Privacy Policy
This Privacy Policy explains how Atlee Technologies LLP (“Atlee”, “we”, “us”), acting as a Data Fiduciary, collects, uses, shares and protects your personal data (“you” / the “Data Principal”). We comply with the Digital Personal Data Protection Act, 2023 (“DPDP Act”) and the Digital Personal Data Protection Rules, 2025, as they come into force, and with applicable provisions of the Information Technology Act, 2000.
Registered office: P. No. 1, Girna Taki Road, Behind M.J. College, Laxmi Nagar, Jalgaon, Maharashtra 425002, India.
1. Personal data we collect
- Information you give us — name, email, phone, company, and the contents of enquiries or project briefs you send us.
- Client & portal data — account credentials and the data you submit through our client/developer portal.
- Technical & usage data — privacy-first, cookieless analytics (via self-hosted Umami), error telemetry (via self-hosted GlitchTip) and server logs, used to operate and secure our services.
- Mobile app data — for our Atlee Tech Hub app, a device push-notification token and a per-device authentication token, used only to deliver notifications and sign the device in (see section 11).
- Data we process on behalf of clients — where we build and operate software for a client, we act as a processor on their instructions; that client's own privacy policy governs end-user data.
2. Purposes of processing
We process personal data only for specified, lawful purposes: to respond to enquiries and provide quotes; to deliver, operate, monitor and support the products we build; to manage billing and comply with tax/legal obligations; to secure our systems and prevent abuse; and to communicate with you about your engagement.
3. Legal basis & consent
We process your personal data on the basis of your consent, or as necessary to perform a contract with you, or to comply with law. Where we rely on consent, you may withdraw it at any time — and doing so will be as easy as giving it — by writing to our Grievance Officer below. Withdrawal does not affect processing already carried out.
4. Data retention
We retain personal data only for as long as necessary for the purpose it was collected, or as required by law (e.g. tax and accounting records). When the purpose is fulfilled and no legal obligation requires retention, we delete or anonymise the data.
5. Your rights as a Data Principal
Under the DPDP Act you have the right to:
- Access a summary of the personal data we hold about you and how we process it;
- Correction & erasure of inaccurate, incomplete or no-longer-needed data;
- Grievance redressal through the mechanism below;
- Nominate another person to exercise your rights in the event of death or incapacity;
- Withdraw consent at any time.
To exercise any right, contact our Grievance Officer. We will respond within the timelines required by law.
6. Sharing & processors
We do not sell personal data. We share it only with trusted infrastructure and tooling providers strictly to deliver our services (for example, cloud hosting, email and payment gateways), under appropriate safeguards, and where required by law or competent authority.
7. Security & data breaches
We implement reasonable technical and organisational security measures. As a studio that operates what it builds, we maintain active error monitoring, uptime monitoring and on-call paging. In the event of a personal data breach, we will notify the Data Protection Board of India and affected Data Principals as required under the DPDP framework.
8. Children's data
Our services are directed at businesses and are not intended for individuals under 18. We do not knowingly process children's personal data without verifiable parental/guardian consent, and we do not carry out behavioural tracking or targeted advertising directed at children.
9. International processing
Where data is processed outside India by our service providers, we take steps to ensure it remains protected consistent with this policy and applicable law.
10. Grievance Officer
For any questions, requests or complaints regarding your personal data, contact:
Email: privacy@atleetech.com
Address: Jalgaon, Maharashtra 425002, India.
If your grievance is not satisfactorily resolved, you may escalate to the Data Protection Board of India in accordance with the DPDP Act.
11. Mobile application (Atlee Tech Hub)
Atlee Tech Hub is an invite-only operations app for the Atlee team and authorised collaborators; access is tied to an existing Atlee account and there is no public sign-up. In connection with the app we process:
- A push-notification token (Apple Push Notification service) and a per-device authentication token, linked to your Atlee account and used solely to deliver alerts and authenticate the device to our backend (app functionality). They are not used for tracking or advertising, and are revocable — you can unpair the device in the app and we can revoke the token server-side.
- Operational data you are already authorised to see — the app shows the signed-in user their own organisation's infrastructure, alerts, work and finance figures; it does not collect additional personal data from your device.
- Biometrics (Face ID / Touch ID) are used locally on your device to unlock sensitive figures, entirely within Apple's Secure Enclave — we never receive or store your biometric data.
The app contains no third-party analytics or advertising SDKs and does not track you across other apps or websites.
12. Changes to this policy
We may update this policy as our services or the law evolve. Material changes will be reflected by the “Last updated” date above.