Loading...
Delveio Consulting
  • Home
  • Zoho
    • Zoho CRM
    • Zoho One
    • Zoho Books
    • Zoho Creator
  • Pipedrive
    • Pipedrive CRM
  • About
  • Case Studies
  • Blog
  • Contact
  • Home
  • Zoho
    • Zoho CRM
    • Zoho One
    • Zoho Books
    • Zoho Creator
  • Pipedrive
    • Pipedrive CRM
  • About
  • Case Studies
  • Blog
  • Contact
LEGAL

Privacy Policy

How Delveio collects, uses, retains and protects personal information.

Effective Date: 14 September 2026
Last Updated: 14 September 2026

Who We Are

Registered office: 3rd Floor, Hemisphere, Penha de Franc, Bardez, Goa 403521, India. Privacy contact: [email protected]. General contact: [email protected]. Telephone: +91 98349 25569.

Scope and Our Different Roles

This policy covers personal information Delveio processes for its own purposes through its website, enquiries, marketing, client administration, communications, billing and business operations.

When Delveio processes personal data contained in a client's systems solely to provide contracted services and under the client's documented instructions, the client generally determines the purposes of the processing and Delveio acts as a processor, service provider or equivalent role. That processing is additionally governed by the client's agreement and, where applicable, a Data Processing Agreement.

Delveio does not sell client customer information or use it for Delveio's own unrelated marketing, sales or commercial purposes.

Information We Collect

Depending on how you interact with us, we may collect name, job title, company, business email, business telephone number, company or billing address, enquiry and sales information, appointment information, project and contract information, correspondence, invoice and payment information, marketing preferences, and technical/usage information.

We may obtain information directly from you, from a client or authorised representative, from business partners or referrals, from public business sources, and from technology, scheduling, payment, analytics and advertising providers.

When information is collected from another source, the source may include one of those categories and the particular source may also be recorded in our business systems.

Purposes, Lawful Bases and Retention Criteria

We use enquiry information to respond, qualify requirements and take steps toward a potential engagement. Where UK/EU GDPR applies, the basis is generally pre-contractual steps and/or legitimate interests.

We use client/contact information to deliver services, communicate, manage projects and contracts, and provide support. The basis is generally performance of a contract and/or legitimate interests.

We use billing and payment information to invoice, reconcile payments, maintain accounts and comply with tax/legal obligations. The basis is contract and/or legal obligation.

We use business records to protect our business, prevent misuse, resolve disputes and establish or defend claims. The basis is generally legitimate interests and/or legal obligation.

We use marketing data for newsletters and service communications. For subscribers, we rely on consent where required. For business-to-business contacts, we may rely on legitimate interests where permitted by the applicable privacy and electronic-marketing rules.

We do not use automated decision-making that produces legal or similarly significant effects about website visitors or clients as part of the ordinary services described by this policy.

Client and Business Contact Records

We maintain information about clients, prospective clients and authorised contacts because it is necessary to communicate, provide and administer services, issue invoices, reconcile payments, support engagements, maintain business records and satisfy legal, accounting, tax and contractual requirements.

These records may be stored in Delveio's business systems, including relevant Zoho services.

Client Systems and Client Personal Data

Delveio may be authorised to access client CRM, accounting, ecommerce, support, marketing or other systems. Those systems may contain customer, employee, supplier, lead or other personal data.

We access such information only as necessary to perform the contracted services and under the client's instructions. We may configure, migrate, integrate, test, troubleshoot, report on or otherwise handle the data only within the agreed scope.

A project may require temporary exports or copies outside the client's system. We do this only when required for the work and where authorised or otherwise covered by the engagement. Temporary copies are deleted or returned when no longer required, subject to the client's instructions and lawful retention requirements.

Marketing and Electronic Communications

Delveio uses Zoho Campaigns for marketing communications. We may contact individuals who have subscribed and, where permitted, relevant existing or prospective business contacts.

For UK contacts, the requirements of the Privacy and Electronic Communications Regulations and UK GDPR depend on the type of subscriber and communication. We do not assume that a generic 'B2B' label removes all consent or objection requirements.

We maintain suppression/unsubscribe preferences and will respect applicable objections and opt-outs. Marketing recipients can unsubscribe through the mechanism in the communication or by contacting [email protected].

Cookies, Analytics and Advertising

Delveio uses Google Analytics, Google Tag Manager, Google Ads conversion tracking, Meta/Facebook technologies, LinkedIn Insight Tag, Microsoft Clarity and Zoho Bookings, as applicable to the website implementation.

