Privacy Policy | Hyrrokkin Data Protection & Privacy

Last Updated: April 1, 2026

This Privacy Policy explains how Hyrrokkin Branding Services Private Limited (“Hyrrokkin”, “we”, “us”, or “our”) collects, uses, stores, shares and protects personal data when you visit our website, contact us, engage our services or otherwise interact with us.

We are committed to handling personal data responsibly and maintaining appropriate privacy and security practices in accordance with applicable laws in India, including the Digital Personal Data Protection Act, 2023 (DPDP Act) and applicable rules and regulations, as they come into force.

By using our website or providing information to us, you acknowledge the practices described in this Privacy Policy.

1. Information We Collect

1.1 Information You Provide to Us

Depending on how you interact with Hyrrokkin, we may collect information such as:

  • Name
  • Email address
  • Phone number
  • Company name, designation and business information
  • Enquiry and project requirements
  • Documents, files and other information voluntarily shared with us
  • Billing and transaction-related information
  • Support requests and communications
  • Technical credentials or access information provided specifically for project execution or support

Where project credentials or access information are provided to us, access is limited to authorised personnel according to the requirements of the engagement.

1.2 Information Collected Automatically

When you visit our website, certain technical information may be collected automatically, including:

  • IP address
  • Browser and device information
  • Operating system
  • Pages visited
  • Date and time of access
  • Referring pages
  • Website usage and interaction information
  • Cookie and analytics information

We may use this information for website operation, security, analytics, troubleshooting and improving our services.

1.3 Information From Third-Party Services

Where applicable, we may receive information through services or integrations such as:

  • WhatsApp and communication platforms
  • Payment gateways
  • Cloud and hosting providers
  • Analytics platforms
  • Customer support systems
  • CRM and project management platforms
  • Other third-party services authorised by you

Information received through these services is handled according to the purpose for which access was provided and applicable contractual and privacy requirements.

2. How We Use Your Information

We may process personal data for purposes including:

  • Responding to enquiries and requests
  • Providing website, application, cybersecurity, cloud, maintenance, consulting and related digital services
  • Preparing proposals, quotations and contracts
  • Managing projects and communicating project updates
  • Providing customer and technical support
  • Processing payments and maintaining accounting records
  • Operating and improving our website and services
  • Maintaining security and preventing unauthorised access, fraud, abuse or misuse
  • Troubleshooting technical issues
  • Maintaining business and service records
  • Meeting applicable contractual, statutory and regulatory requirements
  • Sending service-related communications
  • Sending marketing communications where appropriate and permitted

Hyrrokkin does not sell or rent personal data to third parties.

3. Consent and Lawful Processing

Where consent is required, we seek to provide information about the purpose for which personal data is being collected and processed.

Depending on the circumstances and applicable law, personal data may be processed for purposes connected with:

  • Your consent
  • Providing services requested by you
  • Performing contractual obligations
  • Business operations and administration
  • Compliance with applicable legal obligations
  • Security, fraud prevention and protection of our systems
  • Other uses permitted under applicable law

Where processing is based on consent, you may request withdrawal of that consent, subject to applicable legal and contractual requirements.

The DPDP Act establishes a framework for processing digital personal data for lawful purposes and provides for consent and certain permitted uses. Its substantive provisions are being brought into force according to the Government’s notified commencement schedule.

4. Sharing and Disclosure of Information

We may share personal data only where reasonably necessary for legitimate business, service or legal purposes.

4.1 Service Providers

Information may be shared with authorised service providers supporting activities such as:

  • Cloud infrastructure and hosting
  • Email and communication services
  • Payment processing
  • Analytics
  • Customer support
  • Project management
  • Security and monitoring
  • Accounting and professional services

We seek to provide access only to information reasonably required for the relevant service.

4.2 Employees, Developers and Authorised Personnel

Access to client and user information is restricted according to business requirements and provided on a need-to-know and authorised-access basis.

4.3 Legal Requirements

We may disclose information where required or permitted by applicable law, regulation, court order, governmental authority or lawful legal process.

4.4 Business Transactions

If Hyrrokkin undergoes a merger, restructuring, acquisition or transfer of business or assets, relevant information may be transferred as part of that transaction, subject to applicable legal requirements.

