Urjasoft - Software, AI & SaaS Engineering

Privacy Policy

Original policy basis: 01 September 2021 · Current website review: September 2026

This privacy policy describes how Urjasoft Enterprises Pvt. Ltd. collects, uses and protects information provided through this website. We are committed to ensuring that your privacy is protected.

Regulatory Preparedness & Statutory Status

The Digital Personal Data Protection Rules, 2025 have been notified, with phased commencement dates. Urjasoft has engineered its website and data-handling workflows for forward compatibility with applicable and scheduled requirements, subject to legal review.

1. Who We Are

The term "Urjasoft" or "us" or "we" refers to the owner(s) and team of this website and the company, Urjasoft Enterprises Pvt. Ltd., a company registered under the Ministry of Corporate Affairs of India.

Company Identification Number (CIN): U74999DL2016PTC307516

The term "you" refers to the user or viewer of our website.


2. What This Policy Covers

This privacy policy describes how Urjasoft uses and protects any information that you provide when you use this website.

Urjasoft is committed to ensuring that your privacy is protected. Should we ask you to provide certain information by which you can be identified when using this website, you can be assured that it will only be used in accordance with this privacy statement.


3. Information We Collect

We may collect the following information:

  • Full name
  • Contact information including email address and phone number
  • Demographic information such as postcode, preferences and interests
  • Information related to educational and professional life, as entered through our Careers page
  • Other information relevant to customer surveys and/or offers
  • IP address

Current Application — Verified Collection

The current website collects information through the following mechanisms:

  • Project inquiry form: name, email, phone, company name, website URL, service interest, project type, project stage, timeline, budget range, reference URL, project description, IP address, and browser user-agent
  • Career applications: applicant name, email, phone, resume/CV upload, portfolio URL, LinkedIn URL, GitHub URL, cover letter, and IP address
  • Newsletter subscription: email address
  • Session infrastructure: CSRF tokens and session identifiers (essential cookies)

4. How We Use Information

We require this information to understand your needs and provide you with a better service, and in particular for the following reasons:

  • Internal record keeping.
  • We may use the information to improve our products and services.
  • We may periodically send promotional email about new products, special offers or other information which we think you may find interesting, using the email address which you have provided.
  • From time to time, we may also use your information to contact you for market research purposes. We may contact you by email, phone, fax or mail.
  • We may use the information to customise the website according to your interests.

Historical Source Provision — Current Practice to Be Confirmed

The original privacy policy (01 September 2021) stated: "We may provide your information to our third party partners for marketing or promotional purposes." The current application does not contain any verified implementation of third-party data sharing for marketing purposes. This provision is preserved from the original policy for transparency. Current applicability should be confirmed through legal and operational review.

Historical Source Provision — Current Practice to Be Confirmed

The original policy also stated that information may be used to customise the website according to user interests. The current application does not contain verified personalisation features. This provision is preserved for transparency and should be confirmed through operational review.

We will never sell or trade your information outside our company.


5. Project & Contact Inquiries

When you submit a project inquiry or contact request through our website, we collect the information you provide in order to evaluate and respond to your enquiry regarding potential software engineering and consulting engagements.

This collection operates directly upon your voluntary submission following the notice provided on our contact forms. We do not assert generalized or unverified statutory bases for preliminary business communications.

  • Your name and email address
  • Phone number, if supplied
  • Company name, if supplied
  • Website or reference URL, if supplied
  • Project type and service interest
  • Project stage and timeline
  • Budget-range selection
  • Project description
  • Submission metadata (IP address, browser user-agent) for abuse prevention and operational purposes

Project-submission information is used exclusively to evaluate enquiries, respond to potential clients, and manage our sales and operations pipeline. Specific data retention periods should be confirmed through Urjasoft's legal and operational policy.


6. Careers & Applications

When you apply for a position through our Careers page, we collect information necessary to evaluate your candidacy, conduct recruitment assessments, and contact you regarding employment opportunities, including:

  • Applicant name, email address, and phone number
  • Resume/CV upload
  • Portfolio URL, LinkedIn profile, and GitHub profile, if provided
  • Cover letter
  • IP address for abuse prevention

Employment Processing: DPDP Section 7(i) is documented as a future statutory mapping. Current recruitment processing is implemented using the operational notice, security, access-control and data-handling measures applicable to the website today, with forward preparation for the scheduled DPDP provisions, subject to legal review.

Uploaded resumes and application documents are stored on secure, private storage volumes that are not accessible via public URLs. Access to application materials is restricted to authorised administrative personnel.

Exact retention periods for candidate data should be confirmed through Urjasoft's legal and operational policy.


7. Newsletter & Communications

If you subscribe to our newsletter, we collect your email address for the purpose of sending occasional engineering articles, technical publications, and company updates. You may unsubscribe at any time.

We do not share newsletter subscriber email addresses with third parties for marketing purposes.


8. Cookies

A cookie is a small file which asks permission to be placed on your computer's hard drive. Once you agree, the file is added and the cookie helps analyse web traffic or lets you know when you visit a particular site. Cookies allow web applications to respond to you as an individual. The web application can tailor its operations to your needs, likes and dislikes by gathering and remembering information about your preferences.

Overall, cookies help us provide you with a better website by enabling us to monitor which pages you find useful and which you do not. A cookie in no way gives us access to your computer or any information about you, other than the data you choose to share with us.

You can choose to accept or decline cookies. Most web browsers automatically accept cookies, but you can usually modify your browser settings to decline cookies if you prefer. This may prevent you from taking full advantage of the website.

Current Cookie Usage

Essential Cookies (Currently Active)

  • CSRF Token (XSRF-TOKEN) — Required for cross-site request forgery protection on all form submissions.
  • Session Cookie (laravel_session) — Required for authenticated administrative sessions and session-based functionality.

Analytics / Optional Cookies

The current website does not deploy third-party advertising cookies, cross-site trackers, analytics cookies (such as Google Analytics), or commercial surveillance pixels.

Historical Context

The original privacy policy described the use of traffic log cookies to identify which pages are being used, for statistical analysis purposes, with data removed from the system after analysis. The original website included Google Analytics (UA-83300168-1). The current website does not include Google Analytics or any equivalent traffic-analysis system. Should analytics be reintroduced in future, this section will be updated accordingly.


9. Security & Log Retention

We are committed to ensuring that your information is secure. In order to prevent unauthorised access or disclosure, we have put in place suitable physical, electronic and managerial procedures to safeguard and secure the information we collect online.

Current Verified Security Controls

  • CSRF protection on all form submissions
  • Authenticated administrative access with role-based authorisation
  • Private resume storage — uploaded candidate documents are stored on non-public storage volumes inaccessible via direct URL
  • Input validation on all user-submitted data
  • Honeypot-based spam protection on public forms
  • Rate limiting on submission endpoints
  • Secure file handling for uploaded documents

System Logging & Regulatory Incident Response

Application logging and retention are designed with the CERT-In Cyber Security Directions in mind; applicability and exact retention obligations depend on the nature of the entity, systems and incident.

Where technically appropriate, system access logs and security telemetry are retained for operational review and forensic analysis for a period of up to 180 days. In the context of reportable cyber incidents covered by the applicable CERT-In Directions, Urjasoft maintains incident response protocols, including reporting within the six-hour notification window where mandated by applicable law.


10. Third-Party Websites

Our website may contain links to enable you to visit other websites of interest easily. However, once you have used these links to leave our site, you should note that we do not have any control over that other website.

Therefore, we cannot be responsible for the protection and privacy of any information which you provide whilst visiting such sites. Such sites are not governed by this privacy statement. You should exercise caution and look at the privacy statement applicable to the website in question.


11. Your Choices and Marketing Preferences

You may choose to restrict the collection or use of your personal information. If you have previously agreed to us using your personal information for direct marketing purposes, you may change your mind at any time by writing to or emailing us at contact@urjasoft.com.

We will not sell, distribute or lease your personal information to third parties unless we have your permission or are required by law.

We may use your personal information to send you promotional information about third parties which we think you may find interesting, if you tell us that you wish this to happen.


12. Data Principal Rights & Forward Compatibility

Urjasoft recognizes the rights of individuals regarding their personal data. Under the Digital Personal Data Protection framework, the statutory rights of Data Principals include:

Section 11 — Right to Access Information

Data Principals have the right to request a summary of personal data being processed, the identities of data fiduciaries or processors with whom data has been shared, and related processing information.

Section 12 — Correction and Erasure

Data Principals have the right to request the correction, completion, and updating of inaccurate personal data, as well as the erasure of personal data that is no longer necessary for the purpose for which it was processed, unless retention is required by applicable law.

Section 13 — Grievance Redressal

Data Principals have the right to readily available grievance redressal mechanisms in respect of any act or omission regarding personal data obligations. (Section 12 governs correction and erasure; Section 13 establishes the statutory grievance redressal framework.)

Section 14 — Right to Nominate

Data Principals have the right to nominate an individual who, in the event of death or incapacity, shall exercise rights in accordance with the law.

The Digital Personal Data Protection Rules, 2025 have been notified, with phased commencement dates. Urjasoft has engineered its website and data-handling workflows for forward compatibility with applicable and scheduled requirements, subject to legal review.


13. Grievance Redressal

If you have any questions, concerns, or requests regarding your personal data or wish to exercise any Data Principal rights, we maintain a dedicated grievance handling procedure.

Urjasoft Operational Targets

Urjasoft aims to acknowledge privacy-related requests within 48 hours and target resolution within 30 days, subject to the nature of the request, applicable law, and any verification required.

Notice: These response windows represent Urjasoft operational targets established to ensure prompt handling, and are not statutory DPDP deadlines.

To submit a privacy grievance or exercise your rights, please reach our designated privacy contact at:

contact@urjasoft.com Please include "Privacy Grievance / Data Request" in your email subject line.


14. Policy Changes

Urjasoft may update this policy from time to time by updating this page. You should check this page periodically to ensure that you are satisfied with any changes.


15. Contact Us

If you have any general questions about this website or find any inappropriate material or content while browsing, please contact us at:

contact@urjasoft.com