Executive Summary & Key Commitments
- Zero Unlawful Sale: Techtivo Spire does not sell, rent, or trade your personal information to third-party data brokers under any circumstances.
- Enterprise Encryption: All data transmitted to or from our global platforms is encrypted using TLS 1.3 protocol and stored with AES-256 military-grade encryption at rest.
- Complete User Rights Control: You maintain full rights under GDPR and CCPA to request access, rectification, exportation, or deletion of your personal records at any time.
Data Controller Scope & Ownership
This Privacy and Data Protection Policy applies to all digital platforms, web portals, cloud services, software development frameworks, and enterprise consulting applications operated by Techtivo Spire Ltd. ("Techtivo Spire", "We", "Us", or "Our").
For the purposes of the General Data Protection Regulation (EU GDPR / UK GDPR) and applicable data privacy legislation, Techtivo Spire acts as the primary Data Controller for personal information collected through our official websites, client onboarding systems, and operational hubs in London, New York, and New Delhi. Where we process digital telemetry on behalf of enterprise clients via bespoke application builds, Techtivo Spire operates strictly as a Data Processor under specific Data Processing Agreements (DPAs).
Categories of Information We Collect
To deliver high-fidelity digital solutions and maintain enterprise platform security, we process information collected directly from users, automatically via network protocols, and through authorized partner integrations:
- Direct Identity & Contact Information: Name, professional email address, telephone number, job title, company name, billing details, and direct communications sent via inquiry forms.
- Technical & System Telemetry: IP addresses, browser specifications, operating system versions, device identification tokens, geographic location metrics (city/country level), referral URLs, and platform interaction timestamp logs.
- Account & Portal Authentication Data: Encrypted user credentials, multi-factor authentication tokens, session identifiers, and access permission records for client portals.
- Applied AI & System Usage Data: Anonymized interaction logs and model query telemetry generated during testing or usage of our custom AI/analytics integrations.
Legal Processing Bases Under GDPR
We rely on specific legal grounds under Article 6 of the EU GDPR to process your personal data legitimately:
2. Legitimate Interests: Processing necessary for enterprise security monitoring, fraud prevention, optimizing user experience, and managing B2B commercial relationships.
3. Explicit Consent: Processing conducted when you explicitly opt-in to marketing communications, cookie preference categories, or survey participation.
4. Statutory Compliance: Processing mandated by legal, tax, or regulatory obligations across operational jurisdictions.
Purpose of Data Usage
Collected data is utilized strictly for defined operational, analytical, and security purposes:
- Provisioning, maintaining, and scaling enterprise web applications and bespoke software solutions.
- Executing Statement of Work (SOW) deliverables, client communications, and administrative billing.
- Monitoring platform health, threat detection, DDoS mitigation, and intrusion prevention.
- Conducting aggregated business performance analytics to improve user interface design and software execution speeds.
- Complying with statutory audit trails and legal disclosure requests under lawful court orders.
Third-Party Data Sharing & Sub-Processors
Techtivo Spire does not sell or monetization user data. We share personal data only with vetted infrastructure sub-processors under strict contractual obligations enforcing GDPR-compliant data protection standards:
| Sub-Processor Category | Purpose of Processing | Data Jurisdiction |
|---|---|---|
| Cloud Infrastructure Providers (AWS / Cloudflare) | Global web hosting, CDN edge distribution, and DDoS shield protection | United States / EU Nodes |
| CRM & Enterprise Billing Partners | Client relationship management and invoice processing | United States / UK |
| Platform Analytics Engines | Anonymized traffic analysis and system performance monitoring | EU / Global Edge Nodes |
| Legal & Financial Auditors | Statutory compliance auditing and regulatory reporting | United Kingdom / EU |
Cross-Border Data Transfers
As an enterprise agency operating across global hubs, your information may be processed in data centers outside your home jurisdiction. Where personal data originating in the European Economic Area (EEA) or UK is transferred to non-adequate third countries, Techtivo Spire implements legal safeguards including:
- Standard Contractual Clauses (SCCs) approved by the European Commission.
- UK International Data Transfer Agreements (IDTAs).
- Data encryption in transit (TLS 1.3) and at rest (AES-256) ensuring zero unauthorized access during transit.
Data Retention Schedule
We retain personal data only for the period necessary to fulfill the purposes for which it was gathered, as outlined in our corporate retention matrix:
Prospective Sales Inquiries: Retained for 24 months from last active correspondence, after which records are purged.
System Log Telemetry: Retained for 90 days for security auditing before automated rotation and permanent erasure.
Your Data Subject Rights (GDPR & CCPA)
Depending on your jurisdiction, you hold legal rights regarding your personal records:
- Right to Access (SAR): Request copy of all personal records maintained by Techtivo Spire.
- Right to Rectification: Request correction of incomplete or inaccurate records.
- Right to Erasure ("Right to be Forgotten"): Request permanent deletion of records where processing is no longer required.
- Right to Restrict Processing: Request suspension of data processing under specific dispute circumstances.
- Right to Data Portability: Obtain your data in a structured, machine-readable JSON/CSV format.
- Right to Object & Opt-Out: Object to legitimate interest processing or opt out of direct marketing communications at any time.
To exercise any of these rights, please email our Data Protection Office at admin@ttspire.com. Verification of identity will be required prior to fulfilling requests.
Cybersecurity Standards & Safeguards
Techtivo Spire maintains rigorous physical, technical, and administrative controls designed to protect data against unauthorized access, loss, or alteration. Our infrastructure features strict multi-factor authentication (MFA), role-based access control (RBAC), continuous vulnerability scanning, and routine independent SOC-2 audit evaluations.
Cookies & Tracking Policy
We utilize essential cookies required for site navigation, security features, and performance optimization. Non-essential analytical or preferences cookies are activated only upon user consent via our Cookie Preference Banner. Users may manage or clear cookies through browser settings at any time.
Children's Privacy Protection
Our services and platforms are intended exclusively for commercial entities and individuals aged 18 and older. Techtivo Spire does not knowingly solicit or collect data from individuals under 16 years of age. If we become aware of inadvertent submission of minor data, we take immediate corrective steps to erase such records.
Policy Amendments & Contact Information
We update this Privacy Policy periodically to reflect technological advances, service modifications, or regulatory changes. The "Effective Date" at the top of this document indicates the latest revision timestamp.
Attn: Data Protection Officer (DPO)
Techtivo Spire Legal & Governance Division
Email: admin@ttspire.com
Website: https://ttspire.com