HomePrivacy Policy

Privacy Policy

Last updated: June 27, 2026  ·  Effective: June 27, 2026

At Troycode Cyber Security, your privacy is fundamental to everything we do. As a cybersecurity company, we hold ourselves to the highest standard of data protection. This Privacy Policy explains what personal information we collect, why we collect it, how we use and protect it, and your rights regarding your data. We comply with the Information Technology Act, 2000 and the Digital Personal Data Protection Act, 2023 (India).

1Information We Collect

We collect information in the following ways:

1.1 Information You Provide Directly

  • Contact details: Name, email address, phone number when you fill out our contact or consultation forms.
  • Service-specific information: For Fake Loan App Support — the name of the app, your login number, and details of the harassment you have experienced. For Device/Network Scans — device details and access credentials (handled with strict confidentiality).
  • Payment information: Payment is processed by Razorpay. We do not store your card numbers, UPI IDs, or banking credentials. We receive only a payment confirmation and transaction ID.
  • Communications: Messages, emails, or WhatsApp communications you send us.

1.2 Information Collected Automatically

  • Usage data: Pages visited, time spent, referring URLs, browser type, and device type — collected via server logs and analytics.
  • IP address: Collected for security monitoring and fraud prevention.
  • Cookies: We use essential cookies for website functionality. See Section 9 for details.

1.3 Information from Third Parties

  • Payment confirmation data from Razorpay (transaction ID, payment status).
  • If you contact us via WhatsApp, your WhatsApp profile name and phone number.

2How We Use Your Information

We use your information only for the following purposes:

  • Service delivery: To provide the cybersecurity services you have purchased, including contacting you, conducting assessments, and delivering reports.
  • Communication: To respond to your enquiries, provide updates on your service, and send important notices.
  • Payment processing: To verify payment and maintain billing records.
  • Security and fraud prevention: To protect our website and services from unauthorised access and abuse.
  • Legal compliance: To comply with applicable laws, regulations, and court orders.
  • Service improvement: To understand how our services are used and improve them. This is done using aggregated, anonymised data only.

We do not sell, rent, or trade your personal information to any third party for marketing purposes. Ever.

3How We Share Your Information

We share your information only in the following limited circumstances:

  • Service providers: Trusted third-party providers who assist in delivering our services (e.g., Razorpay for payments, email service providers for transactional emails). These providers are contractually bound to protect your data and may not use it for any other purpose.
  • Law enforcement (with your consent): When you engage our Fake Loan App Support service, we may assist you in filing complaints with cyber crime authorities. Any information shared with authorities is done with your explicit consent and on your behalf.
  • Legal requirements: If required by a valid court order, subpoena, or applicable law, we may disclose your information. We will notify you of such requests where legally permitted.
  • Business transfers: In the event of a merger, acquisition, or sale of assets, your data may be transferred. We will notify you before your data is transferred and becomes subject to a different privacy policy.

4Data Security

As a cybersecurity company, data security is our core competency. We implement the following measures to protect your information:

  • Encryption: All data transmitted between your browser and our servers is encrypted using TLS/SSL.
  • Access controls: Access to personal data is restricted to team members who need it to deliver your service, under strict confidentiality obligations.
  • Secure storage: Personal data is stored on secured servers with access logging and monitoring.
  • No card data storage: We never store payment card numbers, CVVs, or banking credentials. All payment processing is handled by Razorpay's PCI-DSS certified infrastructure.
  • Regular security reviews: We conduct periodic security assessments of our own systems.

Despite these measures, no system is 100% secure. In the event of a data breach that affects your personal information, we will notify you within 72 hours of becoming aware of it, as required by applicable law.

5Data Retention

We retain your personal information only for as long as necessary:

  • Service records: Retained for 3 years after service completion to handle any follow-up queries or disputes.
  • Payment records: Retained for 7 years as required by Indian financial regulations.
  • Communication records: Retained for 2 years after your last interaction with us.
  • Security scan data: Device and network assessment data is deleted within 30 days of report delivery, unless you request otherwise.

You may request earlier deletion of your data (subject to legal retention requirements) by contacting us at [email protected].

6Your Rights

Under the Digital Personal Data Protection Act, 2023 and applicable Indian law, you have the following rights:

  • Right to access: Request a copy of the personal data we hold about you.
  • Right to correction: Request correction of inaccurate or incomplete personal data.
  • Right to erasure: Request deletion of your personal data, subject to legal retention requirements.
  • Right to withdraw consent: Where processing is based on consent, withdraw it at any time. This will not affect the lawfulness of processing before withdrawal.
  • Right to grievance redressal: Lodge a complaint with us or with the Data Protection Board of India.

To exercise any of these rights, contact us at [email protected]. We will respond within 30 days.

7Children's Privacy

Our services are not directed to individuals under the age of 18. We do not knowingly collect personal information from minors. If you believe we have inadvertently collected information from a minor, please contact us immediately at [email protected] and we will delete it promptly.

8Third-Party Links

Our website may contain links to third-party websites (such as cybercrime.gov.in, rbi.org.in, or social media platforms). We are not responsible for the privacy practices of these websites. We encourage you to review their privacy policies before providing any personal information.

9Cookies

We use the following types of cookies:

  • Essential cookies: Required for the website to function (session management, security). These cannot be disabled.
  • Analytics cookies: Used to understand how visitors use our website. These are only set with your consent via our cookie consent banner.

You can manage cookie preferences through your browser settings. Disabling non-essential cookies will not affect your ability to use our services.

10Changes to This Policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last Updated" date. For material changes, we will notify you via email or a prominent notice on our website. Continued use of our services after changes are posted constitutes your acceptance of the revised policy.

11Contact and Grievance Officer

For any privacy-related queries, requests, or complaints, please contact our Grievance Officer:

Troycode Cyber Security

Email: [email protected]

Phone: +91 80758 11884

Website: https://troycode.com

We aim to respond to all privacy-related requests within 30 days.