Privacy Policy

Effective Date: 20/07/2026

Last Updated: 20/07/2026

This Privacy Policy explains how DataConsultant collects, uses, shares, retains, and protects personal information when you visit our website, communicate with us, or receive our data consulting and business-support services.

1. Introduction

DataConsultant respects the privacy of website visitors, prospective clients, clients, client personnel, consultants, contractors, vendors, job applicants, business partners, and other individuals who interact with us.

This Privacy Policy explains how we may collect, receive, use, disclose, store, retain, and otherwise handle information that identifies, relates to, describes, or may reasonably be linked with an individual. In this policy, we refer to that information as “personal information.”

Our activities may include data analytics, business intelligence, data strategy, data engineering, data management, dashboards, reporting, artificial intelligence and machine learning support, data migration, integration, automation, database consulting, research, training, advisory services, dedicated professionals, managed teams, and related technical support.

This policy is a general privacy notice. Project-specific contracts, statements of work, confidentiality agreements, data-processing agreements, employment notices, or other signed documents may contain additional or different requirements. Where applicable, those documents will take precedence to the extent of any conflict.

2. Scope of This Policy

This policy applies to personal information handled in connection with:

This policy does not automatically govern personal information that a client controls and instructs us to process solely on its behalf. In those situations, the relevant client agreement and data-processing terms generally govern our handling of that information.

3. Our Role When Handling Personal Information

3.1 Information We Handle for Our Own Business Purposes

We may decide why and how personal information is used when we operate our website, respond to enquiries, manage client and vendor relationships, recruit personnel, administer accounts, issue invoices, maintain security, and manage our business.

3.2 Information We Process for Clients

During a consulting engagement, a client may provide access to customer, employee, supplier, user, financial, operational, marketing, technical, or other datasets. When we process such information solely for the client’s project, the client generally determines the purpose and permitted use of the data.

We will handle client data according to the applicable service agreement, documented client instructions, agreed security and confidentiality requirements, and relevant legal obligations. Clients remain responsible for ensuring they have the necessary rights, notices, permissions, and lawful grounds to provide data to us.

4. Personal Information We May Collect

The information we collect depends on how you interact with DataConsultant, the services requested, and the requirements of a particular project.

4.1 Identity and Contact Information

4.2 Enquiry, Client, and Commercial Information

4.3 Project and Client Data

4.4 Website and Technical Information

4.5 Recruitment, Contractor, and Vendor Information

4.6 Sensitive Information

We do not ordinarily ask website users to provide highly sensitive information through public forms. A project may occasionally involve sensitive or regulated information supplied by a client. In that case, its use should be specifically agreed, limited to what is necessary, and governed by suitable contractual, technical, and organisational measures.

Please do not send passwords, private keys, full payment-card details, government identity documents, health information, biometric information, or other highly sensitive material through an unsecured form or ordinary email unless we have specifically requested it and provided an appropriate method.

5. How We Collect Information

We may collect personal information:

6. Why We Use Personal Information

Depending on the circumstances, we may use personal information to:

7. Legal and Lawful Processing Considerations

Privacy requirements differ by location. Depending on the applicable rules and the nature of the activity, we may handle personal information because:

Where we rely on consent, you may withdraw it subject to applicable limitations. Withdrawal does not normally affect processing already carried out or processing supported by another lawful reason.

8. Client Data and Confidential Information

Clients may provide information relating to their customers, employees, contractors, vendors, users, transactions, operations, or systems. Examples include customer records, sales information, analytics data, financial records, human-resources data, ecommerce data, marketing data, and application logs.

Where we process client data on a client’s behalf:

Neither this policy nor our receipt of data transfers ownership of client data to us. Data ownership and intellectual property rights are governed by the applicable contract, statement of work, licence terms, and law.

9. Cookies and Similar Technologies

Our website may use cookies, pixels, tags, local storage, scripts, or similar technologies to support core website functions, remember preferences, understand website usage, maintain security, and improve performance.

9.1 Common Categories

9.2 Your Choices

Where appropriate, you may be able to manage non-essential technologies through a cookie preference tool. You can also adjust browser or device settings. Restricting certain technologies may affect website functionality. Additional details may be provided in a separate Cookie Policy.

