Privacy & Data Protection

Privacy Policy

We value your trust. This document outlines how we collect, use, and protect your personal data at Fixspire in compliance with DPDPA 2023.

Privacy Policy

Last Updated: December 25, 2025

Your Policy: Welcome to www.fixspire.com. This site is provided as a service to our visitors and may be used for informational purposes only. Because the Terms and Conditions contain legal obligations, please read them carefully.

1. INTRODUCTION

This Privacy Policy describes how IHSUK TECH PRIVATE LIMITED ("we", "our", "us") collects, uses, discloses, and protects your personal data through our field service management platform, Fixspire ("Platform"). By accessing or using Fixspire, you agree to the collection and use of information in accordance with this Policy. This Policy is binding on all users, including technicians, admins, clients, and their customers.

2. LEGAL FRAMEWORK

This Policy complies with:

  • Information Technology Act, 2000
  • Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011
  • Digital Personal Data Protection Act, 2023 (when enacted)
  • Global benchmarks such as GDPR, ISO/IEC 27001:2022, SOC 2 Type 2 (for reference and future alignment)

3. DEFINITIONS

Personal Data
Any data related to an identifiable person.
Sensitive Personal Data (SPDI)
Passwords, financial data, health data, biometrics, government IDs.
Data Controller
IHSUK TECH PRIVATE LIMITED when determining the purpose of data processing.
Data Processor
IHSUK TECH PRIVATE LIMITED when acting on behalf of enterprise clients.

4. DATA CATEGORIES WE COLLECT

Personal Details:

Full name, phone, email, address, Aadhaar, PAN.

Business Information:

GSTIN, bank details, device metadata.

Platform Usage Data:

Login history, OTP tokens, job tracking logs, customer info.

Technical Information:

IP address, browser type, operating system, location data.

Automated Tracking:

Cookies, analytics data, session tokens.

5. PURPOSES OF PROCESSING

We collect and process your data to:

  • Authenticate users and technicians
  • Process and issue invoices/quotations
  • Enable scheduling, notifications, and status management
  • Maintain support, feedback, and CRM logs
  • Improve security, detect anomalies, and optimize infrastructure
  • Comply with laws, tax regulations, and government reporting

6. LAWFUL BASIS

We process data under:

User consentLegitimate business interestsPerformance of contractual obligationsCompliance with legal requirements

7. SECURITY MEASURES

Fixspire employs:

  • TLS 1.3 with HSTS for all data in transit
  • AES-256 encryption for sensitive data at rest
  • Password hashing with bcrypt + salt
  • Two-Factor Authentication for admin users
  • RBAC (Role-Based Access Control)
  • Monthly VAPT assessments and threat modeling
  • Encrypted backups with air-gap protocols

8. DATA STORAGE AND RETENTION

  • User data is stored in AWS Mumbai region
  • Minimum retention: 7 years for tax and regulatory compliance
  • Inactive account deletion after 24 months of non-use
  • Secure deletion protocols as per NIST 800-88 and ISO 27040

9. USER RIGHTS

You may:

  • Access your data
  • Request correction or update
  • Withdraw consent (with impact noted)
  • Request deletion (subject to legal holds)
  • Lodge a complaint with our Grievance Officer

10. DATA SHARING & DISCLOSURE

Your data may be shared with:

Payment gateways (Razorpay, Stripe)Communication providers (Brevo)Cloud infrastructure (AWS, Cloudflare, Cloudinary, MongoDB)Government authorities as mandated by law

Each third party is contractually bound by a Data Processing Agreement (DPA).

We never sell personal data.

11. COOKIES AND ANALYTICS

Fixspire uses cookies strictly for:

  • Session management
  • Usage metrics and crash analytics
  • Preventing unauthorized access

12. BREACH NOTIFICATION

In case of a breach:

  • Affected users will be notified within 72 hours
  • Incident logs will be provided
  • Mitigation will be implemented immediately

13. CROSS-BORDER DATA TRANSFERS

  • Fixspire primarily stores data in India
  • In rare cases where global transfers are required, appropriate safeguards like SCCs and BCRs will be applied
  • All transfers will maintain equivalent or stronger protection standards

14. INTELLECTUAL PROPERTY AND CONTENT OWNERSHIP

  • Users retain ownership of their content
  • Fixspire is licensed to process it only as required for system functionality
  • Misuse of platform IP, unauthorized automation, or scraping is strictly prohibited

15. GRIEVANCE OFFICER AND CONTACT

Grievance Officer

Mr. Mohd Saif

IHSUK TECH PRIVATE LIMITED

383, Faig Enclave Phase II, Bareilly, Uttar Pradesh, India 243001

privacy@ihsuktech.com

16. POLICY CHANGES AND VERSIONING

We reserve the right to update this Policy at any time. Material changes will be communicated via email and in-app notifications.

Last Revised:

25 July 2025

Next Scheduled Review:

July 2026 or upon change in applicable law

For full documentation on Fixspire's system security architecture and subprocessor listings, please refer to our Trust Center or contact our Data Compliance Team.

Grievance Officer

For any privacy concerns or data protection inquiries, please contact our designated Grievance Officer.

IHSUK TECH PRIVATE LIMITED

383, Faig Enclave Phase II

Bareilly, Uttar Pradesh 243001

privacy@ihsuktech.com
Response time: 24-48 hours

Need Help?

If you have questions about our Privacy Policy or want to exercise your data rights, our team is here to help.

Email Privacy Team

© 2026 FixSpire Platforms.