F3 Tech Labs, (Prajnya) ("Prajnya", "we", "us" or "our") provides cloud-based software, professional services,
customer support, subscription management and related software licensing services (collectively, the "Services").
This Privacy Policy explains what personal information we collect, how we use it, when we share it, the choices available to individuals,
and how we protect information. It applies to all users of our Services worldwide.
We aim to meet legal privacy obligations in every territory where we operate; the sections below detail rights and protections
that apply specifically in regions such as the EU (GDPR) and California (CCPA).
What personal data we collect
We collect personal information to provide, secure, improve, and personalize our Services. Examples include:
Account and identity data
Name, job title, business email, company name, phone number and billing contact information.
Service usage & technical data
IP address, device identifiers, browser type, operating system, log files, usage metrics and feature usage data.
Customer content
Customers may upload, store, or transmit content that contains personal data of their users ("Customer Content"). Prajnya processes
Customer Content on behalf of the customer and only according to the customer's instructions and our Data Processing Agreement (DPA).
Support & billing
Support conversations, diagnostic information, payment data (via third-party payment processors) and billing history.
Marketing data
When you opt in, we may collect marketing preferences, event attendance, and communication preferences.
How we use personal data
We use personal data to:
Provide and maintain the Services, including authentication, billing, support and hosting;
Improve and develop features, run analytics and diagnostics;
Communicate with you about your account, invoices, security notices and product updates;
Protect against abuse, fraud and security incidents;
Comply with legal obligations and enforce our terms.
Legal bases for processing (EU/EEA)
For EU/EEA data subjects, we rely on lawful bases such as: performance of a contract, legitimate interests (e.g., security, product improvement), consent where required, and compliance with legal obligations.
Your privacy rights
Depending on where you live and the Services you use, you may have rights including the right to access, correct, delete, or port your personal data,
object to certain processing, restrict processing, or withdraw consent. We describe region-specific rights below.
EU / EEA (GDPR)
Under GDPR, individuals have rights such as: the right to be informed, right of access, correction, erasure, restriction, data portability,
objection to processing, and the right not to be subject to automated decision-making. You can exercise these rights by contacting us. Details on
the kinds of information we provide at collection and how to exercise rights are described in Articles 12–15 of GDPR. :contentReference[oaicite:5]{index=5}
California (CCPA/CPRA)
California residents have rights to know categories of personal information collected, request deletion, and opt out of the sale of personal information.
If you are a California resident, you may submit requests to exercise these rights via the contact methods below. We do not "sell" personal information for
advertising unless we explicitly state otherwise; if that changes, we will provide a clear opt-out mechanism. :contentReference[oaicite:6]{index=6}
How to make a request
To exercise any applicable right, please contact privacy@prajnya.com or use the contact form on our website. We will verify requests as required by law before responding.
International data transfers
Because we operate globally, personal data may be transferred, stored and processed in countries outside your home country. When transferring
data from the EU/EEA to jurisdictions without an adequacy decision, we rely on legal safeguards such as the European Commission's Standard Contractual Clauses (SCCs),
approved transfer mechanisms and other lawful means. Customers may also sign our DPA which documents additional obligations and safeguards. :contentReference[oaicite:7]{index=7}
Subprocessors: We may engage subprocessors (cloud hosts, analytics providers, payment processors). We maintain a (public or customer-available) list of subprocessors
and provide advance notice of additions where required by contract; customers have the right to object to new subprocessors for legitimate data protection reasons where provided in the DPA. :contentReference[oaicite:8]{index=8}
Security and retention
Security measures
We implement a combination of administrative, technical and physical safeguards adapted to the sensitivity of data, such as encryption in transit (TLS),
encryption at rest for selected data, access controls, logging, vulnerability management, regular backups and incident response procedures. While we strive to protect data,
no system is 100% secure; residual risk remains.
Data retention
We retain personal data only as long as necessary to provide Services, meet contractual obligations, comply with legal obligations, resolve disputes, and enforce
our agreements. Typical retention examples:
Account records & billing: retained for the duration of the customer relationship + minimum required period for tax/compliance (e.g., 7 years where applicable).
Support logs: retained for operational diagnostics (typically 1–3 years unless required otherwise).
Backups: retained per our backup policy; deletion requests may be subject to reasonable technical constraints while restoring backups.
Data breach response
We operate an incident response program. If we determine a breach is likely to result in risk to individuals' rights and freedoms, we will notify affected
individuals and, where required, regulators within legal timeframes after discovery. Notifications will include required information about the incident
and remediation steps.
Cookies, analytics & tracking
Our website and Services may use cookies, similar technologies and third-party analytics to measure product performance, analyze usage and deliver marketing.
You can manage cookie preferences through our cookie banner, browser controls, or account settings. Where tracking requires consent under applicable law, we will ask for it.
Third-party services & payments
We may share data with service providers who perform services for us (payment processors, hosting providers, analytics, customer support platforms).
Payment card information is handled by our selected third-party payment processors and is processed under their security and privacy policies.
Children
Our Services are not directed to children under 13 (or higher age where required). We do not knowingly collect personal data from children. If we learn of such collection we will delete it.
Changes to this policy
We may update this Privacy Policy to reflect changes in our practices or legal requirements. We will post the effective date at the top and, where required by law, notify users of material changes.
Contact & Data Protection Officer
If you have questions, complaints or want to exercise rights, contact our privacy team:
Postal: F3 Tech Labs, (Prajnya), 123 Business Rd, City, Country
We try to respond to legitimate requests within 30 days. If you are unsatisfied, you may lodge a complaint with the relevant supervisory authority
(for EU residents) or appropriate state authorities (for US residents), as applicable. For large enterprise customers, specific DPO contact details may be provided in the DPA.