Perfentrix

PRIVACY POLICY

Perfentrix Solutions Private Limited | Global Privacy Policy | Version 3.0 | Last Updated: 29 August 2026

This Privacy Policy (“Policy”) explains how Perfentrix Solutions Private Limited (“Perfentrix”, “we”, “us”, or “our”) collects, uses, discloses, stores, retains and protects personal information in connection with www.perfentrix.com, our marketing activities, business communications, recruitment activities and professional services.

Perfentrix is an India-based Marketing & Technology firm serving businesses and professional users in India and international markets. This Policy is intended as a global privacy notice and applies subject to mandatory privacy, data-protection, electronic-communications and consumer laws applicable to the relevant person, organisation, processing activity or jurisdiction.

This Policy should be read with our Terms & Conditions, Cookie Policy where published, and applicable proposals, Statements of Work (“SOWs”), Master Services Agreements (“MSAs”), Data Processing Agreements (“DPAs”) and other contractual documents.

1. Company Information and Privacy Contact

Legal name: Perfentrix Solutions Private Limited
Registered address: RR Towers IVA 16 & 17, T.V.K Industrial Estate, Guindy, Chennai – 600032, Tamil Nadu, India.
Website: www.perfentrix.com
General and privacy contact: info@perfentrix.com

Perfentrix may act as a controller, business, organisation, data fiduciary, processor, service provider or equivalent role depending on the nature of the processing and applicable law. Where Perfentrix processes personal information on behalf of a client, the client may determine the purposes and means of processing and Perfentrix may act as a processor or equivalent service provider.

2. Scope of this Policy

This Policy applies to personal information collected or processed through:

  • the Perfentrix website and related digital properties that link to this Policy;
  • contact, enquiry, consultation and service-request forms;
  • sales and business-development activities;
  • email, telephone, messaging and other business communications;
  • marketing, advertising and campaign activities;
  • client and prospective-client interactions;
  • recruitment and candidate activities;
  • professional services where Perfentrix processes information as a controller or equivalent; and
  • other business activities that expressly reference this Policy.

This Policy does not govern websites, applications, platforms or services independently operated by third parties.

3. Definitions

“Personal information” or “personal data” means information relating to an identified or identifiable individual, or information treated as personal data under applicable law. “Processing” includes collection, recording, organisation, storage, use, disclosure, transfer, alteration, retrieval, restriction, deletion or other handling.

4. Information We Collect

4.1 Information You Provide

Depending on how you interact with Perfentrix, we may collect:

  • Identity information: full name and professional identity.
  • Business information: company or organisation name, designation, industry, business website and professional profile information.
  • Contact information: email address, telephone or mobile number, country, region and business contact details.
  • Enquiry and project information: service requirements, business requirements, project details, consultation details and correspondence.
  • Commercial information: proposal, quotation, contract, billing and payment-related information where necessary.
  • Recruitment information: CV/resume, employment history, education, qualifications, skills, portfolio, references and other recruitment information.
  • Communication information: messages, correspondence, meeting information, feedback and other information you provide.
  • Other information that you voluntarily provide or that we are lawfully permitted to obtain.

Please avoid submitting sensitive, special-category or highly confidential information through general website forms unless Perfentrix specifically requests it and an appropriate lawful basis and protection mechanism exists.

4.2 Information Collected Automatically

When you use our website, we may automatically collect technical and usage information, subject to applicable law and consent requirements, including:

  • IP address and approximate location;
  • browser type and version;
  • device type and operating system;
  • screen resolution and language/preferences;
  • referring website, campaign and referral information;
  • pages viewed, navigation and interaction information;
  • date, time and duration of visits;
  • website performance, diagnostic and error information; and
  • cookie, pixel, tag and similar technology information.

4.3 Information from Third Parties

Where lawful, information may be obtained from clients, business partners, referrals, professional/public sources, advertising and analytics platforms, CRM systems, technology providers and other legitimate sources. Where applicable law requires additional transparency about the source or categories of such information, we will provide it.

5. How We Use Personal Information

We may use personal information for the following purposes:

  • responding to enquiries and requests;
  • understanding requirements and preparing proposals, quotations and consultations;
  • communicating about prospective or existing engagements;
  • delivering, administering and supporting professional services;
  • managing projects, reporting, billing and commercial administration;
  • maintaining client and business relationships;
  • sending service, educational, event or marketing communications where permitted;
  • measuring campaigns, conversions, website performance and marketing effectiveness;
  • improving content, functionality, user experience and services;
  • protecting systems, detecting fraud, preventing abuse and investigating security incidents;
  • recruitment and candidate administration;
  • complying with legal, regulatory, tax, accounting and contractual obligations;
  • establishing, exercising or defending legal claims; and
  • operating, securing and improving our technology, automation and AI-enabled processes where permitted.

