Privacy Policy
-
Identification of Data Fiduciary
-
The Data Fiduciary responsible for the collection, processing, storage, and protection of your personal data is identified as follows:
-
Registered Legal Name of the Company
-
Registered Office Address
-
Official Website
-
Official Contact Email
-
Email Address for Privacy-Related Queries
-
Customer Support Email
-
Customer Support Contact Number
-
Business Hours for Customer Support
-
Grievance Officer Details (Name, Designation, and Contact Information, if applicable)
-
Jurisdiction governing disputes relating to the processing of personal data
-
Date of Last Update of the Privacy Policy
You may contact us using the above details for any queries, requests, complaints, or concerns relating to the collection, processing, use, disclosure, or protection of your personal data. We are committed to addressing your concerns in a timely, transparent, and lawful manner in accordance with applicable data protection laws.
-
Definitions Section
"Personal Data" means any information relating to an identified or identifiable natural person ("Data Principal"), whether directly or indirectly, by reference to an identifier such as a name, identification number, location data, online identifier, or one or more factors specific to the individual's identity. This may include personal, financial, professional, technical, or digital information that can reasonably be used to identify an individual, either alone or in combination with other available information.
"Processing" means any operation or set of operations performed on Personal Data, whether by automated or non-automated means. This includes the collection, recording, organization, structuring, storage, adaptation, alteration, retrieval, consultation, use, analysis, disclosure by transmission, dissemination, sharing, alignment, combination, restriction, anonymization, encryption, archival, deletion, destruction, or any other handling of Personal Data throughout its lifecycle.
-
Lack of Legal Basis for Processing
We process personal information only where we have a lawful basis to do so. Depending on the nature of our services, we may process your information based on one or more of the following grounds:
-
Your consent, where you have voluntarily agreed to the collection and processing of your personal information.
-
Performance of a contract, to provide, maintain, and fulfill our contractual obligations and requested services.
-
Compliance with legal and regulatory obligations, where processing is required by applicable laws, regulations, or lawful requests from governmental authorities.
-
Legitimate business interests, including improving our services, enhancing user experience, ensuring platform security, preventing fraud, and conducting business operations, provided such interests do not override your fundamental rights and freedoms.
-
Protection of vital interests, where processing is necessary to protect the life, health, or safety of an individual.
-
Establishment, exercise, or defense of legal claims, including responding to legal proceedings, enforcing our terms, and protecting our legal rights.
-
Business operations and service improvement, such as analytics, quality assurance, product development, customer support, and performance monitoring.
-
Information security and fraud prevention, to detect, investigate, and prevent unauthorized access, cyber threats, misuse, or other unlawful activities affecting our platform or users.
4. Consent Mechanism
By accessing or using our website, creating an account, registering for our services, placing an order, subscribing to our communications, or otherwise providing your personal information, you acknowledge that you have read, understood, and agree to the terms of this Privacy Policy.
You expressly consent to the collection, use, storage, processing, disclosure, and transfer of your personal information in accordance with this Privacy Policy and all applicable laws. You further acknowledge that such information may be used to provide, improve, personalize, secure, and administer our services, communicate with you regarding your account or transactions, comply with legal and regulatory obligations, and for other legitimate business purposes as described herein.
If you do not agree with the terms of this Privacy Policy, you should refrain from accessing or using our website and services or providing any personal information. Your continued use of the website and services following any updates or modifications to this Privacy Policy shall constitute your acceptance of such revised terms.
5. Data Subject Rights Need Expansion
We are committed to ensuring that every Data Principal can exercise their rights in accordance with applicable data protection laws, including the Digital Personal Data Protection (DPDP) Act, 2023. Subject to applicable legal requirements, you may exercise the following rights:
-
Right to Access – Obtain confirmation of whether your personal data is being processed and request access to such information.
-
Right to Correction – Request correction, updation, or completion of inaccurate or incomplete personal data.
-
Right to Deletion (Erasure) – Request the deletion of your personal data when it is no longer required or where permitted under applicable law.
-
Right to Withdraw Consent – Withdraw your consent for the processing of personal data at any time, without affecting the lawfulness of processing carried out before such withdrawal.
-
Right to Grievance Redressal – Raise concerns or complaints regarding the processing of your personal data and seek timely resolution through our grievance redressal mechanism.
-
Right to Nominate – Nominate another individual to exercise your rights under the DPDP Act in the event of your death or incapacity.
-
Right to Data Portability – Where applicable and technically feasible, receive your personal data in a structured, commonly used, and machine-readable format or request its transfer to another data fiduciary.
