Privacy Policy
How Vedora Technologies handles data security, client intellectual property protection, and privacy compliance.
1. Scope & Commitment
At Vedora Technologies, privacy is not a mere compliance exercise—it is a core engineering principle. We act as both a data processor for the software platforms we build for our enterprise clients, and a data controller for the information collected during our business engagement and website operations.
2. Information We Collect
We collect information necessary to deliver premium design, technical consulting, and software engineering services. This falls into three categories:
- Client Business Data: Names, corporate emails, telephone coordinates, billing information, repository access credentials, project specifications, and architectural documentation shared during onboarding.
- Usage Telemetry: Anonymized analytical metadata collected when visiting our website (browser user-agent, IP hashes, referral channels, and page interaction timestamps).
- Communication Records: Email messages, Slack communications, and meeting video recordings (captured only with verbal consent for project reference).
3. How We Use Information
The collected information is solely processed for delivery of our consulting agreements. We do not engage in data brokering or ad-targeting networks.
| Data Type | Use Case | Legal Basis |
|---|---|---|
| Credentials & Schemas | Repository setup & backend deployment | Contractual Necessity |
| Billing Addresses | Invoicing and corporate taxation audits | Legal Obligation |
| Anonymized IPs | Web service telemetry and threat intelligence | Legitimate Interest |
5. Third-Party Data Sharing
We utilize reliable third-party infrastructure (subprocessors) to build, deploy, and host our services. They process data strictly in accordance with our instructions under written agreements:
Hosts our frontend app and processes edge functions securely.
Filters malicious web requests and mitigates DDoS threats.
Anonymized user trends to audit platform load requirements.
6. Security & Encryption Standards
All client workspaces, configuration setups, and codebases are secured following enterprise security standards:
- TLS & Encryption: All data in transit uses TLS 1.3 encryption. Internal data caches are encrypted at rest with AES-256 keys.
- Strict IAM Roles: Access permissions to codebase repositories are tightly controlled using multi-factor authenticated Identity Access Management (IAM) matrices.
- Secure Terminals: Development terminals are configured with compliance software to prevent automated copy-leaks of client code bases.
7. Your Rights & Access
Regardless of geographical boundaries (GDPR, CCPA, or regional legislation), we recognize the following foundational data controls for all clients:
Request removal of your credentials, database access variables, and repository history upon project completion.
Obtain copy exports of all configuration files, wireframe documents, and development notes gathered during sprint phases.
8. Data Retention Policies
We retain client project assets (such as initial layout frames, code drafts, and meeting updates) only for the duration of the operational agreement.
Upon service termination, code caches are deleted within **30 business days**, with the exception of structural invoices and legal contracts which we retain for **7 years** to satisfy regional audit frameworks.
9. Contact & Inquiries
If you have questions regarding data privacy safeguards or wish to exercise your data controls, contact our compliance representative directly:
Email: privacy@vedora.tech
Company: Vedora Technologies
Compliance Officer: Corporate Compliance Team
Location: Ahmedabad, Gujarat, IN