Skip to main content
Ramyne Innovate logo
Legal

Privacy Policy

What we collect, why we hold it, how long we keep it and what you can ask us to do about it. Last updated 1 July 2026.

Scope of this policy

This policy explains how Ramyne Innovate Private Limited handles personal information collected through https://www.ramyne.com, through enquiries made to us, and in the course of providing software development services.

It covers two different situations, and the difference matters. When you contact us, apply for a role or browse this site, we decide why and how your information is handled, so we are the controller of it. When we build or maintain software for a client, we handle the data inside that system on the client's instructions, so they are the controller and we act as a processor. The section on client data below explains what that means in practice.

This policy does not cover third-party websites linked from our pages, or systems operated by our clients under their own privacy notices.

Who we are

This site is operated by Ramyne Innovate Private Limited, trading as Ramyne Innovate, a software engineering company based in India, building products of our own and custom software for clients.

Where this policy says "we" or "us", it means that company. Where it says Ramyne Innovate, it means the same company under the name we trade as.

For anything in this policy, including requests about your information and complaints about how it has been handled, the contact point is ramyneinnovate@gmail.com.

Information we collect

We collect as little as the job requires. Nothing on this site asks for information that is not needed to reply to you, and there is no account to create.

  • Enquiry details you give us voluntarily: your name, email address, phone number, company and whatever you choose to write in your message.
  • Correspondence records, where an exchange needs context to be answered properly or needs to be kept as a record of what was agreed.
  • Standard technical information your browser sends when it requests a page, such as browser and device type, referring page and approximate region derived from your IP address.
  • Contract and billing details for clients, including the names and business contact details of the people we work with day to day.
  • Recruitment information, where you send us a CV or apply for a role.
  • Any credentials or access you grant us during an engagement, such as repository or infrastructure access, which we treat as described under security below.

How we use information, and on what basis

Every use below has a reason attached to it. Where the law that applies to you requires a lawful basis, this is ours.

  • To answer your enquiry and discuss a possible engagement. Basis: steps taken at your request before entering a contract.
  • To deliver, support and maintain services you have engaged us for. Basis: performance of our contract with you.
  • To keep our business running, including accounting, invoicing and record keeping. Basis: legal obligation, and our legitimate interest in running the company properly.
  • To keep this website and our systems available and secure, and to investigate misuse. Basis: our legitimate interest in protecting our own and our clients' systems.
  • To consider you for a role you have applied to. Basis: steps taken at your request before entering a contract.
  • To send occasional updates about our work, where you have asked for them. Basis: your consent, which you can withdraw at any time.

Client data and confidentiality

During an engagement we usually need access to systems that hold your users' personal data. We treat that access as borrowed, not given.

We act only on the client's documented instructions, take the least access that lets the work get done, and hand it back when the engagement ends. Where we need a copy of production data to reproduce a fault, we ask first, we prefer an anonymised or reduced extract, and we delete it once the fault is fixed.

Everyone who works on an engagement is bound by confidentiality obligations. Where a client requires a data processing agreement, a non-disclosure agreement or specific security terms, those are signed before work begins and take precedence over this policy for the data covered by them.

Sharing and service providers

We do not sell personal information, and we do not share it for advertising or profiling.

We use a small number of established providers to run the business, and they receive only what they need to deliver their part of it: website and application hosting, email and calendaring, source code hosting, error and uptime monitoring, and accounting. Each is bound by its own contractual and confidentiality obligations.

We may also disclose information where we are required to by law, by a court, or by a regulator, and where it is necessary to establish or defend a legal claim. If we are ever compelled to disclose client information, we will tell the client unless we are legally prevented from doing so.

Where information is stored

We work with clients in several countries, and some of the providers we rely on operate infrastructure outside the country you are in. Where information is transferred across a border, we use providers that offer recognised safeguards, such as standard contractual clauses or an adequacy decision, and we choose a hosting region to suit the engagement where a client requires one.

If your engagement has data residency requirements, tell us before the work is scoped. It is straightforward to design for at the start and expensive to retrofit.

Cookies and analytics

This website is served as static pages. It sets no advertising cookies, no cross-site tracking cookies, and no third-party profiling scripts.

Our hosting provider keeps standard server logs, which include IP addresses, for security and diagnostic purposes. If we introduce analytics or any other measurement in future, we will update this section before it goes live and, where consent is required, we will ask for it rather than assume it.

How long we keep information

We do not keep information because it might be useful one day. Each category has an end date.

  • Enquiries that do not become engagements: kept while the conversation is live, then deleted within twelve months.
  • Client contract and billing records: kept for as long as the law and our accounting obligations require, currently eight years in India.
  • Project material, code and documentation: kept for the term of the engagement and a reasonable handover period, then removed from our systems unless the agreement says otherwise.
  • Access credentials granted to us: revoked at the end of the engagement, and we ask the client to confirm revocation on their side.
  • Recruitment material: kept for the duration of the process, then deleted within six months unless you ask us to keep it on file.
  • Server logs: kept for a short operational period, currently no longer than ninety days.

How we protect information

Security is designed into the way we work rather than added at the end. In practice that means:

  • Encrypted transport for everything served over the web, and encryption at rest on the systems that hold client material.
  • Multi-factor authentication on the accounts that matter, and no shared logins.
  • Least-privilege access, granted per engagement and reviewed when someone's role on it changes.
  • Secrets kept in a managed store rather than in code, configuration files or chat messages.
  • Dependency and vulnerability monitoring on the projects we maintain, with patching handled as ordinary work rather than as an emergency.
  • Devices with disk encryption, automatic locking and current operating system updates.

If something goes wrong

No system is completely secure, and we will not claim otherwise. What we can commit to is how we behave when something happens.

If we become aware of a breach affecting personal information we hold, we investigate immediately, contain it, and notify the affected client and any regulator required by the law that applies, within the deadline that law sets. Where the breach is likely to affect individuals, we help our client notify them. We will tell you what happened, what data was involved, what we have done and what we are changing, rather than issuing a statement that says nothing.

Your rights

Depending on where you are, you may have some or all of the rights below over the information we hold about you as a controller.

  • Ask what information we hold and get a copy of it.
  • Have inaccurate information corrected.
  • Have information deleted where we have no continuing need or legal obligation to keep it.
  • Object to, or ask us to restrict, a particular use.
  • Receive information you gave us in a portable format, where that applies.
  • Withdraw consent at any time, where consent was the basis for a use.
  • Complain to your data protection authority if you are not satisfied with our answer.

Making a request or a complaint

Write to ramyneinnovate@gmail.com and tell us what you want done. We may need to verify your identity before acting, and we will not use that step to slow the request down.

We aim to acknowledge within one business day and to resolve within 30 days. If a request is complex enough to need longer, we will say so and give you a date.

Where we hold your information on behalf of a client, we will pass your request to them and support their response, because it is their decision to make rather than ours.

Children

This website and our services are directed at businesses, not at children. We do not knowingly collect information from anyone under 18. If you believe a child has provided us with personal information, write to us and we will delete it.

Changes to this policy

We update this policy when our services, our providers or our legal obligations change. The revision date at the top of the page tells you when it was last amended.

Where a change materially affects how we handle information you have already given us, we will make that clear rather than relying on a silent update.

Contact

Questions about this policy, or about anything in it you would like explained in plainer terms, can be sent to ramyneinnovate@gmail.com or raised by phone on +91 84601 50570 during Monday to Friday, 10:00 – 19:00 IST.