6. Lawful Bases for Processing

Where a law such as the EU GDPR or UK GDPR requires a lawful basis, we may rely on:

  • consent;
  • performance of a contract;
  • steps requested before entering into a contract;
  • compliance with a legal obligation;
  • legitimate interests where not overridden by applicable rights;
  • protection of vital interests, rights, property or security where applicable; and
  • another lawful basis recognised by applicable law.

Where consent is relied upon, you may withdraw it subject to applicable law. Withdrawal does not affect processing lawfully carried out before withdrawal.

7. Direct Marketing and Electronic Communications

Perfentrix may communicate with business contacts, prospects and clients regarding services, resources, events, insights, offers and related business information where permitted by applicable law.

Where consent is required, we will seek it. Where another lawful marketing basis or opt-out regime applies, we will provide the required choice or objection mechanism.

You may unsubscribe from promotional communications using the unsubscribe mechanism in the communication or by contacting info@perfentrix.com. Essential service, transactional, security, contractual and legal communications may continue.

8. Cookies, Tracking and Advertising Technologies

Perfentrix may use cookies, pixels, tags, scripts, web beacons, SDKs and similar technologies to operate essential functions, remember preferences, understand usage, measure performance, attribute campaigns, track conversions and support advertising or remarketing where permitted.

Where applicable law requires prior consent for non-essential cookies or tracking technologies, Perfentrix will seek consent before deploying them. A separate Cookie Policy may describe the technologies, providers, categories, purposes, retention periods and controls.

9. Sharing and Disclosure

Perfentrix does not sell personal information as a standalone commercial data product. We may disclose information where reasonably necessary to operate our business, provide services, comply with law, protect rights or carry out a transaction.

  • website hosting and cloud providers;
  • CRM and customer-management providers;
  • email, communications and scheduling providers;
  • analytics, advertising and marketing-technology providers;
  • IT, cybersecurity and technical providers;
  • payment, billing and accounting providers;
  • legal, tax, accounting and other professional advisers;
  • recruitment and HR providers;
  • contractors, consultants and delivery partners;
  • courts, regulators, government authorities or law-enforcement bodies where legally required or permitted; and
  • other parties where you direct us to disclose information or another lawful basis applies.

10. Controller, Processor and Client Data

The role of Perfentrix depends on the service. When an individual submits an enquiry to Perfentrix, we may act as the controller or equivalent. When a client gives Perfentrix access to customer, prospect, employee or other personal data for a campaign, technology implementation, CRM activity, analytics project or other contracted service, the client may be the controller and Perfentrix may act as a processor, service provider or equivalent.

Where required, processing on behalf of a client will be governed by an MSA, SOW, DPA or equivalent contract addressing instructions, confidentiality, security, sub-processors, data-subject rights, breach notification, international transfers, retention and deletion.

11. Third-Party Services and Sub-processors

Our website and services may use or integrate with analytics, advertising, CRM, email, scheduling, social-media, hosting, security, payment, AI, software, API and embedded-content providers. Their processing may be governed by their own terms and privacy notices.

Where Perfentrix acts as a processor for a client, third-party providers that process client personal data may be appointed as sub-processors where permitted by the applicable DPA or law.

12. International Data Transfers

Perfentrix operates from India and may use clients, vendors, contractors and technology providers located in other countries. Personal information may therefore be transferred to, stored in or accessed from countries outside the country where it was collected.

Where applicable law restricts an international transfer, Perfentrix will use an appropriate lawful transfer mechanism, which may include an adequacy decision, standard contractual clauses, the UK International Data Transfer Agreement or Addendum, contractual safeguards, an approved mechanism or a legally recognised derogation.

Where a client agreement or DPA establishes additional transfer requirements, those contractual requirements will apply.

13. Data Retention

We retain personal information only for as long as reasonably necessary for the purposes for which it was collected, or longer where required or permitted by law.

  • business relationship and contract duration;
  • legal, tax, accounting and regulatory obligations;
  • security and fraud-prevention requirements;
  • dispute resolution and legal claims;
  • record-keeping and audit requirements;
  • recruitment and employment requirements; and
  • legitimate business needs, subject to applicable law.