10. When We May Share Personal Information

We may disclose personal information only where reasonably necessary for the purposes described in this policy, instructed by a client, authorised by you, or required or permitted by applicable obligations.

Recipients may include:

Some third parties act independently and apply their own privacy notices. We encourage you to review those notices before directly using a third-party service.

11. Third-Party Tools, Platforms, and Integrations

DataConsultant may use or connect with third-party services for cloud hosting, databases, analytics, data visualisation, project management, communications, payments, customer relationship management, code repositories, artificial intelligence, automation, and other business or technical functions.

The tools used for a client engagement may depend on project requirements, client preferences, access rights, location, cost, security considerations, and technical compatibility. A project contract or statement of work may identify specific platforms and allocate responsibilities for their use.

We do not control the independent privacy, availability, security, or data-handling practices of every third-party provider. No integration should be treated as a guarantee that a provider will always meet every client requirement.

12. Artificial Intelligence, Machine Learning, and Automated Processing

We may use artificial intelligence, machine learning, analytical, or automated tools in connection with data preparation, coding, testing, documentation, research, forecasting, classification, anomaly detection, workflow automation, support, or other agreed activities.

Use of these tools may involve third-party platforms. Where personal or confidential data is involved, the intended use should be evaluated against project instructions, contractual restrictions, provider terms, access controls, and the sensitivity of the information.

Automated outputs may be incomplete, inaccurate, biased, or unsuitable for a particular decision. Human review may be used where appropriate, but we do not guarantee that every automated result will be error-free. Clients should independently assess outputs before relying on them for legal, financial, employment, medical, safety-critical, or similarly significant decisions.

You should not submit confidential, proprietary, regulated, or sensitive personal information into an unapproved public AI service on our behalf.

13. International and Cross-Border Processing

DataConsultant may serve clients in different countries and may use personnel, contractors, or technology providers located outside your country. As a result, personal information may be accessed, transferred, hosted, stored, or otherwise processed internationally.

Where cross-border processing occurs, we will seek to use reasonable contractual, technical, and organisational measures appropriate to the circumstances and any applicable transfer requirements. The protections available in another country may differ from those in your location.

Client-specific restrictions on data location, remote access, approved countries, or service providers should be stated in the applicable contract or data-processing agreement before work begins.

14. Data Retention

We retain personal information for as long as reasonably necessary for the purpose for which it was collected and for legitimate contractual, operational, security, accounting, tax, dispute-resolution, or legal needs.

Retention decisions may consider:

When information is no longer reasonably required, we may delete, destroy, anonymise, or aggregate it. Residual copies may remain temporarily in backups, logs, or archives until they are overwritten or removed through routine processes.

15. Information Security and Risk Limitations

We seek to use reasonable administrative, technical, and organisational safeguards appropriate to the nature of the information and the services provided. Depending on the circumstances, safeguards may include access controls, authentication, confidentiality commitments, secure transfer methods, logging, backups, environment separation, vendor review, and incident-response procedures.

No website, internet transmission, software platform, cloud service, storage system, or security measure can be guaranteed to be completely secure or continuously available. We therefore cannot promise complete security, uninterrupted service, or prevention of every incident.

You and your organisation are responsible for protecting credentials, maintaining appropriate access permissions, using secure devices and networks, applying suitable internal controls, and promptly reporting suspected misuse.

16. Privacy and Security Incidents

We may investigate suspected unauthorised access, disclosure, loss, alteration, destruction, or misuse of personal information. Our response may include containment, access restriction, evidence preservation, technical review, remediation, client coordination, and documentation.

Where notification is required by an applicable contract or legal obligation, we will seek to provide the relevant notice to the appropriate client, individual, authority, or other party.

To report a suspected privacy or security issue, contact support@dataconsultant.in. Do not include unnecessary sensitive information in the initial report.

17. Your Privacy Rights and Choices

Depending on your location and the applicable requirements, you may have rights concerning your personal information. These may include the ability to:

These rights are not absolute and may be limited by identity-verification needs, legal obligations, security considerations, confidentiality, legal privilege, the rights of others, or other permitted exceptions.

Where your request relates to information controlled by one of our clients, you should normally contact that client directly. We may refer your request to the client and assist as required by the applicable agreement.

