Your data privacy and security are our highest priority.
UltraCorr IT Private Limited ("we," "us," or "our") is committed to protecting your privacy in compliance with Indian data protection laws. This Privacy Policy explains how we collect, use, disclose, and protect your personal data when you use our website (https://www.ultracorrit.com) and services.
This policy is formulated in accordance with the Information Technology Act, 2000 and the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 ("SPDI Rules"). It also incorporates requirements under the Digital Personal Data Protection Act, 2023 ("DPDP Act"). The policy applies to all personal data collected in digital format or non-digitized data subsequently digitized.
By using our Site or services, you consent to the practices described herein. For the purpose of this policy, "Data Principal" refers to the individual to whom the personal data relates, and "Data Fiduciary" refers to our role in determining the purpose and means of processing personal data.
We collect the following types of personal information in compliance with the data minimization principle under the DPDP Act:
| Collection Method | Type of Data Collected | Legal Basis |
|---|---|---|
| Contact forms | Name, email, organization, phone | Explicit consent |
| Newsletter sign-ups | Email address, preferences | Explicit consent |
| Technical automated collection | IP address, browser data, cookies | Legitimate interest |
| Service communications | Support requests, inquiry details | Contract performance |
We use your personal data for the following purposes, adhering to the principle that personal data can only be processed for the purpose specified at the time of collection:
We ensure that processing is limited to only those items of personal data that are required for attaining a specific purpose as mandated by the DPDP Act.
We may disclose your personal data in the following circumstances, always ensuring appropriate safeguards:
Under the SPDI Rules, disclosure of sensitive personal data to third parties requires prior permission from the provider of such information.
As a Data Principal, you have the following rights under Indian laws:
To exercise any of these rights, please contact our Grievance Officer using the details provided in Section 12. We will respond to legitimate requests within 30 days as required by Indian regulations, after verifying your identity to prevent unauthorized access.
We implement reasonable security practices and procedures as required under Section 43A of the IT Act, including:
In accordance with the IT Act, we maintain documented information security programs and implement IS/ISO/IEC 27001 standard security practices or other standards approved by the government. However, no method of transmission over the Internet or electronic storage is 100% secure.
We retain your personal data only for as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required or permitted by law. Our retention practices follow the storage limitation principle of the DPDP Act, ensuring data is kept only for the duration necessary for the stated purpose.
Specific retention periods are based on:
Upon expiration of the retention period, we securely delete or anonymize your data so it can no longer identify you.
If your data is transferred outside India, we ensure that such transfers comply with the cross-border data transfer restrictions under the DPDP Act. We will only transfer data to countries or entities that provide adequate levels of protection or under approved contractual arrangements that ensure comparable security standards.
For international transfers, we implement appropriate safeguards such as:
In accordance with the SPDI Rules, we:
Under the DPDP Act, we adhere to the following principles:
While India has a federal data protection framework with the DPDP Act as the overarching law, we also comply with any specific requirements under Telangana state laws that may apply to our operations. Currently, there are no specific data protection bylaws in Telangana that override the national framework, but we monitor for any regional developments.
We use cookies and similar technologies to enhance user experience, analyze site usage, and deliver personalized content. Our practices comply with the consent requirements under Indian laws.
Our services are not directed to children under the age of 18. We do not knowingly collect personal data from minors without verified parental consent in accordance with the DPDP Act. If we discover that a minor has provided us with personal data without appropriate consent, we will take steps to delete such information promptly.
In compliance with the SPDI Rules, we have designated a Grievance Officer to address your privacy-related concerns. For any questions, requests, or complaints regarding this Privacy Policy or your personal data, please contact:
Grievance Officer
UltraCorr IT Private Limited
Email: info@ultracorrit.com with subject "Attention: Grievance Officer"
Phone: +91 7674094179
Response Time: Within 30 days as required under Indian regulations
You also have the right to approach the Data Protection Board of India once established under the DPDP Act for redressal of complaints.
We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or other factors. The "Last updated" date at the top indicates when the latest revisions were made. We will notify users of material changes through prominent notices on our website (https://www.ultracorrit.com) or direct communication.
In accordance with the principle of transparency, we will indicate the version history of this policy, and users will be able to access previous versions upon request by contacting our Grievance Officer. Continued use of our services after changes constitutes acceptance of the updated policy.