Governance

Privacy Protocol.

Our commitment to protecting your data and ensuring absolute transparency in how we operate.

Introduction & Scope

Atzean Technologies LLP ("Atzean", "we", "us") provides Custom Software Development, IT Staffing, Global Capability Centers (GCC), and the HR Nexus platform.

We are committed to safeguarding your data in strict compliance with the GDPR, DPDP Act (India), and CCPA/CPRA. This policy governs how we collect and protect data across atzean.com and our associated enterprise services.

Data Processing Roles

Data Controller: We act as a Controller when vetting talent for the HR Nexus, managing our Partner Network, or operating our website infrastructure.

Data Processor: When delivering custom software or operating a GCC for an enterprise client, we act strictly as a Processor under their documented instructions via a Master Services Agreement (MSA).

Information We Collect

We collect Corporate Data (business requirements, billing details) from enterprise clients, and Professional Data (resumes, code portfolios, assessments) from developers and network partners.

We also automatically collect standard technical metrics (IP addresses, browser types) using privacy-first analytics tools to ensure platform security and optimization.

Purposes of Processing

We use your data exclusively to deploy engineering talent, execute software development life cycles, and seamlessly operate our GCC models.

Your data is also utilized to process payments, ensure legal compliance, and protect our ecosystem against unauthorized access. Atzean never sells your personal data.

Legal Bases for Processing

We process data under Contractual Necessity to deliver services requested in an SOW or MSA.

We also rely on Legitimate Interests for platform security, Legal Obligation for tax and labor compliance, and Explicit Consent when strictly required by law.

Data Sharing & Sub-Processors

We share developer and partner profiles strictly with our enterprise clients to facilitate successful project engagements and staffing placements.

We also utilize elite, highly secure cloud infrastructure providers and payment gateways (Sub-Processors) who are legally bound by stringent data protection agreements.

Enterprise Confidentiality

Atzean enforces rigorous confidentiality protocols. Any proprietary code, architectural roadmaps, or business logic shared by enterprise clients is treated as strictly confidential.

This data is accessed only by vetted Atzean personnel or network partners on a strict "need-to-know" basis, all governed by robust Non-Disclosure Agreements (NDAs).

Security Architecture

We deploy enterprise-grade security, including industry-standard TLS encryption for data in transit, role-based access controls (RBAC), and multi-factor authentication (MFA).

While we maintain rapid incident response protocols, no digital ecosystem is entirely immune to sophisticated threats, and users acknowledge inherent internet transmission risks.

International Data Transfers

As a global firm headquartered in India, Atzean processes data internationally. When transferring data from the EEA, UK, or other regulated regions, we implement legally recognized safeguards.

These safeguards include the execution of approved Standard Contractual Clauses (SCCs) and adherence to localized data protection mandates.

Data Retention Policy

We retain corporate and personal data only for the duration required to fulfill our service obligations or to comply with statutory accounting and labor laws.

Developer profiles within the HR Nexus are kept to support future opportunities, but are securely erased or anonymized upon request by the Data Principal.

GDPR & Global Privacy Rights

Under frameworks like the GDPR, you possess fundamental rights regarding your data, including the rights to Access, Portability, Rectification, and Erasure.

You may also request restrictions on specific processing activities. We commit to honoring these rights within the timeframes mandated by your local regulatory authority.

CCPA/CPRA Specific Rights

California residents have the Right to Know what specific data is collected, the Right to Delete, and the Right to Correct inaccuracies.

Atzean does not sell personal information or share it for cross-context behavioral advertising. We will not discriminate against you for exercising your CCPA rights.

DPDP Act (India) Compliance

For Data Principals in India, we process data based on specific, unambiguous consent or recognized legitimate uses under the DPDP Act, 2023.

You maintain the right to obtain processing summaries, request corrections, or readily access our grievance redressal mechanisms.

Cookies & Tracking Technologies

We use Strictly Necessary cookies to securely operate the platform, alongside privacy-first analytics tools to monitor performance.

Marketing cookies are only deployed with your explicit consent. You retain full control over your cookie preferences via your browser settings.

Children's Privacy

Atzean's enterprise services are strictly intended for professionals aged 18 or older. We do not knowingly collect personal data from minors.

If you believe a minor has provided us with personal data, please contact our Legal Team immediately for prompt deletion.

Policy Modifications

Atzean reserves the right to update this Privacy Policy as our technology and legal obligations evolve. Material changes will be communicated directly via the Platform.

Your continued use of our Services following any modifications constitutes your formal acceptance of the updated policy.

Contact & Grievance Redressal

For privacy inquiries, enterprise DPA requests, or to escalate an issue to our designated Grievance Officer, please direct communications to our Legal Team.

Email: legal@atzean.in

Atzean Technologies LLP, India

Last updated June 24, 2026

Questions regarding our protocol? Reach out to legal@atzean.in