1. Introduction
Tvareet ("Tvareet," "we," "us," or "our") builds custom software for logistics, healthcare, real estate, and construction operators. We respect your privacy and take the responsibility of handling personal data seriously.
This Privacy Policy explains what information we collect when you visit tvareet.com, contact us, or engage Tvareet for software development services, and how we use, share, store, and protect that information.
For project data we process on your behalf as part of a development engagement (i.e., your customers' or end-users' data), our handling is governed by your signed Master Services Agreement (MSA), Data Processing Agreement (DPA), and Business Associate Agreement (BAA) where applicable.
2. Information we collect
We collect information in the following ways:
- Information you provide directly. When you fill out our contact form, schedule a call, subscribe to updates, or email us, we collect the details you share — typically your name, work email, phone number, company, budget range, and a description of your project.
- Engagement information. If we work together, we collect information necessary to deliver the engagement, including contract details, billing information, contacts at your organization, and documents you share with us.
- Usage information. When you visit tvareet.com, we automatically collect basic usage data — IP address, browser type, referring URL, pages viewed, and approximate location — through cookies and similar technologies.
- Project data. During an engagement, we may process data that belongs to you or your end-users (for example, sample datasets, PHI under a BAA, or production data under a DPA). We treat this as your data and process it strictly per our contract with you.
3. How we use information
We use the information we collect to:
- Respond to your inquiry and schedule follow-up conversations.
- Scope, propose, contract, deliver, and support custom software development engagements.
- Send transactional emails about your engagement (invoices, project updates, security notices).
- With your consent, send occasional newsletters or updates about services we think are relevant.
- Improve our website, marketing, and product through aggregated analytics.
- Detect, prevent, and respond to fraud, abuse, security incidents, and legal claims.
5. Client and project data (data we process on your behalf)
When Tvareet builds, hosts, or maintains software for you, we often process personal data on your behalf — your customers, patients, drivers, tenants, or end-users. In those cases:
- You are the controller, we are the processor. We process the data only on your documented instructions, as defined in our MSA and DPA.
- Security is engineered in. Encryption at rest and in transit, role-based access, audit logging, secure development practices, and least-privilege access for our team.
- HIPAA when applicable. For healthcare engagements, we sign a Business Associate Agreement (BAA) and use BAA-eligible infrastructure and subprocessors.
- You retain ownership. All data, source code, designs, and infrastructure templates remain yours.
7. How long we retain information
We keep personal data only as long as we need it for the purposes described in this policy, or to comply with our legal, accounting, or reporting obligations.
- Contact form submissions and CRM records — kept for up to 36 months after the last meaningful interaction.
- Engagement records (contracts, invoices, project artifacts) — kept for as long as required by law and tax regulations (typically 7 years).
- Project data we process on your behalf — kept and deleted per your DPA and instructions.
8. Your rights
Depending on where you live, you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate personal data.
- Delete your personal data, subject to legal exceptions.
- Object to or restrict certain processing.
- Receive a copy of your personal data in a portable format.
- Withdraw consent for marketing communications at any time.
For visitors in the European Economic Area, United Kingdom, or Switzerland, these rights are provided under the General Data Protection Regulation (GDPR) and equivalent laws. For California residents, the California Consumer Privacy Act (CCPA) provides similar rights — including the right to know, the right to delete, and the right to opt out of any "sale" of personal information (Tvareet does not sell personal information).
To exercise any of these rights, email privacy@tvareet.com. We will respond within 30 days.
9. International data transfers
Tvareet works with clients and service providers globally. Personal data we collect may be processed in the country where you are located and in other countries where our team or subprocessors operate.
When we transfer personal data out of the European Economic Area, United Kingdom, or Switzerland, we use Standard Contractual Clauses or other lawful transfer mechanisms.
10. Security
We use reasonable administrative, technical, and physical safeguards to protect personal data — encryption in transit and at rest, role-based access, audit logging, secure development practices, and security training for our team.
No system is perfectly secure. If we ever become aware of a security incident affecting your personal data, we will notify you and regulators where required by law.
11. Children
tvareet.com is not directed to children under 16. We do not knowingly collect personal information from children. If you believe a child has provided us personal information, please contact us so we can delete it.
12. Changes to this policy
We may update this Privacy Policy from time to time. Material changes will be posted here with an updated "last updated" date, and — where appropriate — communicated to clients directly. Please review periodically.
13. How to contact us
For privacy questions, requests, or complaints, reach our team at:
Tvareet
Email: privacy@tvareet.com
General: info@tvareet.com
If you are unsatisfied with our response, you may have the right to lodge a complaint with your local data protection authority.