Legal

Privacy Policy

Effective 4 August 2026 · Version 1.0

Propensity is a data intelligence platform serving enterprise clients in India. This policy explains what information we hold, why we hold it, where it is kept, and how a person or a business can ask us to change or remove it.

01Who we are

Propensity ("Propensity", "we", "us", "our") is a platform operated by Dimple Amit Pujara, trading as Pixel Byte Labs, a sole proprietorship with its principal place of business in Ahmedabad, Gujarat, India.

Under the Digital Personal Data Protection Act, 2023, the proprietor is the Data Fiduciary for the personal data described in this policy.

For anything in this policy, write to connect@propensity.in.

02What this policy covers

This policy applies to propensity.in, to the Propensity platform used by our own staff and by authorised client and partner personnel, and to the business records we process in the course of delivering our services.

It does not apply to any third-party website we link to, or to the separate agreements under which we deliver a client engagement — where a signed agreement or data processing addendum exists, that document governs.

03Information we process

Business records

We process information about businesses — entity name, registered and operating addresses, statutory identifiers, constitution, sector, and business contact details. This information is obtained from public registers and from licensed third-party data providers. Where a named individual appears, they appear in a professional capacity as a representative of that business.

Platform users

For each authorised user of the platform we hold a name, a work email address, a role, and a record of the actions they take in the system. Sign-in is handled by Google Firebase Authentication; we do not store passwords.

Technical information

Server and application logs record access times, request paths, and network addresses. These are used for security, fault diagnosis and audit.

What we do not process

04Why we process it, and on what basis

PurposeBasis
Identifying and prioritising businesses for a client engagement Legitimate business purpose; consent where required
Contacting a business about a relevant commercial proposition Legitimate business purpose; consent where required
Operating and securing the platform, and maintaining an audit trail Legitimate use and legal obligation
Meeting statutory, accounting and regulatory obligations Legal obligation

We process personal data in accordance with the Digital Personal Data Protection Act, 2023 and the rules made under it. Where the Act requires notice and consent, we give notice and obtain consent before processing.

05Where the information is held

Propensity runs on Google Cloud Platform in the Mumbai region (asia-south1), India. Data at rest and in transit is encrypted. We do not store client or business records outside India.

A small number of service providers necessarily process limited data to make the service work — cloud infrastructure and database hosting, authentication, and business email. Each is engaged under contract and may use the data only to provide the service to us.

06How long we keep it

07Sharing

We do not sell personal data, and we do not share it for third-party advertising.

We share information only with: the client for whom an engagement is being delivered; partner organisations performing work on our behalf under contract, limited to the records assigned to them; our service providers, as above; and any authority to whom disclosure is required by law.

If the business is reorganised, incorporated into a company, merged or transferred, personal data may transfer with it. It remains subject to this policy, or to a successor policy no less protective, and we will reissue this document with a new version and effective date.

08Security

Access is granted on a least-privilege basis and enforced in the database itself rather than only in the application, so a fault in one layer does not widen access in another. Every action that changes a record is recorded against a named identity in an append-only audit trail. Accounts are disabled rather than deleted, and access is reviewed periodically.

No system is beyond compromise. If a breach occurs that is likely to affect you, we will notify you and the Data Protection Board of India as required by law.

09Your rights

Subject to the Digital Personal Data Protection Act, 2023, you may ask us to:

Write to connect@propensity.in. We may need to verify your identity before acting, and we will respond within the period the law allows.

Asking not to be contacted

If you or your business would rather not hear from us, write to connect@propensity.in with the business name. We will record the request and honour it. You do not need to give a reason, and you will not be asked to confirm it a second time.

10Cookies and this website

This website sets no cookies and runs no analytics, advertising or tracking scripts. Typeface files are requested from Google Fonts, which means your browser makes a request to fonts.googleapis.com and fonts.gstatic.com and those services see your network address. Nothing else on the page contacts a third party.

11Changes to this policy

If we change this policy we will update the version and effective date above. Material changes affecting people whose data we hold will be communicated directly where we have a means of doing so.

12Grievance Officer

In accordance with the Digital Personal Data Protection Act, 2023, complaints about the handling of personal data may be addressed to our Grievance Officer:

Dimple Amit Pujara
Grievance Officer, Propensity
connect@propensity.in
Ahmedabad, India

If you are not satisfied with our response, you may complain to the Data Protection Board of India.