Privacy Policy
This Privacy Policy explains how Portfolix Enterprise Pvt Ltd collects, uses, discloses, and safeguards your information when you use portfolix.tech and our related services.
1. Introduction
Portfolix Enterprise Pvt Ltd (“Company,” “we,” “us,” or “our”) is committed to protecting your privacy and ensuring you have a positive experience on our website and services (collectively, the “Services”). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website portfolix.tech and use our services.
Please read this Privacy Policy carefully. If you do not agree with our policies and practices, please do not use our Services.
2. Information We Collect
2.1 Information You Provide Directly
Account Registration Information
- Name, email address, phone number, company name
- Username and password
- Professional profile information
- Portfolio or project details
Communication Information
- Messages, inquiries, and support requests
- Feedback, testimonials, and reviews
- Newsletter subscriptions
- Event registration details
Payment Information
- Billing address and payment method details (processed securely through third-party payment processors)
- Transaction history and invoices
- Subscription and usage data
Content You Create
- Files, documents, images, and media uploaded to our platform
- Project data, portfolios, and work samples
- Communications within the platform
2.2 Information Collected Automatically
Technical Information
- IP address and device identifiers
- Browser type, version, and language preferences
- Operating system and device information
- Referring/exit pages and URLs
- Pages visited, time spent, and interaction data
Cookies and Tracking Technologies
- Session cookies for functionality
- Persistent cookies for preference storage
- Web beacons and pixel tags
- Analytics and performance tracking
Meta Pixel and Facebook Tracking
- Conversion events and user interactions
- Purchase and engagement data
- Custom audience creation data
- Retargeting and advertising information
- Standard pixel events: PageView, ViewContent, AddToCart, Purchase
Location Data
- Country, state, and city information (based on IP address)
- GPS data (only with explicit consent)
2.3 Information from Third Parties
- Social media platforms (if you link accounts)
- Google Analytics and similar services
- Payment processors and banking partners
- Customer support platforms and ticketing systems
- Third-party integrations and APIs
3. Legal Basis for Processing
3.1 India - Digital Personal Data Protection Act (DPDP), 2023
- Consent: Where you have provided explicit consent
- Performance of Contract: To fulfill our contractual obligations to you
- Legal Obligation: To comply with applicable Indian laws and regulations
- Legitimate Interests: To improve services, prevent fraud, and ensure security
3.2 European Union - GDPR
- Consent: Express consent for non-essential processing
- Contractual Performance: Necessary to provide services
- Legal Obligation: Compliance with EU laws
- Legitimate Interests: Marketing, fraud prevention, service optimization
3.3 California - CCPA
- Consumer Rights: Right to know, delete, and opt-out of sale
- Category Disclosure: Specific categories of personal information collected
- Purpose Limitation: Data used only for disclosed purposes
4. How We Use Your Information
4.1 Service Delivery
- Creating and maintaining your account
- Processing transactions and payments
- Providing customer support and technical assistance
- Delivering requested services and features
- Sending account-related notifications
4.2 Marketing and Communication
- Sending promotional emails and newsletters (with consent)
- Informing you about service updates and new features
- Conducting surveys and gathering feedback
- Personalizing content based on your interests
- Retargeting through Meta Pixel and advertising platforms
4.3 Analytics and Improvement
- Analyzing user behavior and service usage
- Identifying trends and improving user experience
- Testing new features and functionality
- Measuring marketing campaign effectiveness
- Generating anonymized statistical reports
4.4 Security and Compliance
- Preventing fraud, abuse, and unauthorized access
- Detecting and addressing security threats
- Enforcing our Terms of Service
- Complying with legal obligations and court orders
- Protecting rights, privacy, and safety
4.5 Meta Pixel Tracking
- Tracking website conversions and user interactions
- Creating custom and lookalike audiences
- Retargeting website visitors on Facebook/Instagram
- Measuring ad campaign performance
- Optimizing ad delivery and targeting
5. Sharing of Information
5.1 We Do NOT Sell Personal Data
We do not sell, trade, or rent your personal information to third parties for their direct marketing purposes.
5.2 Information Shared With
Service Providers
- Cloud hosting providers (AWS, Google Cloud)
- Email service providers
- Payment processors (Stripe, Razorpay)
- Analytics platforms (Google Analytics)
- Customer support tools
Meta/Facebook
- Website conversions and engagement data via Meta Pixel
- Standard and custom event data
- Audience creation and retargeting data
- Hashed email addresses (where applicable)
Legal Requirements
- Law enforcement and government agencies (with valid legal process)
- Court orders and regulatory investigations
- Protection of legal rights and safety
Business Transfers
- If we merge, acquire, or sell assets
- Your information may be transferred as part of that transaction
- You will be notified of any material changes
5.3 Information NOT Shared
- Payment card details are never stored on our servers
- Passwords are encrypted and never shared
- Personal communications are kept confidential
- User-generated content remains under your control
6. Data Retention
6.1 Retention Periods
| Data Type | Retention Period | Reason |
|---|---|---|
| Account Data | Duration of account + 30 days post-closure | Service provision & legal compliance |
| Transaction Records | 7 years | Financial/tax regulations (India) |
| Support Communications | 2 years | Customer service & dispute resolution |
| Marketing Data | Until consent revoked | Marketing with consent |
| Analytics Data | 14 months | Service improvement & analysis |
| Meta Pixel Data | Aggregated after 180 days | Compliance with Meta policies |
| Log Files | 90 days | Security monitoring |
| Backup Data | 30 days | Data recovery purposes |
6.2 Data Deletion
You can request deletion of your personal data at any time (subject to legal retention obligations). We will respond to deletion requests within 30 days.
