Privacy Notice

Last updated: 11 August 2026

This notice explains what personal data LoTeHIm Solutions collects through this website, why we collect it, who we share it with, how long we keep it, and what you can ask us to do about it.

We are established in India and this notice is written to meet the Digital Personal Data Protection Act, 2023 and the Digital Personal Data Protection Rules, 2025. In the language of that law, Piyush Kamra (sole proprietor), trading as LoTeHIm Solutions, is the Data Fiduciary and you are the Data Principal. Where you are located in the EU, the UK, the UAE or Saudi Arabia, the section on visitors outside India explains the additional rights we extend to you.

Who we are

What we collect, and why

We collect only what we need to answer you and to run the website. Each item below is tied to the single purpose it serves.

If you submit the enquiry form

We ask for your agreement on the form before you send it. That agreement is the basis on which we process these details, and you can withdraw it at any time (see Your rights).

If you book a diagnostic call

If you write to us directly

Automatically, when you visit

Cookies and tracking

This website sets no advertising cookies and no cross-site tracking cookies. We do not run advertising pixels and we do not build profiles of visitors.

Two things about the site do involve a third party in your browser:

If we later add analytics or any non-essential cookie, we will ask for your agreement first, make refusing as easy as accepting, and will not make any part of the site conditional on you agreeing.

Who we share it with

We do not sell personal data and we do not share it for anyone else's marketing. We use a small number of service providers who process data only on our instructions and only for the service they provide:

We will also disclose personal data where we are legally required to, or where it is necessary to establish or defend a legal claim.

Transfers outside India

Some of the providers above process data on servers outside India. Where that happens we rely on the provider's contractual data-protection commitments, and we transfer only what the service requires. We do not transfer personal data to any territory that the Central Government has restricted under the DPDP Act.

How long we keep it

If you ask us to erase your data earlier, we will, unless we are required by law to keep it.

Your rights

As a Data Principal under the DPDP Act you can ask us to:

Send any of these requests to [email protected]. We acknowledge within 3 working days and complete the request within 7 working days. If we cannot act on a request, we will tell you why and on what legal ground.

Grievance Officer

If you are unhappy with how we have handled your personal data or a request about it, contact our Grievance Officer:

We acknowledge grievances within 3 working days and aim to resolve them within 30 days. If you are not satisfied with the outcome, you may complain to the Data Protection Board of India.

Visitors outside India

We market to clients in the UAE, Saudi Arabia, Europe and the United States, so some visitors are covered by other laws.

Use the same contact address for any of these. We do not apply a lower standard depending on where you are.

Security

Enquiry data is transmitted over TLS, stored on access-controlled systems, and is available only to the people who need it to respond to you. If a breach affecting your personal data occurs, we will notify you and the Data Protection Board of India in the manner and within the timelines the DPDP Rules require.

Children

This is a business-to-business website. It is not directed at children and we do not knowingly collect personal data from anyone under 18. If you believe a child has submitted data to us, write to us and we will delete it.

Client and engagement data

Personal data and confidential business information processed during a client engagement is governed by the engagement agreement and the solution design agreed with that client, including approved systems, access controls, retention periods and deletion obligations. That agreement, not this notice, governs those datasets. Our approach to data used in AI-assisted delivery is set out on the Data handling page.

Changes to this notice

If we change how we use personal data, we will update this page and change the date at the top. Where the change is material, we will say what changed.

Contact

Questions about this notice go to [email protected].