LEGAL & DATA PROTECTION

Privacy Policy

Effective Date: July 25, 2026 • Version 2.1

1. Overview & Commitment

ProNext Labs ("ProNext Labs", "Company", "we", "our", or "us") is dedicated to upholding the highest standards of data privacy, confidentiality, and security. This Privacy Policy governs our data collection, processing, storage, and protection practices when you interact with our public website (pronextlabs.com), inquire about our digital engineering services, or enter into a client partnership with us.

By accessing our website or providing your information to us, you acknowledge and agree to the practices described in this policy.

2. Information We Collect

We collect information to provide superior digital engineering services, process project inquiries, and maintain secure business communications:

  • Personal & Contact Data: Name, professional email address, phone number, company/organization name, job title, and physical office address submitted via our contact forms or discovery requests.
  • Project Scope & Requirement Briefs: Budget estimates, target project timelines, technology preferences, design specifications, and business goals submitted during consultation bookings.
  • Technical & Usage Telemetry: IP addresses, browser type, operating system, device characteristics, referral URLs, page view metrics, and interaction timestamps collected automatically via server logs.
  • Client Portal & Communications Data: Login credentials, role assignments, audit activity logs, task comments, and file attachments uploaded within our client dashboard.

3. How We Use Your Information

Your information is processed strictly for legitimate business purposes, including:

  • Evaluating project feasibility, preparing custom scope proposals, and conducting technical discovery calls.
  • Executing contract deliverables, software development, UI/UX design, mobile app engineering, and ongoing SLA maintenance.
  • Processing project milestone billing, issuing invoices, and managing accounting records.
  • Sending essential service notifications, administrative updates, and security alerts.
  • Optimizing website performance, auditing Core Web Vitals telemetry, and preventing security breaches or unauthorized access.
  • Fulfilling statutory legal, tax, regulatory, and auditing obligations.

4. Data Protection & Security Controls

We implement enterprise-grade security protocols to safeguard your personal data against unauthorized access, disclosure, alteration, or destruction:

  • Encryption in Transit & At Rest: All data transmitted over our web platforms is encrypted using TLS 1.3/SSL protocols. Database storage is protected with AES-256 encryption.
  • Role-Based Access Control (RBAC): Access to client data and internal CRM records is strictly restricted based on verified administrative roles (SuperAdmin, Admin, Editor, SalesPM).
  • Security Logging & Audit Trails: Comprehensive audit logging monitors login attempts, data modifications, and administrative operations.
  • Zero Third-Party Selling: We do NOT sell, rent, or trade personal data or client project briefs to third-party advertisers or data brokers under any circumstances.

5. Information Sharing & Third-Party Service Providers

We may share your data only with trusted third-party service providers who assist us in operating our platform, subject to strict confidentiality agreements:

  • Cloud Infrastructure & Hosting: Vercel, AWS, and Supabase for cloud hosting, CDN delivery, and secure database management.
  • Analytics Providers: Privacy-respecting performance telemetry and traffic analytics tools.
  • Legal Obligations: We may disclose information if required to do so by law, court order, or governmental authority.

6. Your Data Rights

Depending on your jurisdiction (including GDPR, CCPA, and DPDP Act compliance), you possess the following rights regarding your personal information:

  • Right of Access: Request a copy of the personal data we hold about you.
  • Right to Rectification: Request correction of inaccurate or incomplete personal information.
  • Right to Erasure (Right to be Forgotten): Request deletion of your personal records, subject to contractual and legal retention requirements.
  • Right to Restrict or Object to Processing: Object to specific data processing operations or withdraw consent at any time.

To exercise any of these rights, contact our Data Protection Officer at team@pronextlabs.com.

7. Cookies & Tracking Technologies

We use essential session cookies strictly to authenticate authorized administrative users and maintain secure application state. For detailed cookie information, refer to our Cookie Policy.

8. Contact & Privacy Inquiries

If you have questions regarding this Privacy Policy or wish to lodge a privacy request, reach out to our privacy compliance desk:

ProNext Labs — Legal & Privacy Compliance
Phone / WhatsApp: +91 7011610251
Address: Mayur Vihar, Delhi, India