AMBIC legal centre
Privacy Policy
Who is responsible
Ambic Digital is currently a founder-operated business run by Kailash Rajpurohit in Boisar, Maharashtra, India. For website enquiries and direct service relationships, Ambic acts as the person deciding why and how personal data is used. For a product deployed for a customer business, that customer will usually decide the purpose and Ambic will process data for it under the agreed instructions. Privacy and grievance contact: hello@ambicdigital.in.
Information collected
Depending on the interaction, data may include name, business, role, email, phone, location, enquiry and order details; account, authentication, consent and security records; uploaded documents or images and associated metadata; product, SKU and catalogue data; print-job details; invoice, payment-evidence and reconciliation data; support communications; device, browser, IP, request, error and usage information; and payment records supplied by a payment provider. The marketing website does not maintain an account database.
Why information is used
Ambic uses data to respond to requests, provide and improve the contracted service, authenticate users, isolate tenants, process authorised jobs, deliver and support outputs, prevent abuse, measure reliability, maintain security and records, collect payment, comply with law, resolve complaints and establish or defend legal claims. Ambic does not sell personal data or use customer production data for advertising.
Consent and choices
Where consent is the appropriate basis, the notice will identify the requested data and purpose. Optional website analytics stay off until a visitor accepts them through the on-site privacy control. The choice is stored in that browser and can be changed at any time through Privacy choices. Consent can also be withdrawn by contacting Ambic. Withdrawal does not invalidate earlier lawful processing and may make an optional feature unavailable. Contract, security, fraud-prevention and legal records may still be processed where permitted without relying on consent.
Website and analytics
The contact form sends the submitted enquiry to Ambic through Web3Forms when configured, or opens the visitor’s email client as a fallback. Vercel hosts the website and provides operational logs. If a visitor accepts optional analytics, Vercel Analytics and Microsoft Clarity may receive device, browser, page, interaction, approximate-location and network information to provide aggregated traffic measurement, session diagnostics and heatmaps. Google Analytics 4 may also be enabled for aggregated website measurement; advertising personalisation and Google signals are disabled in Ambic's configuration. Ambic does not use these tools for cross-site behavioural advertising or sell analytics data. Declining optional analytics does not affect access to the website.
AI and service providers
Authorised data may be processed by hosting, storage, email, form-delivery, authentication, payment, monitoring and AI providers needed for a selected workflow. Ambic limits the data sent to each provider and reviews commercial terms before production use. Unpaid consumer AI services must not receive confidential customer data. Provider names and locations may vary by engagement and will be disclosed where materially relevant.
International processing
Some providers may process information outside India. Ambic uses available contractual, account and security controls and will follow any government restriction on transfers. Customers with localisation requirements must identify them before the service is configured.
Retention
Ambic keeps data only for the stated purpose, contracted recovery period, security and applicable legal needs. Website enquiries are normally retained for up to 24 months after the last meaningful interaction. Product data follows the applicable product schedule and deployment order. Financial, tax, consent, incident and dispute records may be retained longer where required. Backups expire on their normal protected cycle. Current product pilots do not claim automated deletion unless the deployment has verified it.
Security
Safeguards are selected according to risk and include access control, tenant separation, secret management, encryption in transit, private storage, validation, logging, backups and incident handling where implemented. No system is perfectly secure. Products that have not completed managed storage, authentication, recovery and monitoring gates remain controlled pilots and are not opened as public SaaS.
Your rights
Subject to applicable law and verification, you may ask what personal data Ambic holds about you, request access or a copy, correction, completion, deletion, withdrawal of consent or grievance review. You may nominate another person where applicable. Email hello@ambicdigital.in. Ambic may need to retain limited records required by law or necessary for security and disputes and will explain the restriction where lawful.
Children
Ambic services are directed to businesses and adults and are not intended for individuals under 18. Do not submit a child’s image or personal data unless the specific service is lawful, necessary, appropriately designed and supported by verified parental or guardian authority. Public AI-generation accounts for minors are not offered.
Security incidents
Ambic will investigate suspected personal-data breaches, contain and document them, and notify affected customers, individuals or authorities where applicable law requires. Customers must promptly report suspected compromise and preserve relevant evidence.
Changes and contact
Material changes will be dated on this page. Questions, deletion requests and complaints should be sent to hello@ambicdigital.in. If a complaint is unresolved, you may use the competent statutory grievance or consumer forum available under applicable law.
See the Data Retention & Security Standard and all policies in the Legal Centre.