Privacy Policy & Enterprise Data Protection
Effective Date: January 1, 2025 · Last Updated: March 2025. IYX Technology (IYXDEV) recognizes that proprietary enterprise data and intellectual property are our clients' most valuable assets. We adhere to the highest security, confidentiality, and data minimization standards across all software and AI engineering engagements.
Core Guarantee: Zero Public Foundation Model Training
When engineering custom software platforms, private retrieval-augmented generation (RAG) pipelines, or autonomous AI agents, IYX Technology guarantees: We will NEVER use client proprietary data, codebases, workflows, or documents to train or fine-tune any public foundation models or third-party AI models. All workloads execute strictly within client-isolated environments with zero retention by upstream foundation models.
1. Information We Collect
We practice strict data minimization and only collect information essential for business consultation and engineering delivery:
- Inquiry & Consultation Data: Name, work email address, phone/WhatsApp (optional), company context, and project scope details submitted via our contact forms.
- Technical & Security Telemetry: IP addresses, User-Agent strings, and submission timestamps used strictly for rate limiting, anti-spam heuristics, and audit compliance.
- Client Preferences: Local cookies (
preferred_locale) to persist your language choice without cross-site tracking.
2. Confidentiality & Non-Disclosure Agreements (NDA)
We execute mutual Non-Disclosure Agreements (NDAs) before reviewing any client internal architectures, source code, or proprietary workflows.
All case studies presented on this website are thoroughly sanitized, desensitized, and anonymized under strict NDA provisions. Exact client identifiers, business metrics, and trade secrets are never publicly disclosed.
3. Data Security & Encryption Standards
All communications and web requests are encrypted in transit via industry-standard TLS 1.3. Stored database credentials and sensitive operational records are encrypted at rest using AES-256. Access to client staging clusters is restricted through zero-trust access policies.
4. Client Data Rights & Right to Erasure
In accordance with GDPR, CCPA, and international data governance frameworks, you maintain the following rights:
- Access & Rectification: You may request a complete copy of the business inquiry records we retain regarding your organization.
- Right to Erasure (Deletion): Upon project completion or consultation termination, you can request immediate and permanent purge of all consultation telemetry and contact records.
5. Legal & Privacy Inquiries
For privacy inquiries, DPO communications, or data deletion requests, please contact our legal team at:
Our engineering and legal team will confirm identity and respond within 48 business hours.