Privacy Policy

Effective Date: 1 August 2025  ·  Last Updated: 7 August 2026

Your privacy is important to us. This Policy explains how Digital Spring Technology collects, uses, stores, shares, and protects your personal information when you visit our website or engage our services.

This Privacy Policy is published in compliance with the Information Technology Act, 2000 and the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 (“SPDI Rules”), as well as other applicable Indian data protection laws. Where our services extend to clients in the European Economic Area, we also apply principles consistent with the General Data Protection Regulation (GDPR) where required.

1. Introduction

Digital Spring Technology (“we,” “us,” or “our”) operates the website https://digitalspringtechnology.com and provides software development and digital services. We are committed to protecting the privacy and security of all personal information provided to us. This Privacy Policy describes our practices regarding the collection, use, storage, disclosure, and protection of your personal information.

By using our website or engaging our services, you consent to the collection and use of your information as described in this Privacy Policy.

2. Scope & Applicability

This Privacy Policy applies to:

  • Visitors to our website at https://digitalspringtechnology.com
  • Prospective clients who submit enquiries or use our contact form
  • Clients who engage us for software development, digital marketing, or any other services
  • Job applicants who submit their information for employment opportunities

This Policy does not apply to the privacy practices of third-party websites, platforms, or services that we may link to. We encourage you to review the privacy policies of any third-party services you use.

3. Information We Collect

3.1 Information You Provide Directly

We collect information you voluntarily provide, including:

  • Identity Data: Full name, business name, designation.
  • Contact Data: Email address, phone number, mailing address.
  • Project Data: Details about your project requirements, budget range, and business objectives shared via our contact form or during discovery calls.
  • Financial Data: Billing address and payment information (we do not store card details; payments are processed by authorised payment gateways).
  • Communication Data: Correspondence via email, WhatsApp, or other channels.
  • Employment Data: Résumés and portfolios submitted for job openings.

3.2 Information Collected Automatically

When you visit our website, we may automatically collect:

  • Usage Data: Pages visited, time spent, links clicked, referring URL.
  • Technical Data: IP address, browser type and version, operating system, device type, screen resolution.
  • Cookie Data: First-party and third-party cookies (see Section 9).

3.3 Information from Third Parties

We may receive information about you from:

  • Analytics providers (e.g., Google Analytics) regarding how visitors use our website.
  • Referral partners or business associates who refer you to our services.

4. Sensitive Personal Data or Information (SPDI)

Under the SPDI Rules, 2011, “Sensitive Personal Data or Information” includes passwords, financial information (bank account details, credit/debit card details), physical, physiological, and mental health conditions, sexual orientation, medical records, and biometric information.

Digital Spring Technology does not intentionally collect Sensitive Personal Data or Information through our website or general service delivery unless it is strictly necessary for a specific contractual purpose (e.g., payroll processing for employee-related services). Where SPDI is collected, we will:

  • Obtain your explicit written consent before collection.
  • Use it only for the stated purpose.
  • Implement appropriate security safeguards.
  • Not retain it longer than necessary.
  • Not transfer it to third parties without consent.

Please do not submit sensitive financial credentials, passwords, or health information via our website contact forms or general communications channels.

5. How We Use Your Information

We use collected information for the following purposes:

  • Service Delivery: To communicate with you about your project, provide proposals, execute agreements, and deliver the contracted services.
  • Client Support: To respond to your queries, provide technical support, and handle complaints.
  • Business Operations: For invoicing, accounting, project management, and legal compliance.
  • Website Improvement: To analyse usage patterns and improve the content, design, and functionality of our website.
  • Marketing: With your consent, to send you newsletters, project updates, or information about our new services. You may opt out at any time.
  • Legal Compliance: To comply with applicable laws, regulations, judicial orders, or lawful requests from government authorities.
  • Security: To detect, prevent, and address fraud, security breaches, or technically prohibited activities.

We process your information only where we have a lawful basis to do so: (a) your consent; (b) performance of a contract with you; (c) compliance with a legal obligation; or (d) our legitimate business interests, provided such interests are not overridden by your fundamental rights.

6. Sharing & Disclosure

We do not sell, rent, or trade your personal information. We may share your information in the following limited circumstances:

6.1 Service Providers

We may share information with trusted third-party service providers who assist us in operating our business, including cloud hosting providers, project management tools, accounting software, email service providers, and payment gateways. These providers are contractually obligated to protect your information and use it only as instructed by us.

6.2 Legal Requirements

We may disclose your information if required to do so by law, a court order, or a request from a competent government authority, including to comply with the Information Technology Act, 2000, and rules made thereunder.

6.3 Business Transfers

In the event of a merger, acquisition, restructuring, or sale of all or a portion of our assets, your personal information may be transferred as part of that transaction. We will notify you of such transfer and any material changes to how your data is used.

6.4 With Your Consent

We may share your information with third parties when you have given us explicit consent to do so.

6.5 Cross-Border Transfers

Some of our service providers are located outside India (e.g., cloud infrastructure providers). When we transfer personal information outside India, we ensure that appropriate safeguards are in place consistent with the requirements of the SPDI Rules and applicable law, including contractual clauses requiring the recipient to maintain equivalent data protection standards.

