Legal

    Privacy Policy

    This Privacy Policy explains how Prolixis (OPC) Private Limited collects, uses, discloses, retains, and protects personal data when you visit prolixislabs.com, contact us, subscribe to our newsletter, apply for a role, or use our products and services.

    Effective date: 9 August 2026Last updated: 9 August 2026

    01Who we are

    Prolixis (OPC) Private Limited (“Prolixis”, “we”, “us”, “our”) is a company incorporated in India, with its operating address in Lucknow, Uttar Pradesh, India. We build infrastructure for intelligent software, including Contivon (a persistent memory API) and Atlas (a reasoning runtime).

    For the purposes of the Digital Personal Data Protection Act, 2023 (India) we act as a Data Fiduciary for personal data we collect through our website and direct relationships, and as a Data Processor for personal data our customers route through our products. Where the EU/UK GDPR applies, the equivalent roles are Controller and Processor.

    Contact for all privacy matters: prolixisofficial@gmail.com.

    02Scope of this policy

    This policy covers the prolixislabs.com website, our documentation, marketing communications, recruitment process, customer support channels, and the administrative interfaces of our products. It does not cover third-party websites we link to, which operate under their own policies.

    Where a signed agreement, order form, or Data Processing Addendum exists between you and Prolixis, that agreement governs data processed under it, and this policy applies only to the extent it does not conflict.

    03Personal data we collect

    We collect only what we need for a clearly identified purpose. Depending on how you interact with us, this may include:

    • Identity and contact data — name, email address, company, role, and any details you include in a message or form.
    • Newsletter data — name and email address, plus subscription status and delivery events such as opens, bounces, and unsubscribes.
    • Recruitment data — CV or résumé, work history, portfolio links, and any information you submit with an application.
    • Commercial data — billing contact, company details, and transaction records where you become a customer.
    • Product and account data — account identifiers, workspace configuration, API keys, and audit logs generated by your use of our products.
    • Customer content — data you or your end users submit into our products for processing or storage. We handle this strictly on your instructions.
    • Technical data — IP address, device and browser type, operating system, referring URL, pages viewed, and timestamps.

    We do not knowingly collect data from children under the age of 18, and we do not seek to collect special or sensitive categories of personal data through our website.

    04How we collect it

    We collect personal data directly from you when you submit a form, email us, subscribe, or register for a product; automatically through server logs and privacy-respecting analytics when you browse the site; and from third parties such as our hosting, email, and payment providers acting on our behalf.

    05Why we use your data and our lawful basis

    We process personal data for the following purposes:

    • To respond to enquiries and provide support — necessary to take steps at your request prior to or under a contract.
    • To deliver, maintain, secure, and improve our products and website — legitimate interests, or performance of a contract where you are a customer.
    • To send newsletters and product updates — your consent, which you may withdraw at any time.
    • To evaluate job applications — steps taken at your request prior to entering an employment relationship.
    • To detect, prevent, and investigate abuse, fraud, or security incidents — legitimate interests and legal obligation.
    • To meet accounting, tax, and other statutory obligations — legal obligation.

    We do not sell personal data, and we do not use customer content to train foundation models.

    06Cookies and analytics

    Our website uses a small number of cookies and similar technologies. Strictly necessary cookies keep the site functioning and remember interface preferences such as theme. Analytics technologies help us understand aggregate traffic patterns, which pages are read, and where visitors arrive from.

    Where advertising or non-essential analytics technologies are used, they are loaded only where permitted and may set cookies used for frequency capping and measurement. You can control or delete cookies in your browser settings; disabling strictly necessary cookies may degrade parts of the site.

    07Advertising

    We may display advertising on editorial pages such as our blog. Where third-party ad technology is used, that provider may set or read cookies and device identifiers to serve and measure ads. Those providers act as independent controllers for that activity and process data under their own privacy policies.

    You can opt out of personalised advertising through your Google Ads Settings, your device-level advertising controls, or industry opt-out pages such as youradchoices.com and youronlinechoices.eu.

    08Sharing and disclosure

    We share personal data only where necessary, and only with:

    • Service providers who host our infrastructure, send our email, process payments, or provide analytics, under contract and on our instructions.
    • Professional advisers such as auditors, accountants, and lawyers, bound by confidentiality.
    • Authorities or third parties where disclosure is required by law, court order, or to protect rights, safety, and the integrity of our services.
    • An acquirer or successor in the event of a merger, acquisition, or reorganisation, subject to this policy continuing to apply.

    A current list of subprocessors used for a specific product is available on request to prolixisofficial@gmail.com.

    09International transfers

    Our providers may process data outside your country, including in the United States and the European Union. Where personal data is transferred internationally we rely on appropriate safeguards, such as Standard Contractual Clauses or an adequacy decision, and on contractual confidentiality and security commitments with each provider. Regional data residency can be arranged for enterprise engagements.

    10Retention

    We keep personal data only as long as needed for the purpose it was collected, or as required by law.

    • Enquiry and support correspondence — up to 24 months from the last interaction.
    • Newsletter data — until you unsubscribe, plus a suppression record so we do not contact you again.
    • Recruitment data — up to 12 months after a decision, unless you ask us to keep it longer for future roles.
    • Customer content — for the term of the agreement and for the deletion window stated in it.
    • Financial and statutory records — for the period required under Indian tax and company law.

    11Security

    We apply technical and organisational measures appropriate to the risk, including encryption in transit and at rest across managed services, role-based access on a least-privilege basis, audit logging of administrative actions, tenant isolation for product workloads, and periodic review of access and dependencies.

    No system can be guaranteed to be perfectly secure. Our compliance programme is developing and certification work is in progress; we do not claim certifications we have not completed. If you believe you have found a vulnerability, please write to prolixisofficial@gmail.com with the subject line “Security”.

    12Your rights

    Subject to applicable law, you may request:

    • Access to a summary of the personal data we hold about you and how it is processed.
    • Correction, completion, or updating of inaccurate or incomplete data.
    • Erasure of personal data where it is no longer required and no legal basis to retain it applies.
    • Withdrawal of consent, at any time, where processing relies on consent.
    • Portability of data you provided to us, in a structured, commonly used format.
    • Objection to or restriction of certain processing, including direct marketing.
    • Nomination of another individual to exercise your rights in the event of death or incapacity, as provided under Indian law.

    Send requests to prolixisofficial@gmail.com. We will verify your identity and respond within the timelines set by applicable law, typically within 30 days. If you are unsatisfied with our response, you may complain to the Data Protection Board of India or your local supervisory authority.

    13Grievance officer

    In accordance with the Information Technology Act, 2000 and the rules made thereunder, and the Digital Personal Data Protection Act, 2023, grievances may be addressed to the Grievance Officer, Prolixis (OPC) Private Limited, Lucknow, Uttar Pradesh, India, at prolixisofficial@gmail.com. We acknowledge grievances within 24 hours and aim to resolve them within 15 days.

    14Changes to this policy

    We may update this policy to reflect changes to our services, technology, or legal obligations. Material changes will be announced on this page with a revised effective date, and where required we will seek fresh consent. Continued use of the website or our services after an update constitutes acceptance of the revised policy.

    Questions about this document

    Write to prolixisofficial@gmail.com with the subject line “Legal — Privacy Policy”. Postal address: Prolixis (OPC) Private Limited, Lucknow, Uttar Pradesh, India.