technical support
- Voluntarily upload documents or project materials
Name, email address, phone number, organization name, project scope, website/application details, billing details, and tax identifiers (such as GSTIN where applicable).
Notice: Please avoid submitting sensitive personal data (e.g., biometric, health, or private credentials) unless reasonably necessary for the project and specifically requested.
Depending on service configuration, our systems may record:
- •Network & Device: IP address, browser type and version, device-related info, and operating system.
- •Navigation Data: Referring page or URL, pages/resources requested, and timestamp of requests.
- •Diagnostics & Security: Error logs, latency diagnostics, and security/fraud-prevention telemetry.
- •Operational Metrics: Technical performance signals generated during standard web socket and HTTP interactions.
The exact information collected may vary between individual Nausha websites, platforms, and client software solutions.
3How We Use Personal Data
We process personal data strictly for legitimate operational, contractual, and legal purposes:
Evaluating project requirements, preparing technical quotations, delivering contracted software code, providing support, and administering agreements.
Responding to inquiries, sending milestone progress updates, delivering invoices, issuing payment confirmations, and dispatching administrative notices.
Detecting suspicious network activity, preventing unauthorized system access, investigating cyber incidents, and ensuring server reliability.
Complying with statutory accounting mandates, maintaining GST invoices, answering lawful regulatory requests, and defending legal rights.
Maintaining, benchmarking, securing, and optimizing our web applications, client portals, microservices, and internal development processes.
4Consent & Permitted Processing
Where applicable data-protection law requires consent for processing personal data, we seek consent in an appropriate and transparent manner.
Depending on the circumstances, personal data may also be processed where permitted by applicable law (such as legitimate uses under the DPDP Act) for purposes including:
- •Providing a specific technology service requested by you
- •Performing or entering into a commercial agreement or SOW
- •Complying with statutory laws and legal obligations
- •Preventing fraud, platform misuse, or cyber incidents
- •Responding to lawful judicial or governmental directives
- •Protecting the vital rights, assets, and safety of individuals
5Third-Party Service Providers & Sharing
Nausha engages reputable third-party service providers who act as Data Processors bound by confidentiality to support our business and technical infrastructure.
| Service Category | Purpose & Operational Function | Potential Information Handled |
|---|---|---|
| Cloud & Infrastructure Providers | Hosting application backends, container microservices & database storage | Application data, technical server logs, deployment artifacts |
| Payment Providers (e.g., Razorpay) | Payment processing, banking authentication, transaction verification | Transaction identifiers, payment status, amount, tokenized order IDs |
| Communication Providers | Direct customer messaging, email notifications, technical support | Contact details, email address, message correspondence |
| Security & Monitoring Providers | Edge DDoS filtering, threat diagnostics, infrastructure uptime tracking | IP addresses, firewall alerts, diagnostic event telemetry |
We may disclose information where required by law, court orders, or regulators, or where necessary to prevent fraud, protect infrastructure, or defend our legal rights.
Certain cloud service providers may process data across international regions. Where cross-border processing occurs, Nausha applies appropriate contractual safeguards under applicable law.
6Payment Information & Gateway Security
Where online payments are offered, transactions are processed securely through authorized third-party payment gateways such as Razorpay.
Where payment processing is handled by third-party payment providers, Nausha does not intentionally store complete debit or credit card numbers, CVVs, card PINs, or online banking passwords on its own application servers.
Payment gateways independently process cardholder data in PCI-DSS certified environments. Nausha receives only tokenized, non-sensitive transaction data:
8Data Retention & Erasure
Nausha retains personal data only for as long as reasonably necessary to fulfill the purposes for which it was collected, or as permitted or mandated by applicable law.
- • Nature and sensitivity of the information
- • Duration of the active business relationship
- • Contractual obligations in SOW agreements
- • Statutory accounting and tax record mandates
- • Cybersecurity audit and fraud prevention
- • Establishment, exercise, or defense of legal claims
When personal data is no longer reasonably required and no statutory or security retention reason applies, we securely delete, anonymize, or dispose of it.
Deletion Requests: To request data erasure or deletion, email us at info@nausha.in. Requests will be verified and addressed in accordance with applicable law.
9Security Safeguards & Storage
Nausha takes reasonable technical and organizational measures to protect personal data against unauthorized access, loss, misuse, or destruction:
While we maintain rigorous safeguards, no digital system can be guaranteed 100% immune from all external cyber threats. Where required by law in the event of a verified breach, we will notify affected parties and authorities in accordance with statutory guidelines.
10Your Rights as a Data Principal
Subject to applicable data-protection law (including the DPDP Act, 2023), you possess distinct rights regarding your personal data:
Request a summary of your personal data processed by Nausha and details of third parties with whom data has been shared.
Request correction, completion, or updating of inaccurate or misleading personal data.
Request deletion or erasure of personal data that is no longer required for its original purpose or under applicable law.
Raise a formal grievance regarding our data processing directly to our designated Grievance Officer.
Nominate another individual who will exercise your data principal rights in the event of death or incapacity, in accordance with the DPDP Act.
Submit requests to our Privacy & Compliance Desk via email at info@nausha.in.
We may request reasonable information to verify your identity before processing. We address requests within the period mandated by law or within a reasonable statutory timeframe.
11Children's Privacy
Our corporate website and technology services are primarily intended for adults and commercial business users.
We do not knowingly seek to collect personal data from children in circumstances where applicable law requires parental or guardian consent without obtaining such consent.
If you believe that a minor has provided personal data without appropriate consent, please inform us immediately at info@nausha.in. We will take prompt steps to verify and address the records.
12Grievance Redressal Mechanism
If you have a concern, complaint, or grievance regarding the processing of your personal data or this Privacy Policy, you may contact our designated grievance desk:
Nausha Technologies
• Statutory Grievance DeskDesignated Grievance Contact / Officer: Putti Uday Babu
13Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our services, technology stack, business operations, third-party service providers, or statutory requirements under Indian law.
When we make changes, we will update the "Last Updated" date at the top of this policy and, where appropriate, provide additional notice. The updated policy becomes effective when published on our website.
Legal & Governance Information
Official statutory reference under DPDP Act, 2023Legal & Governance Inquiries
This document is governed by the laws of India. For statutory notices, formal service of process, or compliance inquiries, direct all communications to: