Privacy Policy
What we collect, why we collect it, and the rights you have over it.
Nthalpix Technologies LLP
Last updated: 2 September 2026
This Privacy Policy explains what personal data Nthalpix Technologies LLP (“Nthalpix”, “we”, “us” or “our”) collects, why we collect it, how we use and retain it, with whom we may share it, and the rights available to you.
This policy is intended to explain our handling of personal data in accordance with applicable data protection laws, including the Digital Personal Data Protection Act, 2023 (DPDP Act) and, where applicable, the General Data Protection Regulation (GDPR).
This policy applies to nthalpix.com and to personal data submitted through our enquiry, demonstration, consultation, licensing, training and piracy-report forms, as well as information you provide to us directly by email or telephone.
Who we are
Nthalpix Technologies LLP is the data fiduciary responsible for the personal data described in this policy.
LLPIN: ADB-5583
Email: info@nthalpix.com
Registered office: B/23, Daffodil, Kalpataru Paramount, Near Fire Brigade, Kapurbawdi, Thane (W), Maharashtra, India 400608
What personal data we collect and why
We collect personal data that is reasonably necessary to respond to enquiries, provide our services, manage business relationships, maintain records and protect our website and systems.
We do not sell personal data and do not purchase personal data from third parties.
Enquiries, demonstrations, consultations and licensing requests
Depending on the form you use, we may collect:
- first and last name;
- company or organisation;
- job designation;
- email address;
- telephone number, including country code;
- country, city and postal code;
- the information contained in your message or request; and
- the page or service from which your request was submitted.
We use this information to understand and respond to your request, provide demonstrations or consultations, communicate with you, and follow up where appropriate.
Piracy reports
If you submit a piracy report, we may collect your name, email address and the details you provide about the organisation, product or software concerned.
We use this information to verify, investigate and respond to the report and to communicate with you about it.
We treat piracy reports confidentially and do not disclose your identity to the organisation reported, except where disclosure is necessary to comply with law, a court order, legal proceedings, or to protect our legal rights.
Email and telephone communications
If you contact us directly by email or telephone, we may retain the correspondence and relevant contact details so that we can respond to you, manage our business relationship and maintain an appropriate record of communications.
Training, licensing and client services
When you purchase or engage us for training, software, licensing, consultancy or other services, we may process information necessary to:
- deliver the service;
- communicate with you;
- administer the relationship;
- issue invoices and receive payments;
- maintain business and accounting records; and
- comply with applicable legal and regulatory obligations.
Website and security information
Our hosting, CDN and security services may automatically process technical information such as IP address, browser type, device information, request information and server logs.
We use such information to operate and secure the website, diagnose technical problems and prevent or limit automated abuse, fraud or malicious activity.
Legal basis for processing
Depending on the circumstances and applicable law, we process personal data on one or more of the following bases:
- to respond to an enquiry or take steps requested by you before entering into a contract;
- to perform a contract or provide services requested by you;
- to comply with legal, accounting, tax or regulatory obligations;
- with your consent, where consent is the applicable legal basis, including for certain marketing communications; and
- where permitted by applicable law, for legitimate business purposes such as maintaining security, preventing misuse and protecting our legal rights.
Where we rely on consent, you may withdraw your consent at any time. Withdrawal of consent does not affect the lawfulness of processing carried out before withdrawal.
Marketing communications
Where we use your consent as the basis for marketing communications, we will obtain that consent separately and will not make marketing consent a condition of submitting an enquiry.
You may withdraw marketing consent at any time by contacting us or using an unsubscribe mechanism provided in the communication.
How long we keep personal data
We retain personal data only for as long as reasonably necessary for the purpose for which it was collected and for applicable legal, accounting, tax, contractual and dispute-resolution requirements.
Generally:
- Enquiries that do not become work: normally up to 24 months from your last contact, unless a longer period is reasonably necessary.
- Client and contractual records: for the duration of the business relationship and thereafter for as long as reasonably necessary to comply with legal obligations or establish, exercise or defend legal claims.