18. How to Submit a Privacy Request

Send your request to support@dataconsultant.in and provide enough information for us to understand:

We may request reasonable information to verify your identity or authority. We will respond in accordance with applicable requirements and explain material limitations where appropriate.

19. Marketing Communications

We may send relevant business updates, service information, invitations, or other professional communications where appropriate. You may opt out of promotional email by using an unsubscribe option, where provided, or by contacting support@dataconsultant.in.

Opting out of marketing does not prevent us from sending necessary contractual, project, billing, security, support, or legal communications.

20. Children’s Privacy

Our website and services are primarily intended for organisations and adults acting in a professional capacity. We do not knowingly seek personal information directly from children through general website enquiries or business-development activities.

If a client project involves information about children, the client must identify that requirement in advance. Appropriate instructions, permissions, limitations, and safeguards should be agreed before processing begins.

21. Accuracy, Data Quality, and Your Responsibilities

You should provide accurate, relevant, and appropriately authorised information. Please notify us when your contact details, instructions, permissions, or project information change.

Clients are responsible for the source, quality, lawfulness, completeness, and permitted use of client-provided data. Although data consulting services may identify errors, inconsistencies, duplicates, or quality issues, we do not guarantee that every issue will be detected or corrected.

22. Relationship With Contracts and Other Policies

This Privacy Policy should be read together with any applicable:

Those documents may define privacy, confidentiality, intellectual property, data ownership, service scope, payment, liability, security, retention, deletion, and audit obligations in greater detail. Signed contractual terms may take precedence where applicable.

23. Changes to This Privacy Policy

We may update this Privacy Policy periodically to reflect changes in our services, website, technology, providers, business operations, or applicable requirements.

The latest version will be published on our website with an updated “Last Updated” date. Where appropriate, we may provide an additional notice of material changes.

Frequently Asked Questions

1. Does this Privacy Policy apply to data supplied for a consulting project?

It provides general information, but project data is usually governed more specifically by the service agreement, statement of work, client instructions, confidentiality terms, and any data-processing agreement.

2. Who is responsible for personal information contained in client datasets?

The client generally determines why the dataset is used and must ensure it has the necessary rights and permissions. DataConsultant handles the data according to agreed instructions and contractual obligations.

3. Will DataConsultant use client data for its own marketing?

Client project data should not be used for unrelated marketing unless the client has clearly authorised that use and the use is otherwise appropriate. Business contact details may be used for relationship management or relevant communications as described in this policy.

4. Does DataConsultant use third-party cloud or analytics tools?

We may use third-party technology providers where reasonably necessary. The tools selected can vary by project. Client-specific restrictions or approval requirements should be included in the relevant agreement.

5. Can artificial intelligence tools be used with client data?

AI-assisted tools may be used where appropriate, but confidential or personal data should only be used in accordance with client instructions, contractual terms, provider conditions, and suitable safeguards. Project-specific approval may be required.

6. Is personal information transferred internationally?

It may be, particularly where clients, professionals, or technology providers operate in different countries. Applicable project restrictions and agreed cross-border safeguards should be documented before processing.

7. How long does DataConsultant retain project data?

Retention depends on the contract, client instructions, project needs, backups, security, accounting, legal requirements, and dispute considerations. Specific deletion or return periods should be agreed in writing.

8. How can I ask DataConsultant to correct or delete my information?

Contact support@dataconsultant.in with enough detail to identify the information and your relationship with us. Requests relating to client-controlled data may need to be handled by the relevant client.

9. Does a service contract override this Privacy Policy?

A signed contract, statement of work, data-processing agreement, or confidentiality agreement may contain more specific terms. Those terms may take precedence where they conflict with this general policy.

10. What should I do if I believe data has been exposed or misused?

Contact support@dataconsultant.in promptly. Include only the details needed to identify the affected service, account, or project, and avoid sending unnecessary sensitive information in the initial message.

11. How will I know when this Privacy Policy changes?

The latest version will be published at https://dataconsultant.in with a revised “Last Updated” date. An additional notice may be provided when a change is material or otherwise appropriate.

Contact DataConsultant

Questions, privacy requests, complaints, or incident reports may be directed to:

Please provide sufficient information for us to understand and respond to your concern. Do not include passwords, one-time codes, private keys, or unnecessary sensitive data.