How ComplyX collects, uses, stores, and protects your personal and compliance data. Your data is encrypted, your audit trail is immutable.
This Privacy Policy describes how Odento Infolabs Pvt Ltd ("Company", "we", "us", or "our") collects, uses, stores, and protects your personal information when you use ComplyX (the "Service"). We are committed to safeguarding your privacy and ensuring your data is handled transparently and securely.
We collect the following types of information when you register for and use ComplyX:
Name, email address, phone number, and ICAI or ICSI membership number (where applicable).
Firm or company name, registered address, GSTIN, CIN, and other entity details you provide.
Transaction records for credit purchases. We do not store card or banking details — these are handled by our payment gateway.
Log data, device information, IP address, browser type, and interaction patterns for analytics and security.
We use the information we collect for the following purposes:
We do not sell, rent, or trade your personal information. We share data only in the following limited circumstances:
We implement industry-standard security measures to protect your data:
All documents stored in the ComplyX vault are encrypted using AES-256 encryption at rest. This is the same encryption standard used by banks and government agencies.
All data transmitted between your device and our servers is encrypted using Transport Layer Security (TLS 1.2+). This prevents interception and tampering during transmission.
ComplyX uses cookies and similar technologies to maintain your session, remember preferences, and analyze platform usage. We use the following types of cookies:
You can control cookies through your browser settings. Disabling essential cookies may affect your ability to use the Service.
You have the following rights regarding your personal data:
To exercise any of these rights, contact us at legal@complyx.co.in. We will respond within 30 days.
We retain your data for as long as your account is active or as necessary to provide the Service. Compliance-related data, including the audit trail, is retained for a minimum of seven (7) years to meet statutory and regulatory requirements under Indian law.
After the retention period, or upon account deletion, your data is securely erased, except where retention is required by law. The audit trail remains immutable and is retained for the full statutory period regardless of account status.
ComplyX is not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately, and we will take steps to delete that information.
Your data is primarily stored in data centers located in India. Some service providers (such as cloud infrastructure or analytics tools) may process data outside India. Where this occurs, we ensure appropriate safeguards are in place, including standard contractual clauses and compliance with applicable data protection laws.
ComplyX offers an optional Google Drive integration that allows you to mirror documents from your ComplyX vault to your own Google Drive account. This feature is entirely optional and consent-based.
We may update this Privacy Policy from time to time. When we make material changes, we will revise the "Last updated" date at the top of this page and notify users via email or in-platform notification. Your continued use of the Service after changes take effect constitutes acceptance of the revised policy.
If you have any questions about this Privacy Policy or your data rights, please contact us:
Odento Infolabs Pvt Ltd
Office No. 301, Balewadi Plaza
Near Mitcon, Balewadi
Pune, Maharashtra 411045
India
AES-256 encrypted vault, immutable audit trail, and full control over your data. Start managing compliance free today.