ZephyraTech

Legal &
Trust Center

Last updated: September 4, 2026

At ZephyraTech, we believe trust is built through transparency, responsible technology, privacy, and security.

"This page explains the key policies and practices that govern how we provide our products and services and how we handle information."

01. PRIVACY POLICY

ZephyraTech respects your privacy and is committed to protecting personal information.

We may collect information such as your name, email address, company details, account information, technical information, usage data, communications, and other information you provide when using our websites, applications, platforms, or services.

We use this information to provide and improve our services, manage accounts, process transactions, provide support, communicate with users, maintain security, prevent fraud and abuse, comply with legal obligations, and operate our business.

Where required by applicable law, we process personal information based on appropriate legal grounds such as contractual necessity, legitimate interests, legal obligations, or consent.

We may share information with trusted service providers, professional advisors, authorities where legally required, and parties involved in legitimate corporate transactions.

We apply reasonable technical and organizational safeguards to protect personal information.

Depending on applicable law, you may have rights to access, correct, delete, restrict, object to, or obtain a copy of your personal information.

Privacy Contact: [email protected]

02. TERMS OF USE

By accessing or using ZephyraTech websites, software, applications, APIs, platforms, or services, you agree to comply with our Terms of Use and applicable laws.

Users are responsible for maintaining the security of their accounts and using our services appropriately.

Our software, technology, designs, documentation, trademarks, and other intellectual property remain owned by ZephyraTech or its licensors unless otherwise agreed in writing.

Customer data and customer-owned materials remain subject to the ownership and licensing terms agreed with the customer.

Services, subscriptions, payments, cancellations, availability, support, warranties, liability, and termination may be governed by additional product-specific or customer agreements.

04. ACCEPTABLE USE POLICY

Users must use ZephyraTech services lawfully, responsibly, and without harming other users, systems, or infrastructure.

You must not use our services for:

  • Fraud or illegal activities.
  • Unauthorized access.
  • Malware or malicious activity.
  • Phishing or credential theft.
  • Spam or abusive communications.
  • Harassment or threats.
  • Security attacks.
  • Unauthorized vulnerability testing.
  • Circumventing access or security controls.
  • Intellectual property infringement.
  • Abusive automation or resource consumption.
  • Any activity prohibited by applicable law.

ZephyraTech may investigate suspected violations and may restrict, suspend, or terminate access where reasonably necessary.

05. DATA PROCESSING AGREEMENT (DPA)

For customers who use ZephyraTech services to process personal information on their behalf, ZephyraTech may act as a data processor or service provider.

Our Data Processing Agreement establishes requirements relating to:

  • Processing instructions.
  • Confidentiality.
  • Security measures.
  • Data protection obligations.
  • Subprocessors.
  • Security incidents.
  • Data subject requests.
  • International transfers.
  • Data retention and deletion.
  • Compliance assistance.

Where applicable, the DPA forms part of the contractual framework between ZephyraTech and the customer.

06. SECURITY & DATA PROTECTION

Security is an important part of how we design and operate our services.

Depending on the service, our security practices may include:

  • Access controls and authentication.
  • Least-privilege access.
  • Encryption where appropriate.
  • Logging and monitoring.
  • Vulnerability management.
  • Secure software development.
  • Security testing.
  • Backup and recovery procedures.
  • Employee security controls.
  • Incident response procedures.

We continuously review and improve our security practices based on the nature and risks of our services.

No system or method of transmission can be guaranteed to be completely secure.

Security Contact: [email protected]

07. REFUND / CANCELLATION POLICY

Refund and cancellation terms depend on the specific product, service, subscription, quotation, order, or customer agreement.

Where applicable, customers may cancel services according to the agreed cancellation terms.

Refund eligibility may depend on factors such as:

  • Service type.
  • Subscription period.
  • Payment status.
  • Cancellation timing.
  • Custom development work.
  • Work already completed.
  • Third-party costs.
  • Applicable contractual terms.

Custom development, deposits, completed services, third-party charges, or other specified fees may be non-refundable where agreed or permitted by law.

Any applicable refund will be processed according to the relevant agreement and payment-provider requirements.

