At NeoAavya Consulting Services ("NeoAavya," "we," "us," or "our"), we respect your privacy and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website (neoaavya.com), use our Aavya-Optima platform, or engage with our services.
This policy complies with the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other applicable data protection laws.
1. Information We Collect
We collect information that you provide directly to us, information we obtain automatically when you use our services, and information from third-party sources.
1.1 Information You Provide
- Contact Information: Name, email address, phone number, company name, job title
- Account Information: Username, password, and account preferences
- Payment Information: Billing address, payment method details (processed securely by third-party payment processors)
- Communication Data: Information in emails, chat messages, or support tickets you send us
- Service Data: Cloud infrastructure data, usage patterns, and configuration details when you use Aavya-Optima
1.2 Automatically Collected Information
- Device Information: IP address, browser type, operating system, device identifiers
- Usage Data: Pages visited, time spent on pages, links clicked, referring URLs
- Cookies and Tracking: We use cookies, web beacons, and similar technologies (see Cookie Policy)
- Location Data: General geographic location based on IP address
1.3 Information from Third Parties
- Business partners and service providers
- Public databases and social media platforms
- Cloud service providers (AWS, Azure, GCP) when you connect your accounts to Aavya-Optima
2. How We Use Your Information
We use your personal data for the following purposes:
2.1 Service Delivery
- Provide, maintain, and improve our services
- Process transactions and send related information
- Manage your account and provide customer support
- Analyze cloud usage and provide optimization recommendations
2.2 Communication
- Send you technical notices, updates, security alerts, and support messages
- Respond to your inquiries and fulfill your requests
- Send newsletters, marketing communications, and promotional materials (with your consent)
2.3 Analytics and Improvements
- Analyze usage patterns and trends to improve our services
- Develop new features and products
- Conduct research and development
2.4 Legal and Security
- Comply with legal obligations and respond to legal requests
- Detect, prevent, and address fraud, security issues, or technical problems
- Enforce our Terms of Service and protect our rights
3. Legal Basis for Processing (GDPR)
If you are in the European Economic Area (EEA), we process your personal data based on the following legal grounds:
- Contractual Necessity: To perform our contract with you (e.g., providing services)
- Consent: You have given explicit consent (e.g., for marketing communications)
- Legitimate Interests: To pursue our legitimate business interests (e.g., improving services, fraud prevention)
- Legal Obligation: To comply with applicable laws and regulations
4. Data Sharing and Disclosure
We do not sell your personal data. We may share your information with:
4.1 Service Providers
Third-party vendors who perform services on our behalf:
- Cloud hosting providers (AWS, Google Cloud, Azure)
- Payment processors (Stripe, PayPal)
- Analytics providers (Google Analytics)
- Customer support tools (Zendesk, Intercom)
- Email service providers (SendGrid, Mailchimp)
4.2 Business Transfers
In connection with any merger, sale of company assets, financing, or acquisition of all or a portion of our business.
4.3 Legal Requirements
When required by law, subpoena, or other legal process, or to protect our rights and safety.
4.4 With Your Consent
With your explicit consent, we may share information for purposes not covered in this policy.
5. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence, including India and the United States. We ensure appropriate safeguards are in place:
- EU-US Data Privacy Framework: For transfers from the EU to the US
- Standard Contractual Clauses (SCCs): Approved by the European Commission
- Adequacy Decisions: Countries deemed to have adequate data protection
6. Your Data Protection Rights
Depending on your location, you may have the following rights:
6.1 Rights for EEA Residents (GDPR)
- Right to Access: Obtain a copy of your personal data
- Right to Rectification: Correct inaccurate or incomplete data
- Right to Erasure ("Right to be Forgotten"): Request deletion of your data
- Right to Restrict Processing: Limit how we use your data
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to processing based on legitimate interests or direct marketing
- Right to Withdraw Consent: Withdraw consent at any time (without affecting prior processing)
- Right to Lodge a Complaint: File a complaint with your local data protection authority
6.2 Rights for California Residents (CCPA)
- Know what personal information is collected, used, shared, or sold
- Request deletion of personal information
- Opt-out of the sale of personal information (we do not sell data)
- Non-discrimination for exercising your rights
6.3 How to Exercise Your Rights
To exercise any of these rights, please contact us at:
7. Data Security
We implement appropriate technical and organizational measures to protect your personal data:
- Encryption: Data in transit (TLS/SSL) and at rest (AES-256)
- Access Controls: Role-based access and multi-factor authentication
- Regular Audits: Security assessments and penetration testing
- Employee Training: Staff trained on data protection practices
- Incident Response: Procedures to detect and respond to data breaches
Note: While we strive to protect your data, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security.
8. Data Retention
We retain your personal data only as long as necessary for the purposes outlined in this policy:
- Account Data: Retained for the duration of your account plus 90 days after account closure
- Transaction Records: 7 years (for financial and legal compliance)
- Marketing Data: Until you unsubscribe or withdraw consent
- Usage Analytics: Aggregated and anonymized data may be retained indefinitely
9. Cookies and Tracking Technologies
We use cookies and similar technologies to enhance your experience. For detailed information, please see our Cookie Policy.
9.1 Types of Cookies We Use
- Essential Cookies: Necessary for website functionality
- Analytics Cookies: Help us understand how visitors use our site (e.g., Google Analytics)
- Marketing Cookies: Track your activity to deliver personalized ads
9.2 Managing Cookies
You can control cookies through our cookie banner or your browser settings. Disabling cookies may affect website functionality.
10. Children's Privacy
Our services are not intended for individuals under 16 years of age. We do not knowingly collect personal data from children. If you believe we have collected information from a child, please contact us immediately, and we will delete it.
11. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies.
12. Marketing Communications
We may send you marketing emails about our services, events, and promotions. You can opt-out at any time by:
- Clicking the "Unsubscribe" link in any marketing email
- Contacting us at info@neoaavya.com
- Updating your preferences in your account settings
Note: Even if you opt-out, we may still send transactional emails (e.g., order confirmations, password resets).
13. Updates to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. When we make changes:
- We will update the "Last Updated" date at the top
- For significant changes, we will notify you via email or a prominent notice on our website
- Your continued use of our services after changes constitutes acceptance
14. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
15. Supervisory Authority
If you are in the EEA and believe we have not addressed your concerns, you have the right to lodge a complaint with your local data protection authority. A list of authorities can be found at: https://edpb.europa.eu/about-edpb/board/members_en