7. Your Privacy Rights
7.1 India (DPDP Act, 2023)
- Access: Request copy of your personal data
- Correction: Update inaccurate information
- Deletion: Request removal of your data (Right to be Forgotten)
- Data Portability: Receive data in structured format
- Withdraw Consent: Opt-out of consent-based processing
- Lodge Complaint: File complaint with Data Protection Board of India
7.2 European Union (GDPR)
- Access: Receive confirmation and copy of your data
- Rectification: Correct inaccurate data
- Erasure: Request deletion ("Right to be Forgotten")
- Restrict Processing: Limit how we use your data
- Portability: Obtain data in machine-readable format
- Object: Oppose processing for direct marketing
- Automated Decision Making: Request human review
- Lodge Complaint: Contact your local Data Protection Authority
7.3 California (CCPA)
- Know: Request what personal information is collected
- Delete: Request deletion of collected data
- Opt-Out: Decline sale of personal information
- Non-Discrimination: Not be discriminated against for exercising rights
- Authorized Agent: Have an agent submit requests on your behalf
7.4 How to Exercise Your Rights
Submit requests to: privacy@portfolix.tech
Include in your request:
- Your name and email address
- Specific right you're exercising
- Clear description of requested action
- Proof of identity (if required)
Response Timeline: We will respond within 30 days (or 45 days for GDPR, as permitted).
8. Meta Pixel and Facebook Advertising
8.1 Meta Pixel Implementation
- Track user interactions and conversions
- Create audiences for retargeting
- Measure advertising effectiveness
- Optimize ad delivery
- Build lookalike audiences
8.2 Data Shared with Meta
- Page views and website behavior
- Conversion events (purchases, sign-ups, etc.)
- Email addresses (hashed and encrypted)
- User device and browser information
- IP addresses and cookie identifiers
- Custom events and parameters
8.3 Meta's Data Usage
Meta may use this data to:
- Display targeted advertisements
- Create audience segments
- Measure campaign performance
- Improve their services
- Share with advertisers (in aggregated form)
8.4 Your Control Over Ads
- Opt out of personalized advertising in Facebook settings
- Use browser tools to manage cookies
- Visit https://www.aboutads.info/ to opt-out
- Adjust ad preferences in Meta Ad Center
8.5 GDPR and Meta Pixel
- Explicit consent before tracking (EU)
- Meta Consent Mode implemented
- Clear opt-out mechanisms
- Documented legitimate interests
- Updated Meta Data Processing Addendum
8.6 Children's Privacy
We do not knowingly enable Meta Pixel tracking for users under 13 years old. Parents/guardians may request deletion.
9. Cookies and Tracking Technologies
9.1 Types of Cookies We Use
| Cookie Type | Purpose | Duration |
|---|---|---|
| Essential/Functional | Site navigation, login, security | Session/1 year |
| Analytics | User behavior tracking, performance | 2 years |
| Marketing | Retargeting, audience creation | 6-12 months |
| Preference | Language, display settings | 1-2 years |
9.2 Third-Party Cookies
We allow cookies from:
- Google Analytics
- Meta Pixel
- Google Ads
- Customer support tools
- YouTube / Google Maps embeds
9.3 Cookie Management
- Disable cookies in browser settings
- Use browser “Do Not Track” (we honor these)
- Clear cookies from your device
- Use privacy extensions
- Opt-out via aboutads.info or youronlinechoices.eu
9.4 Cookie Consent
- Essential cookies do not require consent
- EU users see explicit consent banners
- Consent required for non-essential cookies
- You may withdraw consent anytime
10. Third-Party Links and Services
We are not responsible for practices of services like Stripe, Google Analytics, Meta, etc.
11. Data Security
We use industry-standard security including:
- SSL/TLS encryption
- AES-256 encryption for stored data
- Bcrypt/Argon2 password hashing
- 2FA, WAF, DDOS protection
- Security audits and compliance
12. Data Breach Notification
We notify affected users within 72 hours of confirmed breaches.
13. Children's Privacy
We do not knowingly collect info from children under 13.
14. International Data Transfers
We follow appropriate mechanisms including SCCs, DPDP Act, GDPR compliance.
15. Automated Decision Making
You may request human review of automated decisions.
16. Compliance with Laws
We comply with DPDP (India), GDPR, CCPA, and other global privacy laws.
17. California Privacy Rights
CCPA rights including access, deletion, opt-out, and non-discrimination.
18. European Rights (GDPR)
Access, portability, erasure, rectification, objection, etc.
19. Data Protection Officer
Email: dpo@portfolix.tech
20. Updates to This Policy
We may update this policy and will notify users accordingly.
21. Jurisdiction-Specific Addenda
Includes India DPDP, GDPR, UK, Brazil, Singapore, Australia, Japan.
22. Contact Us
Email: privacy@portfolix.tech