-
Right to Restrict Processing – Request restriction of processing of your personal data in circumstances permitted under applicable law.
-
Right to Object to Processing – Object to the processing of your personal data for specific purposes where such right is available under applicable law.
-
Right to be Informed – Receive clear and transparent information about the collection, use, storage, sharing, and retention of your personal data.
-
Right to Transparency – Know the purposes for which your personal data is processed, the categories of data collected, and the entities with whom it may be shared.
-
Right to Review Automated Decisions – Where applicable, request a review of decisions made solely through automated processing that significantly affect your rights or interests.
-
Right to Lodge a Complaint with the Data Protection Board – If you are not satisfied with the resolution of your grievance, you may approach the appropriate authority as provided under applicable law.
How to Exercise Your Rights
-
To exercise any of the above rights, please contact our designated Grievance Officer or Data Protection Officer using the contact details provided in this Privacy Policy. We will process your request within the timelines prescribed under applicable law, subject to verification of your identity and any applicable legal limitations.
6. Grievance Officer Details
For any grievances relating to the processing of your personal data, you may contact our Grievance Officer at
connect@ai-fe.ai.
We will endeavour to respond to grievances within the timelines prescribed by applicable law.
7. User Account and Password Responsibilities
Users are solely responsible for maintaining the confidentiality and security of their login credentials, including their username and password. Any activity performed through a user's account shall be deemed to have been carried out by the account holder.
Users agree to:
-
Maintain the confidentiality of their login credentials and not disclose them to any third party.
-
Ensure that their account is accessed only by authorized individuals.
-
Notify us immediately of any unauthorized access, suspected security breach, or misuse of their account.
-
Log out of their account after each session when using shared or public devices.
-
Take reasonable measures to prevent unauthorized access to their account.
The Company shall not be liable for any loss, damage, or unauthorized activity resulting from a user's failure to safeguard their login credentials or comply with these security obligations. Users remain fully responsible for all actions, transactions, and communications conducted through their account unless otherwise required by applicable law.
8. Automated Decision-Making and Artificial Intelligence (AI)
At AIFE, we may use automated tools, analytics, machine learning, and artificial intelligence ("AI") technologies to enhance the quality, efficiency, security, and functionality of our platform and services. These technologies may be used for purposes including, but not limited to, improving user experience, personalizing content, processing requests, detecting fraud or misuse, performing analytics, enhancing system performance, and providing AI-assisted recommendations or insights.
Any AI-generated outputs, recommendations, or analyses are intended solely to assist users and should not be construed as professional, legal, financial, medical, or other regulated advice unless expressly stated. Users are encouraged to exercise independent judgment and, where appropriate, seek advice from qualified professionals before relying on such outputs.
We implement appropriate technical, organizational, and administrative safeguards to ensure that our automated systems operate responsibly, securely, and in accordance with applicable laws and industry standards. We also regularly review and improve our AI systems to enhance their accuracy, reliability, fairness, and security.
Our AI systems are not intended to make decisions based solely on automated processing that produce legal or similarly significant effects on individuals. Where a decision could materially affect a user's rights, obligations, or interests, appropriate human oversight, review, or intervention will be incorporated where required under applicable law.
We are committed to developing and deploying AI responsibly by promoting transparency, accountability, privacy, fairness, and security in the use of automated technologies. As our AI capabilities evolve, we may update our practices and this Privacy Policy to reflect technological advancements and applicable legal or regulatory requirements.
9. Marketing Communications & Consent
We send marketing communications only where permitted by applicable law or where you have expressly provided your consent. By subscribing to our newsletters, promotional emails, updates, or other marketing communications, you agree to receive information about our products, services, events, offers, and other relevant announcements.
You may withdraw your consent or opt out of receiving marketing communications at any time by using the unsubscribe link included in our emails or by contacting us directly. Withdrawal of consent will not affect the lawfulness of any processing carried out prior to such withdrawal.
We are committed to respecting your communication preferences and will ensure that your personal information is used for marketing purposes only in accordance with applicable data protection and privacy laws. We do not send unsolicited marketing communications and take reasonable measures to ensure that all promotional messages are relevant, secure, and compliant with legal requirements.
Your preferences will be updated promptly upon receiving your request, although you may continue to receive essential service-related or transactional communications that are necessary for the administration of your account or the services you use.
10. Data Breach Notification Clause
In the event of a personal data breach, we are committed to responding promptly and responsibly to protect the confidentiality, integrity, and security of your personal information. We shall take appropriate technical, administrative, and organizational measures to contain, investigate, and mitigate the impact of any such breach.
