Privacy Policy
Last Updated: December 12, 2024
Quick Summary
We respect your privacy and are committed to protecting your personal data. This privacy policy complies with the EU General Data Protection Regulation (GDPR) and explains how we collect, use, and protect your information when you visit our website.
1. Introduction and Data Controller
This privacy policy explains how Ashvin P Kumar ("we," "our," or "us") collects, uses, and protects your personal information when you use our portfolio website (the "Service").
2. Information We Collect
2.1 Information You Provide
When you contact us through our contact form or email, we may collect:
- Name
- Email address
- Message content
- Any other information you choose to provide
2.2 Automatically Collected Information
When you visit our website, we may automatically collect:
- IP address
- Browser type and version
- Device information
- Pages visited and time spent on pages
- Referring website addresses
- Operating system
2.3 Cookies and Tracking Technologies
We use cookies and similar tracking technologies to enhance your experience. Cookies are small data files stored on your device. We use:
- Essential Cookies: Necessary for the website to function properly
- Analytics Cookies: Help us understand how visitors interact with our website
- Performance Cookies: Collect information about how you use our website
You can control cookies through your browser settings. Note that disabling cookies may affect website functionality.
3. Legal Basis for Processing (GDPR)
Under the GDPR, we process your personal data based on the following legal grounds:
- Consent (Article 6(1)(a)): When you voluntarily provide information through contact forms
- Legitimate Interests (Article 6(1)(f)): For website analytics, security, and improvement of our services
- Legal Obligation (Article 6(1)(c)): When required to comply with legal requirements
4. How We Use Your Information
We use the collected information for the following purposes:
- To respond to your inquiries and communications
- To provide and maintain our Service
- To improve our website and user experience
- To analyze website usage and trends
- To detect, prevent, and address technical issues
- To comply with legal obligations
- To protect our rights and interests
5. Data Sharing and Disclosure
We do not sell, trade, or rent your personal information to third parties. We may share your information only in the following circumstances:
- Service Providers: We may share data with trusted third-party service providers who assist us in operating our website (e.g., hosting providers, analytics services). These providers are bound by confidentiality agreements.
- Legal Requirements: We may disclose information if required by law, court order, or governmental authority.
- Protection of Rights: To enforce our Terms of Service or protect our rights, property, or safety, or that of others.
5.1 Third-Party Services
Our website may use the following third-party services:
- Vercel Analytics: For website performance monitoring
- Google Gemini API: For AI-powered features (if applicable)
- These services have their own privacy policies governing their use of your information.
6. International Data Transfers
Your information may be transferred to and processed in countries outside the European Economic Area (EEA), including India and the United States. We ensure that such transfers are protected by appropriate safeguards, such as:
- Standard Contractual Clauses approved by the European Commission
- Adequacy decisions by the European Commission
- Other legally approved transfer mechanisms
7. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes outlined in this privacy policy:
- Contact Form Data: Retained for up to 2 years or until you request deletion
- Analytics Data: Anonymized and retained for up to 26 months
- Cookies: Session cookies expire when you close your browser; persistent cookies as specified in cookie settings
After the retention period, we will securely delete or anonymize your personal data.
8. Your Rights Under GDPR
If you are a resident of the European Economic Area (EEA), you have the following rights:
Right to Access (Article 15)
You can request a copy of the personal data we hold about you.
Right to Rectification (Article 16)
You can request correction of inaccurate or incomplete data.
Right to Erasure (Article 17)
You can request deletion of your personal data ("right to be forgotten").
Right to Restriction (Article 18)
You can request limitation of processing of your data.
Right to Data Portability (Article 20)
You can request your data in a structured, commonly used format.
Right to Object (Article 21)
You can object to processing based on legitimate interests.
Right to Withdraw Consent (Article 7(3))
You can withdraw consent at any time where processing is based on consent.
Right to Lodge a Complaint (Article 77)
You can file a complaint with your local data protection authority.
To exercise any of these rights, please contact us at ashvin@obsidyne.com. We will respond to your request within 30 days.
9. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include:
- SSL/TLS encryption for data transmission
- Secure hosting infrastructure
- Regular security assessments
- Access controls and authentication
- Data encryption at rest where applicable
However, no method of transmission over the Internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
10. Children's Privacy
Our Service is not directed to individuals under the age of 16. We do not knowingly collect personal information from children under 16. If you are a parent or guardian and believe your child has provided us with personal data, please contact us, and we will delete such information.
11. Changes to This Privacy Policy
We may update this privacy policy from time to time to reflect changes in our practices or legal requirements. We will notify you of any material changes by:
- Updating the "Last Updated" date at the top of this policy
- Posting a notice on our website
- Sending an email notification (if you have provided your email address)
We encourage you to review this policy periodically.
12. Contact Us
If you have any questions, concerns, or requests regarding this privacy policy or our data practices, please contact us:
Email: ashvin@obsidyne.com
Data Protection Inquiries: Please mark your email with "GDPR Request" or "Privacy Inquiry"
Response Time: We aim to respond within 30 days
13. EU Representative and Supervisory Authority
If you are in the European Economic Area and have a complaint about our data practices, you have the right to lodge a complaint with your local data protection supervisory authority. You can find your local authority at: https://edpb.europa.eu/about-edpb/board/members_en
14. Cookie Management
You can manage your cookie preferences through your browser settings:
- Chrome: Settings → Privacy and security → Cookies and other site data
- Firefox: Options → Privacy & Security → Cookies and Site Data
- Safari: Preferences → Privacy → Cookies and website data
- Edge: Settings → Privacy, search, and services → Cookies