When information is no longer required, it may be securely deleted, anonymised or otherwise disposed of.

14. Data Security

Perfentrix maintains reasonable technical and organisational safeguards appropriate to the nature and risks of the processing. Measures may include access controls, authentication, confidentiality obligations, secure systems, vendor controls, backups, monitoring and incident-management processes, as appropriate.

No internet transmission, software or electronic storage system can be guaranteed completely secure. Perfentrix therefore cannot guarantee absolute security.

15. Personal Data Breaches and Security Incidents

If Perfentrix becomes aware of a suspected personal-data breach or security incident, we will assess and investigate the incident, take reasonable steps to contain and remediate it, and make notifications to regulators, clients, individuals or other parties where required by applicable law or contract.

Where Perfentrix acts as a processor, the applicable DPA may specify additional incident-notification timelines and cooperation obligations.

16. AI, Automation, Analytics and Profiling

Perfentrix may use AI, machine-learning, automation, analytics and other technology in its own operations and in delivering services. Use will be subject to applicable law, contractual commitments and appropriate safeguards.

  • AI-generated or automated outputs may require human review and may not always be accurate.
  • Where legally required, we will provide information about automated decision-making or profiling and applicable rights.
  • Client confidential information and personal data will not knowingly be used to train a publicly available general-purpose AI model unless expressly authorised, contractually permitted and legally allowed.
  • Specific client AI requirements may be addressed in the MSA, SOW, DPA or AI-specific terms.

17. Your Privacy Rights

Depending on your location and applicable law, you may have:

  • access to personal information;
  • correction or rectification;
  • deletion or erasure;
  • restriction of processing;
  • objection to certain processing;
  • withdrawal of consent;
  • data portability;
  • information about processing;
  • opt-out of certain targeted advertising, sale or sharing activities where applicable;
  • appeal of certain privacy decisions where required; and
  • the right to complain to a relevant privacy regulator or supervisory authority.

Rights may be subject to verification requirements, exemptions, limitations and exceptions under applicable law.

18. How to Exercise Your Rights

Privacy requests may be submitted to info@perfentrix.com. Please identify the nature of your request and provide sufficient information to allow us to understand and, where legally required, verify it.

  1. Submit the request using the privacy contact.
  2. Provide reasonable information needed to identify relevant records and verify the requester where required.
  3. Perfentrix will assess the request under the law applicable to the processing.
  4. We will respond within the timeframe required by applicable law, or explain any permitted extension, refusal or limitation.
  5. Where appropriate, you may appeal a decision or complain to the relevant regulator.

19. Jurisdiction-Specific Privacy Provisions

The following provisions describe important regional frameworks. They do not replace mandatory local law. If a local law provides a right or obligation that conflicts with this Policy, the mandatory local requirement will prevail.

19.1 India

For individuals in India, Perfentrix intends to process digital personal data in accordance with applicable Indian law, including the Digital Personal Data Protection Act, 2023 and the Digital Personal Data Protection Rules, 2025, to the extent and when applicable to the relevant processing.

The implementation and commencement of particular provisions may occur according to the applicable statutory and governmental timeline. Perfentrix will apply applicable notice, consent, security, retention, grievance and rights requirements as they become applicable.

19.2 European Union / EEA

Where the EU GDPR applies, including where an organisation outside the EEA offers goods or services to individuals in the EEA or monitors their behaviour in the EEA, Perfentrix will process personal data in accordance with applicable GDPR requirements.

Depending on the circumstances, individuals may have rights to access, rectification, erasure, restriction, objection, portability, withdrawal of consent and rights relating to automated decision-making. Perfentrix will provide required transparency information concerning purposes, lawful bases, recipients, retention, transfers and rights.

Where required, Perfentrix will assess whether an EU representative or Data Protection Officer must be appointed and will provide required contact information once appointed.

19.3 United Kingdom

Where UK data-protection law applies, including the UK GDPR and Data Protection Act 2018 as amended or supplemented, Perfentrix will comply with applicable requirements.

Depending on the circumstances, individuals may have rights including access, rectification, erasure, restriction, objection, portability, withdrawal of consent and rights relating to automated decision-making. Where applicable, Perfentrix will assess whether a UK representative or Data Protection Officer is required and will publish the relevant details once appointed.