Some storage/access technologies may fall within legal exceptions; others require consent. We will apply the rules applicable to the technology and jurisdiction rather than treating all cookies as one category.

Our Cookie & Tracking Policy describes the technologies and the consent/preference framework. The website must be configured so technologies requiring consent are not activated before that consent.

Recipients and Service Providers

Personal information may be processed by service providers used for CRM/business operations, accounting, marketing, scheduling, website hosting, analytics, advertising, communications and payments, including relevant Zoho services, WordPress/hosting providers, Google, Meta, LinkedIn, Microsoft, Razorpay and PayPal.

Some providers act as processors/service providers for Delveio; others may be independent controllers for their own services. We use contractual and organisational safeguards appropriate to the relationship.

International Transfers

Delveio is based in India, so information may be processed in India and other countries where Delveio or relevant service providers operate.

Where a transfer is restricted under applicable UK/EU or other law, the parties will use an applicable lawful transfer mechanism. For EU/EEA transfers this may include the 2021 EU Standard Contractual Clauses. For UK restricted transfers this may include the UK International Data Transfer Agreement or UK Addendum, as applicable.

For client processing, the DPA and any incorporated transfer clauses govern the transfer arrangement. The public privacy notice does not substitute for a required contractual transfer mechanism.

Security

Delveio maintains reasonable technical and organisational measures appropriate to the risks of processing, including access controls, authentication, limited access, confidentiality obligations, secure systems and incident handling procedures.

We do not claim that any system or transmission method is completely secure.

Retention

We retain personal information for as long as reasonably necessary for the relevant purpose, unless a longer period is required or permitted by law.

Client/contact records may be retained while the business relationship is active and afterwards where reasonably necessary for accounting, tax, legal, contractual, security or dispute purposes.

Financial records are retained in accordance with applicable accounting and tax requirements.

Temporary project exports and copies are not retained indefinitely merely because they were created during an engagement. They are deleted or returned when no longer required, subject to lawful retention.

Where no fixed retention period is stated, we consider the purpose and sensitivity of the information, the likelihood and impact of claims, continuing business need, legal obligations, contractual requirements and our ability to achieve the purpose without retaining the information.

Your Rights

Depending on applicable law, you may have rights to access, correction, deletion, restriction, objection, portability, withdrawal of consent and objection to direct marketing.

We will verify identity where reasonably necessary. Requests relating to personal data that we process only for a client may need to be directed to that client; we will assist as required by the DPA and applicable law.

Where UK GDPR or applicable UK data-protection law provides a right to complain, you may complain to the Information Commissioner's Office. Where EU/EEA law applies, you may complain to your relevant supervisory authority.

UK and EU/EEA Considerations

Where UK or EU/EEA data-protection law applies, Delveio will provide the transparency, lawful-basis information, processor arrangements, rights handling and transfer safeguards required for the relevant processing.

Because Delveio is established outside the UK and EU/EEA, whether a representative is required depends on the nature, regularity, scale and risk of the relevant processing and any applicable exemption. This is assessed as part of Delveio's compliance arrangements rather than assumed from geography alone.

Canada and United States

Canadian privacy requirements may include federal and provincial laws depending on the activities and location. Delveio will apply applicable requirements and contractual safeguards where relevant.

US privacy obligations vary by state and legal thresholds. Where a state privacy law applies to our processing, Delveio will provide the rights and disclosures required by that law. Delveio does not sell client customer information.

India

Delveio will comply with Indian data-protection requirements that apply to its processing, including the Digital Personal Data Protection Act, 2023 and applicable provisions of the Digital Personal Data Protection Rules, 2025 as they come into force.

Children

Our website and services are intended for businesses and professionals. We do not knowingly seek to collect children's personal information through our ordinary business activities.

Changes

We may update this policy when our processing, systems, services or legal obligations change. The current version and Last Updated date will be published on this website.

Contact

Privacy: [email protected] General: [email protected] Delveio Consulting Private Limited 3rd Floor, Hemisphere, Penha de Franc, Bardez, Goa 403521, India Telephone: +91 98349 25569

Delveio Consulting

Services

  • Zoho CRM
  • Zoho One
  • Zoho Books
  • Zoho Creator
  • Pipedrive CRM

Company

  • About Us
  • Case Studies
  • Blog
  • Contact

Legal

  • Privacy Policy
  • Cookie & Tracking Policy
  • Terms & Conditions