Where required under applicable laws and regulations, we will notify the relevant regulatory authorities and affected individuals within the prescribed timelines. Such notifications will include the nature of the breach, the categories of data affected, the potential risks involved, and the measures taken or recommended to minimize any adverse impact.
We will maintain appropriate records of personal data breaches, conduct necessary investigations, and implement corrective actions to prevent similar incidents in the future. We continually review and strengthen our security practices to safeguard personal data against unauthorized access, disclosure, alteration, or destruction.
11. Third-Party Service Providers
-
AIFE may engage trusted third-party service providers to perform services on its behalf, including but not limited to cloud hosting, payment processing, analytics, customer support, communication services, and technical maintenance. Such service providers shall process personal data strictly in accordance with AIFE's documented instructions and solely for the purpose of providing the contracted services.
All third-party service providers are required to:
-
Process personal data only on the documented instructions of AIFE and for authorized purposes.
-
Implement appropriate technical and organizational security measures to safeguard personal data against unauthorized access, disclosure, alteration, loss, or destruction.
-
Maintain strict confidentiality of all personal and sensitive information and ensure that their personnel are bound by confidentiality obligations.
-
Comply with all applicable data protection, privacy, and cybersecurity laws and regulations.
-
Use the personal data only to the extent necessary to perform the services contracted by AIFE and not for any independent or unauthorized purpose.
-
Promptly notify AIFE of any actual or suspected data breach, security incident, or unauthorized access affecting personal data.
-
Ensure that any subcontractors engaged by them are subject to equivalent data protection and confidentiality obligations.
-
Return or securely delete personal data upon completion or termination of the services, unless retention is required by applicable law.
-
Cooperate with AIFE in responding to data subject requests, regulatory inquiries, audits, or compliance assessments where required.
-
Refrain from transferring personal data to another third party or outside the applicable jurisdiction without AIFE's prior written authorization and compliance with applicable legal requirements.
-
AIFE exercises reasonable due diligence while selecting and monitoring its third-party service providers. However, each service provider remains independently responsible for complying with its contractual obligations and applicable legal requirements concerning the protection and processing of personal data.
12. Government Disclosure Provision
We may disclose your information where required or permitted by applicable law, regulation, court order, governmental directive, or the lawful request of any regulatory authority, law enforcement agency, or other competent public authority.
Such disclosure may also be made:
-
To comply with legal obligations, judicial proceedings, subpoenas, or statutory requirements.
-
To establish, exercise, or defend our legal rights, claims, or interests.
-
To investigate, prevent, detect, or address suspected fraud, cyber threats, security incidents, illegal activities, or violations of our Terms of Use or other applicable policies.
-
To protect the rights, property, safety, or security of our company, users, employees, business partners, or the general public.
-
In connection with audits, regulatory inspections, investigations, or compliance reviews conducted by competent authorities.
-
As part of a merger, acquisition, restructuring, sale of assets, or other corporate transaction, where disclosure is legally required or reasonably necessary, subject to appropriate confidentiality obligations.
We will disclose only the information that is necessary for the specific legal or regulatory purpose and, where legally permissible, will take reasonable steps to ensure that such disclosures are made in a secure and compliant manner.
13. Jurisdiction and Governing Law
This Privacy Policy shall be governed by, construed, and interpreted in accordance with the laws of the Republic of India, without regard to its conflict of law principles.
By accessing or using this Website, you expressly agree that any dispute, claim, controversy, or cause of action arising out of or relating to this Privacy Policy, the collection, processing, storage, or use of your personal information, or your use of the Website shall be subject to the exclusive jurisdiction of the competent courts located at Pune, India.
The parties agree to submit irrevocably to the exclusive jurisdiction of such courts, and waive any objection based on venue, forum non conveniens, or any similar legal doctrine.
Nothing contained in this clause shall limit the Company's right to seek interim, injunctive, or equitable relief before any court or tribunal of competent jurisdiction where such relief is necessary to protect its legal rights, confidential information, intellectual property, or business interests.
If any provision of this Privacy Policy is held to be invalid, illegal, or unenforceable by a court of competent jurisdiction, such provision shall be deemed severable and shall not affect the validity or enforceability of the remaining provisions, which shall continue to remain in full force and effect.
14. Contact Us:
​
For any privacy-related concerns, requests, or complaints,
please contact:
Email: connect@ai-fe.ai
Address:7th Floor, Nyati Enthral, Mundhwa-Kharadi
Bypass, Pune, Maharashtra-411014
Website: www.ai-fe.ai