Skip to content
Legal

Privacy policy

Last updated: 15 September 2026

This policy explains how Zenxecure Solutions Private Limited ("Zenxecure", "we", "us") collects, uses, shares and protects personal data through this website and our products, and the rights available to you under the Digital Personal Data Protection Act, 2023 ("DPDP Act") and other applicable law.

1. Who we are

Zenxecure Solutions Private Limited is a company incorporated in India under CIN U62013UP2025PTC223163, with its registered office at A-0923, Tower A, Bhutani Cyber Park, Sector 62, Noida, Gautam Buddha Nagar, Uttar Pradesh 201309, India.

For personal data we collect through this website and our own business operations, Zenxecure is the Data Fiduciary. Where we process personal data inside a customer’s tenant as part of delivering our products, we act as a Data Processor on that customer’s documented instructions, under the terms of the relevant agreement.

2. Personal data we collect

CategoryExamplesWhy we collect it
Contact dataName, work email, telephone number, organisationTo respond to enquiries and demo requests
Enquiry contentThe message you send us and the topic you selectTo understand and answer your question
Technical dataIP address, browser type, device type, pages viewedTo keep the site secure, available and working correctly
Recruitment dataCV, work history and anything you choose to send usTo assess an application

We do not require you to provide sensitive personal data to use this website, and we ask that you do not include it in free-text fields.

3. Purposes and lawful basis

Under the DPDP Act we process personal data on the basis of your consent, or as a legitimate use permitted by the Act — for example, where you voluntarily provide data for a specified purpose and have not indicated that you object to its use for that purpose.

  • Responding to an enquiry, demo request or partnership approach.
  • Providing, supporting, securing and improving our products.
  • Sending service communications about something you have asked for.
  • Meeting legal, regulatory, tax and accounting obligations.
  • Establishing, exercising or defending legal claims.

We do not sell personal data, and we do not add website enquiries to marketing lists without asking you separately.

4. Cookies and similar technologies

This website uses only the cookies and local storage strictly necessary to serve pages, remember your preferences and protect against abuse. If we introduce analytics or marketing technologies, we will request consent through a notice before any non-essential cookie is set, and you will be able to withdraw that consent as easily as you gave it.

5. Sharing and disclosure

We share personal data only in the following circumstances:

  • Service providers who host our infrastructure, deliver our email, or provide business tooling — each bound by contract to process data only on our instructions.
  • Professional advisers such as auditors and lawyers, where confidentiality obligations apply.
  • Authorities, where disclosure is required by law, a valid legal process, or to protect the rights and safety of any person.
  • A successor entity, in connection with a merger, acquisition or reorganisation, subject to this policy continuing to apply.

6. Storage, transfer and retention

Personal data collected through this website is stored on infrastructure located in India by default. Where a service provider processes data outside India, we transfer it only to territories not restricted by the Central Government and under appropriate contractual safeguards.

We retain personal data only for as long as the purpose requires. Website enquiries are retained for up to 24 months from the last interaction unless a longer period is required by law or a live commercial relationship. After that, data is deleted or irreversibly anonymised.

7. Security

We apply reasonable security safeguards appropriate to the risk, including encryption in transit and at rest, least-privilege access control, tenant isolation, logging and monitoring, secure development practices and periodic independent testing. No system can be guaranteed perfectly secure, but we commit to notifying affected persons and the Data Protection Board of India of a personal data breach as required by the DPDP Act.

8. Your rights as a Data Principal

Subject to the DPDP Act and its rules, you have the right to:

  • obtain a summary of the personal data we process about you;
  • obtain correction, completion, updating or erasure of your data;
  • nominate another individual to exercise your rights in the event of death or incapacity;
  • withdraw consent at any time, as easily as you gave it; and
  • have a readily available means of grievance redressal, and to escalate to the Data Protection Board of India if we do not resolve your grievance.

To exercise any of these rights, email privacy@zenxecure.com. We will respond within the timelines prescribed by law.

If your personal data sits inside a Zenxecure customer’s tenant, that customer is the Data Fiduciary. Please raise your request with them; we will support them in fulfilling it.

9. Children

This website is intended for business users and is not directed at children. We do not knowingly process the personal data of a child without verifiable consent from a parent or lawful guardian, and we do not undertake tracking, behavioural monitoring or targeted advertising directed at children.

10. Grievance Officer

In accordance with the DPDP Act and the Information Technology Act, 2000, you may contact our Grievance Officer:

  • Email: privacy@zenxecure.com
  • Post: Grievance Officer, Zenxecure Solutions Private Limited, A-0923, Tower A, Bhutani Cyber Park, Sector 62, Noida, Gautam Buddha Nagar, Uttar Pradesh 201309

11. Changes to this policy

We may update this policy to reflect changes in our practices or the law. The “last updated” date above always reflects the current version, and material changes will be notified prominently on this page.

A-0923, Tower A, Bhutani Cyber Park, Sector 62, Noida, Uttar Pradesh 201309, India