7. Data Security

We implement reasonable security practices and procedures as required under Rule 8 of the SPDI Rules, 2011. Our security measures include:

  • TLS/HTTPS encryption for all data transmitted to and from our website.
  • Access controls ensuring only authorised personnel can access personal data.
  • Secure, encrypted storage for sensitive project data.
  • Regular review of our information collection, storage, and processing practices.
  • Non-disclosure agreements with all employees and contractors who handle personal data.

Despite these measures, no method of transmission over the internet or electronic storage is 100% secure. We encourage you to exercise caution when sharing information online and to use a secure connection when accessing our website.

In the event of a personal data breach that is likely to result in risk to your rights and freedoms, we will notify you and, where required, the appropriate authorities, in accordance with applicable law.

8. Data Retention

We retain your personal information for as long as necessary to fulfil the purposes for which it was collected, including:

  • Client and project data: For the duration of the engagement plus seven (7) years, as required for tax, accounting, and legal compliance under Indian law (including the Companies Act, Income Tax Act, and GST laws).
  • Enquiry and contact form submissions: Up to two (2) years from the date of submission, or until we have responded and the matter is closed.
  • Website analytics data: As per the data retention settings of the analytics provider (typically 26 months for Google Analytics).
  • Job applicant data: Up to twelve (12) months from the date of application, unless we request and receive your consent to retain it longer for future opportunities.

When personal information is no longer required, we will delete or anonymise it in a secure manner.

9. Cookies & Tracking Technologies

9.1 What Are Cookies?

Cookies are small text files stored on your device when you visit a website. We use cookies and similar tracking technologies (e.g., web beacons, pixel tags) to enhance your browsing experience, analyse website traffic, and understand how visitors use our website.

9.2 Types of Cookies We Use

  • Strictly Necessary Cookies: Essential for the website to function correctly. These cannot be disabled.
  • Analytical / Performance Cookies: Help us understand how visitors interact with our website (e.g., Google Analytics). These are only set with your consent.
  • Functional Cookies: Remember your preferences and settings to improve your experience.
  • Marketing Cookies: Used to deliver relevant advertisements. We do not currently use these.

9.3 Managing Cookies

You can control and manage cookies through your browser settings. Most browsers allow you to refuse cookies or alert you when cookies are being sent. Please note that disabling certain cookies may affect the functionality of our website.

For Google Analytics, you can opt out using the Google Analytics Opt-out Browser Add-on.

10. Third-Party Links

Our website may contain links to third-party websites, integrations, or services (e.g., LinkedIn, GitHub, social media platforms). We are not responsible for the privacy practices of these third parties. We encourage you to read the privacy policies of any third-party sites you visit. The inclusion of a link does not constitute endorsement of the third-party site or its privacy practices.

11. Children’s Privacy

Our website and services are not directed at, or intended for, use by children under the age of eighteen (18). We do not knowingly collect personal information from children. If you believe that a child has provided us with personal information without verifiable parental consent, please contact us immediately at hello@digitalspringtechnology.com and we will promptly delete such information.

12. Your Rights

Subject to applicable law, you have the following rights with respect to your personal information:

  • Right to Access: You may request a copy of the personal information we hold about you.
  • Right to Correction: You may request that we correct inaccurate or incomplete personal information.
  • Right to Withdrawal of Consent: Where processing is based on your consent, you may withdraw it at any time. Withdrawal does not affect the lawfulness of processing prior to withdrawal.
  • Right to Erasure: You may request deletion of your personal information, subject to our legal retention obligations.
  • Right to Object: You may object to our processing of your personal information for direct marketing purposes at any time.
  • Right to Data Portability: Where technically feasible, you may request that we provide your personal information in a structured, commonly used, machine-readable format.

To exercise any of these rights, please submit a written request to our Grievance Officer (see Section 13). We will respond within thirty (30) days of receipt of your request. We may need to verify your identity before processing your request.

13. Grievance Officer

In accordance with Rule 5(9) and Rule 8 of the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, we have designated a Grievance Officer to address any privacy-related concerns or complaints:

Grievance Officer — Digital Spring Technology

Digital Spring Technology

F - 49, Najafgarh, New Delhi-110043, India

Email: hello@digitalspringtechnology.com (Subject: “Privacy Grievance”)

Phone: +91 9811214881

Available: Monday to Friday, 10:00 AM – 6:00 PM IST (excluding public holidays)

Grievances will be acknowledged within 24 hours of receipt and resolved within one (1) month of receipt, in accordance with Rule 5(9) of the SPDI Rules.

14. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or regulatory guidance. The “Last Updated” date at the top of this page indicates when the most recent revision was made. Material changes will be communicated via a notice on our website or, where we have your contact information, by email. We encourage you to review this Policy periodically.

Your continued use of our website or services after the effective date of any revised Policy constitutes your acceptance of the changes.

15. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Digital Spring Technology

F - 49, Najafgarh, New Delhi-110043, India

Email: hello@digitalspringtechnology.com

Phone: +91 9811214881

Or use our Contact Page.