We do not share personal data with unrelated third parties for their independent advertising purposes unless appropriate consent or another lawful basis applies.

5. Data Security

Hyrrokkin maintains organisational and technical measures intended to protect information against unauthorised access, disclosure, alteration, loss or misuse.

Depending on the relevant system and service, measures may include:

  • Encryption in transit
  • Role-based and restricted access
  • Authentication and access controls
  • Secure hosting and infrastructure configurations
  • Logging and monitoring
  • Backup and recovery processes
  • Security updates and vulnerability management
  • Internal information-security policies and procedures
  • Periodic security reviews

Hyrrokkin maintains an ISO/IEC 27001:2022 certified Information Security Management System (ISMS).

However, no internet transmission, electronic storage system or security control can guarantee absolute security.

6. International Data Processing and Transfers

Some of the technology and cloud services used by Hyrrokkin may process or store information in locations outside India.

Where personal data is transferred or processed internationally, we take reasonable steps to use appropriate service providers and safeguards and comply with applicable Indian data-protection requirements concerning such transfers.

7. Data Retention

We retain personal data only for as long as reasonably necessary for purposes such as:

  • Providing requested services
  • Maintaining client and project records
  • Fulfilling contractual obligations
  • Providing technical support
  • Maintaining financial, tax and statutory records
  • Resolving disputes
  • Security and fraud prevention
  • Meeting applicable legal or regulatory requirements

When information is no longer reasonably required, we may securely delete or anonymise it, subject to applicable retention requirements.

8. Your Privacy Rights

Depending on applicable law and the circumstances of processing, individuals may have rights relating to their personal data.

These may include the ability to:

  • Request information about personal data processed by us
  • Request correction or updating of inaccurate information
  • Request erasure of personal data where applicable
  • Withdraw consent where processing depends upon consent
  • Raise a grievance concerning the handling of personal data
  • Nominate another individual to exercise applicable rights in circumstances provided by law

The DPDP Act provides rights for Data Principals, including access to information about personal data, correction and erasure, grievance redressal and nomination, subject to its provisions and commencement schedule.

To make a privacy-related request, contact:

[email protected]

We may need to verify your identity before processing certain requests.

9. Cookies and Analytics

Our website may use cookies and similar technologies for purposes such as:

  • Operating website functionality
  • Remembering user preferences
  • Understanding website usage
  • Measuring website performance
  • Improving user experience
  • Security and fraud prevention
  • Analytics and, where applicable, marketing

Where required, non-essential cookies or similar technologies will be used subject to applicable consent requirements.

You may also control certain cookies through your browser settings.

10. Third-Party Websites and Services

Our website may contain links to websites, applications or services operated by third parties.

Hyrrokkin does not control the privacy, security or content practices of independent third-party websites. We recommend reviewing the relevant privacy policies before providing personal information to those services.

11. Children’s Privacy

Our corporate website and services are primarily intended for businesses and professional users and are not designed specifically for children.

If we become aware that personal data relating to a child has been collected in circumstances requiring additional consent or safeguards under applicable law, we will take appropriate steps in accordance with applicable requirements.

The DPDP Act defines a child as an individual who has not completed eighteen years of age and includes specific provisions concerning processing children’s personal data.

12. Information Security and Incident Management

We maintain processes intended to identify, assess and respond to security incidents affecting systems and information under our control.

Where a personal-data breach is subject to statutory notification requirements, Hyrrokkin will take appropriate action in accordance with applicable law and regulatory requirements.

13. Changes to This Privacy Policy

We may revise this Privacy Policy periodically to reflect changes in:

  • Our services
  • Technology
  • Business operations
  • Privacy practices
  • Applicable laws and regulatory requirements

The latest version will be published on this page together with the Last Updated date.

We recommend reviewing this Privacy Policy periodically.

14. Contact Us

For privacy-related questions, requests or concerns, please get in touch with the registered admin office:

Hyrrokkin Branding Services Private Limited
No: 4/188/3, 3rd Street Extension,
Muthammal Colony, Thoothukudi,
Tamil Nadu – 628002.

Email: [email protected]
Website: hyrrokkin.net

🛡

Protected Digital Environment

This website is protected by Hyrrokkin security controls. Copying, inspecting, downloading or attempting to access protected website resources is restricted.

SECURITY POLICY ENFORCED