08. SERVICE LEVEL AGREEMENT (SLA)

For applicable B2B and SaaS customers, service availability and support commitments may be governed by a separate Service Level Agreement.

An applicable SLA may define:

  • Service availability.
  • Planned maintenance.
  • Support hours.
  • Incident severity levels.
  • Response targets.
  • Escalation procedures.
  • Service credits.
  • Customer responsibilities.
  • SLA exclusions.

Specific uptime commitments and response targets will apply only where expressly agreed in the relevant contract or SLA.

09. INTELLECTUAL PROPERTY POLICY

ZephyraTech retains ownership of its pre-existing technology, software, source code, frameworks, systems, designs, documentation, trademarks, logos, and other intellectual property unless otherwise agreed.

Customers retain ownership of their own data, content, trademarks, and materials.

Ownership and licensing of custom-developed deliverables will be determined by the applicable quotation, Statement of Work, Master Services Agreement, or other written agreement.

Third-party software and open-source components remain subject to their respective licenses.

We respect third-party intellectual property rights and expect users and customers to do the same.

10. AI / RESPONSIBLE AI POLICY

Where our products or services use artificial intelligence, we aim to develop and use AI responsibly.

Our approach focuses on:

  • Security.
  • Privacy.
  • Appropriate use of data.
  • Human oversight.
  • Transparency.
  • Reliability.
  • Fairness.
  • Responsible deployment.

AI-generated outputs may contain inaccuracies or incomplete information and should be reviewed before being relied upon for important decisions.

Customers and users must not use AI functionality for unlawful, abusive, fraudulent, harmful, or unauthorized activities.

Where third-party AI providers are used, applicable data handling and contractual requirements will also apply.

11. SUBPROCESSOR / THIRD-PARTY SERVICES

ZephyraTech may use selected third-party providers to operate and deliver our services.

These providers may support areas such as:

  • Cloud infrastructure.
  • Hosting.
  • Data storage.
  • Payment processing.
  • Email and communications.
  • Analytics.
  • Authentication.
  • Security.
  • Monitoring.
  • AI services.
  • Customer support.

We select service providers based on appropriate operational, security, privacy, and contractual considerations.

Where required by applicable law or customer agreements, relevant subprocessors and material changes may be communicated to customers.

12. DATA RETENTION POLICY

We retain information only for as long as reasonably necessary for the purposes for which it was collected, unless a longer period is required or permitted by law.

Retention may depend on:

  • The type of information.
  • Business requirements.
  • Contractual obligations.
  • Legal requirements.
  • Security requirements.
  • Dispute resolution.
  • Regulatory obligations.

When information is no longer required, we may delete, anonymize, or securely dispose of it, subject to applicable legal, contractual, backup, and security requirements.

13. DATA SUBJECT REQUEST / PRIVACY RIGHTS

Depending on applicable law, individuals may have rights relating to their personal information, including:

  • Access.
  • Correction.
  • Deletion.
  • Restriction.
  • Objection.
  • Data portability.
  • Withdrawal of consent.
  • Marketing opt-out.

Requests can be submitted to our Privacy Team.

We may need to verify the identity or authority of the requester before processing certain requests.

Privacy Requests: [email protected]

We will handle requests within the timeframes required by applicable law.

14. CAREERS PRIVACY NOTICE

When you apply for a position at ZephyraTech, we may collect information such as your name, contact details, CV/resume, employment history, education, skills, qualifications, references, interview information, and other recruitment-related information.

We use this information to:

  • Evaluate applications.
  • Communicate with candidates.
  • Conduct interviews and assessments.
  • Verify information where appropriate.
  • Manage recruitment.
  • Meet legal requirements.

Recruitment information may be shared with authorized recruitment providers or professional advisors where necessary.

We retain candidate information only for as long as reasonably necessary for recruitment, legal, and legitimate business purposes.

Careers Privacy Contact: [email protected]

CONTACT

If you have questions about any of our legal, privacy, security, or compliance practices, please contact us.

ZephyraTech Solutions (Pvt) Ltd

Last Updated: September 4, 2026