- Marketing consent records: until consent is withdrawn or the information is no longer required.
- Piracy reports: until the matter is closed and thereafter for as long as reasonably necessary for legal, security or dispute-resolution purposes.
- Accounting and tax records: for the period required by applicable law.
When personal data is no longer required, we will delete it or securely dispose of it, subject to applicable legal or technical requirements.
Who may receive personal data
Personal data may be accessed by Nthalpix personnel who need it to handle your enquiry, provide services or perform their responsibilities.
We may also share personal data where reasonably necessary with:
- website, hosting, CDN, email and other technology service providers that process data on our behalf;
- accountants, auditors, professional advisers and legal advisers;
- payment or business service providers where necessary to provide a requested service;
- courts, regulators, law-enforcement authorities or government bodies where required or permitted by law; and
- other persons where disclosure is necessary to protect our legal rights, property, users or security.
We do not sell personal data or share it with third parties for their independent advertising purposes.
International processing and transfers
Our website, hosting, CDN, email and other service providers may process personal data in countries outside India.
Where personal data is transferred or processed outside India, we take reasonable steps to ensure that such processing is subject to appropriate contractual, technical and organisational safeguards and complies with applicable data protection requirements.
How we protect personal data
We use reasonable technical and organisational safeguards appropriate to the nature of the personal data we process.
These may include:
- access controls;
- restricting access to personnel who need the information;
- encrypted transmission of information submitted through the website;
- security measures provided by our hosting, email and technology service providers; and
- deletion or disposal of personal data when it is no longer required.
No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
Where a personal data breach occurs, we will take appropriate steps and make notifications required under applicable law.
Your rights
Subject to applicable law, you may request that we:
- provide a summary of the personal data we hold about you and information about its processing;
- correct inaccurate, incomplete or outdated personal data;
- erase personal data where it is no longer necessary or where applicable law requires or permits erasure;
- withdraw consent where processing is based on consent;
- request restriction of processing where applicable;
- object to certain processing where applicable;
- request portability of your personal data where the right applies; and
- allow you to nominate another individual to exercise your rights in the event of death or incapacity, where applicable under law.
To exercise your rights, contact us at info@nthalpix.com.
We may request information reasonably necessary to verify your identity or authority before acting on a request. This is intended to protect personal data from unauthorised access or alteration.
Some information may need to be retained where required by law or where necessary to establish, exercise or defend legal claims.
We will not charge a fee for ordinary rights requests unless applicable law permits us to do so.
Children
Our services are directed primarily at businesses and working professionals.
We do not knowingly seek to collect personal data from children. If you believe that a child has provided personal data to us, please contact us and we will take appropriate steps to delete it where required by applicable law.
Cookies and similar technologies
Our website does not use advertising cookies, analytics cookies or third-party tracking technologies, except where expressly described on this website.
Our website and service providers may use technically necessary cookies, local storage or similar technologies required to operate, secure or display the website.
We do not use such technologies to sell personal data or to provide targeted advertising.
Changes to this Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our services, technology or legal requirements.
When we make changes, we will update the “Last updated” date at the top of this page.
Where required by applicable law, we will provide additional notice or obtain consent for material changes.
Contact and grievances
If you have any question about this Privacy Policy, wish to exercise a data protection right, or have a privacy-related grievance, please contact:
Nthalpix Technologies LLP
Email: info@nthalpix.com
Registered office: B/23, Daffodil, Kalpataru Paramount, Near Fire Brigade, Kapurbawdi, Thane (W), Maharashtra, India 400608
We will acknowledge and respond to privacy-related requests and grievances within the time period required under applicable law.
For grievances relating to processing of personal data under the Digital Personal Data Protection Act, 2023, you should first contact us and provide us with an opportunity to resolve the grievance. Where the grievance remains unresolved, you may exercise any further rights or remedies available to you under applicable law.
Where the GDPR applies to the processing of your personal data, you may also have the right to lodge a complaint with the data protection supervisory authority competent for your circumstances.