19.4 United States

US privacy requirements vary by federal law and state. Where a US state privacy law applies, Perfentrix will provide the rights, notices and mechanisms required by that law.

  • Depending on applicable law, rights may include access, correction, deletion, portability, appeal and opt-out rights.
  • Where required, we may provide mechanisms relating to targeted advertising, sale or sharing of personal information, profiling or certain uses of sensitive information.
  • Where applicable, required universal opt-out preference signals will be handled according to the relevant law and technical requirements.
  • State-specific supplements or notices may be published where necessary.

19.5 Canada

Where Canadian privacy law applies, including PIPEDA or applicable provincial legislation, Perfentrix will address applicable requirements concerning accountability, identified purposes, consent, collection limitation, use/disclosure/retention, safeguards, openness, access, correction and complaints.

19.6 Australia

Where Australian privacy law applies, including the Privacy Act 1988 and Australian Privacy Principles, Perfentrix will handle personal information in accordance with applicable requirements relating to collection, use, disclosure, access, correction, security, complaints and overseas disclosures.

19.7 New Zealand

Where the New Zealand Privacy Act 2020 applies, Perfentrix will comply with applicable privacy principles, including requirements relating to collection, use, disclosure, security, access, correction, complaints and overseas disclosure.

19.8 Middle East

Perfentrix may serve clients and users throughout the Middle East. Applicable local privacy and data-protection laws will be assessed based on the relevant processing and jurisdiction.

  • United Arab Emirates: where applicable, Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data and relevant implementing requirements.
  • Saudi Arabia: where applicable, the Personal Data Protection Law, its Implementing Regulations and applicable rules concerning processing, direct marketing and transfers outside the Kingdom.
  • Qatar, Bahrain, Kuwait, Oman and other Middle Eastern jurisdictions: applicable national, sectoral, financial, free-zone or other privacy requirements may apply depending on the service and processing.

19.9 Asia-Pacific

Perfentrix may serve businesses across Asia-Pacific. Depending on the circumstances, applicable requirements may include privacy laws and regulations in Singapore, Malaysia, Japan, South Korea, Hong Kong, Indonesia, Thailand, the Philippines, Vietnam, China, India, Australia, New Zealand and other jurisdictions.

Perfentrix does not represent that a single APAC law applies across the region. Mandatory local requirements will be assessed based on the location of the individual, nature of the processing, services offered, contractual arrangements and applicable territorial rules.

19.10 Africa

Perfentrix may serve African markets. Where applicable, processing may be subject to national or regional privacy frameworks, including requirements in jurisdictions such as South Africa, Nigeria, Kenya, Egypt and other countries. Local mandatory requirements will prevail where applicable.

19.11 Latin America and Caribbean

Perfentrix may serve Latin American and Caribbean markets. Where applicable, processing may be subject to local privacy frameworks, including Brazil's Lei Geral de Proteção de Dados (LGPD) and other national or sector-specific laws.

20. Children's Privacy

Perfentrix is a B2B Marketing & Technology company and our website is not primarily directed at children. We do not knowingly collect children's personal information where doing so would violate applicable law. Where a jurisdiction imposes specific age or parental-consent requirements, those requirements will apply.

21. Recruitment and Candidate Information

Where you apply for a role, Perfentrix may process your name, contact details, CV/resume, employment history, education, skills, portfolio, references and other information necessary for recruitment.

Recruitment information may be used to assess applications, communicate with candidates, administer recruitment, maintain recruitment records, conduct lawful checks and comply with legal obligations. Additional candidate or employee privacy notices may apply where required.

22. Third-Party Websites

Our website may contain links to third-party websites. Perfentrix is not responsible for their content, security, availability, privacy practices or policies.

23. Business Communications and Records

We may retain communications, meeting records, proposals, contracts, service records and related business information for service delivery, quality assurance, administration, security, accounting, compliance, dispute resolution and legal purposes, subject to applicable law.

24. Changes to this Policy

Perfentrix may update this Policy to reflect changes in services, technology, business practices, legal requirements or processing activities. The revised Policy will be published with an updated Last Updated date. Where applicable law requires additional notice or consent, Perfentrix will follow those requirements.

25. Contact Us

Perfentrix Solutions Private Limited
RR Towers IVA 16 & 17, T.V.K Industrial Estate, Guindy, Chennai – 600032, Tamil Nadu, India.
Email: info@perfentrix.com
Website: www.perfentrix.com
Privacy Policy Version: 3.0
Last Updated: 29 August 2026