Privacy Policy

AXIONEUARX ("we", "us", "our") is committed to protecting the privacy and security of personal data processed through our Services. This Privacy Policy explains how we collect, use, disclose, store, and protect digital personal data in compliance with the Digital Personal Data Protection Act, 2023 (DPDP Act) and other applicable laws.

This Policy applies to all Data Principals (individuals) whose data we process when you:
  1. Use our ERP software, applications, platforms, or related services (e.g., school/college administration ERP, business management ERP, website development, data center management, security solutions).
  2. Visit our website www.axioneuarx.com
  3. Interact with us via support, demos, emails, or other channels.

By using our Services, you consent to the practices described here. If you represent an institution/business, ensure you have authority to consent on behalf of affected individuals (e.g., students, employees).

Information We Collect:
We collect only necessary digital personal data for providing and improving the Services.
Categories:
  1. Identity & Contact : Name, email, phone, address (admins, users, students/employees where relevant).
  2. Account & Authentication : Username, password (hashed), role/permissions, login history.
  3. ERP-Specific Data : For business ERP, customer/supplier details, sales/finance records, invoice data, ticket/support logs, employee/user profiles.
  4. Uploaded/Processed Data : Files, documents, or data you upload/import into the ERP (e.g., spreadsheets, reports, photos).
  5. Technical & Usage : IP address, device info, browser, OS, pages/features used, timestamps, audit logs (for security/compliance).
  6. Payment : Billing info (processed via secure gateways; we don't store full card/CVV details).
  7. Communication : Support tickets, chat logs, feedback.


Collection Methods:
Directly from you/institution, automatically (logs, cookies), or via integrations (e.g., payment gateways, email providers).
We avoid collecting sensitive personal data unless explicitly necessary and consented (e.g., health/educational records in school ERP).

Purposes and Lawful Basis for Processing:
Purposes:
  1. Deliver, customize, and support the ERP/Services (e.g., generating reports, managing access, backups).
  2. Process transactions (subscriptions, invoices).
  3. Provide security features (e.g., threat monitoring, access controls in our security product).
  4. Communicate (updates, alerts, support).
  5. Improve products (analytics, bug fixes—often aggregated).
  6. Prevent fraud/abuse, maintain audit trails.
  7. Comply with laws (e.g. tax, education regulations).
  8. Marketing (only with consent).

Lawful Basis (DPDP Act):
  1. Consent (for marketing, non-essential analytics).
  2. Legitimate uses (e.g. voluntary provision for ERP functionality, legal compliance, performance of contract).
  3. Withdraw consent anytime without affecting essential Services.

Sharing and Disclosure:
We do not sell personal data.
Sharing:
  1. With service providers (cloud hosts like AWS/DigitalOcean, payment processors, analytics tools) under strict DPAs.
  2. Affiliates (if any).
  3. In business transfers (merger/sale).
  4. For legal compliance, safety, or rights protection.
  5. Aggregated/anonymized data for insights.

Cookies and Tracking:
We use essential cookies for functionality, analytics cookies for usage trends, and marketing cookies (with consent). Manage via banner/browser.

International Transfers & Data Processors:
Data may be processed in India or other countries with adequate safeguards (e.g., contracts). Our providers act as data processors under our instructions.

Your Rights as Data Principal:
Under DPDP:
  1. Access, correction, erasure, nomination.
  2. Withdraw consent.
  3. Grievance redressal.
Exercise via email to privacy@axioneuarx.com. We respond promptly (e.g. within statutory timelines).

Data Security & Incident Response:
We use encryption, access controls, regular audits, and monitoring. In a breach, we notify the Data Protection Board and affected parties as required.

Data Retention:
Retained only as needed (e.g. during subscription + legal periods like 7 years for financials). Deleted/anonymized thereafter. Inactive accounts may be purged after [e.g. 2-3 years] notice.

Changes to the policy:
We may update this policy periodically.
Scroll