Tezaract policies
Privacy Policy
Effective date: 30 June 2026
Published by
Tezaract Private Limited
Plot 669, Road No. 33, Jubilee Hills, Hyderabad – 500033, India
- Who this applies toVisitors, applicants and students interacting with Tezaract's website and services.
- What data is coveredIdentity, application, account, communication, participation and technical data.
- Your rightsAccess, correction, erasure, consent withdrawal and grievance redressal under the DPDP Act.
- Contact / grievancePrivacy requests can be sent to privacy@tezaract.com. Grievances may be sent to grievance@tezaract.com.
1. Who we are
This Privacy Policy is published by Tezaract Private Limited ("Tezaract", "we", "us" or "our"), a company incorporated in India with its registered office at Plot 669, Road No. 33, Jubilee Hills, Hyderabad – 500033, India.
Tezaract operates the tezaract.com website, admissions and application routes, student account services (where enabled) and related educational programs, including the Foundation Course.
2. Scope
This Policy explains how we collect, use, store, share and protect personal data when you visit our website, submit an application, communicate with us, create or use a student account, or otherwise interact with Tezaract services.
This Policy applies to personal data processed in connection with our public website and program-related services. Separate notices may apply to specific programs, agreements or third-party platforms linked from our website.
By using our website or submitting personal data to us, you acknowledge that you have read this Policy. Where consent is required under applicable law, we will seek it in accordance with this Policy.
3. Personal data we collect
The categories of personal data we may collect depend on how you interact with Tezaract. We collect only data that is reasonably necessary for the purposes described in this Policy.
- Identity and contact data: name, email address, phone number, postal address, date of birth or age band where relevant, and similar identifiers.
- Application and admission data: education history, statements submitted in applications, documents you upload, selection-related information and admission decisions.
- Account data: login identifiers, authentication records, profile information and preferences associated with a student account, where enabled.
- Communications: messages, enquiries, support requests and correspondence with Tezaract.
- Program participation data: attendance or participation records, assignments, portfolio materials, assessment outcomes and conduct-related records, where applicable.
- Device, log and technical data: IP address, browser type, device identifiers, operating system, pages viewed, referral URLs, timestamps and similar technical information.
- Cookie and similar technologies data: information collected through cookies, pixels or similar technologies, where used.
4. How we collect personal data
We collect personal data directly from you when you submit forms, apply for programs, create an account, contact us or participate in Tezaract services.
We may also collect certain technical data automatically when you use our website, including through server logs and, if enabled in the future, analytics or cookie technologies.
We may receive information from service providers, institutional collaborators or public sources only where permitted by law and relevant to the purposes described below.
5. Data minimisation and purpose limitation
We collect and process personal data that is adequate, relevant and limited to what is reasonably necessary for the purposes described in this Policy.
If we need to use personal data for a new purpose that is not compatible with the original purpose, we will provide appropriate notice and, where required under applicable law, obtain fresh consent.
6. Purposes of processing
We process personal data for legitimate purposes connected with Tezaract's educational and institutional activities, including:
- Operating and improving the website and digital services.
- Receiving, reviewing and processing applications and admissions.
- Communicating with applicants, students and enquirers.
- Providing program delivery, assessment, certification and student support.
- Managing accounts, security, fraud prevention and service integrity.
- Complying with legal obligations, responding to lawful requests and enforcing our terms.
- Conducting internal reporting, quality assurance and service improvement.
- Sending service-related notices; marketing communications only where permitted and, where required, with consent.
7. Legal bases and consent
Under the Digital Personal Data Protection Act, 2023 ("DPDP Act") and applicable rules, we process personal data based on consent where required, and otherwise for certain legitimate uses permitted by law, such as processing necessary for compliance with law, for employment or safeguarding purposes where applicable, or for purposes related to voluntary submission of data for specified functions.
Where we rely on consent, you may withdraw consent in accordance with applicable law and this Policy. Withdrawal does not affect processing already lawfully carried out.
We will provide or obtain verifiable consent where required, including in relation to children as described below.
8. Children's data and parents or guardians
Some Tezaract programs may be open to learners who are minors under applicable law. Where personal data of a child is processed, we will take reasonable steps to obtain verifiable consent from a parent or lawful guardian where required under the DPDP Act and applicable rules.
Parents or guardians may contact us regarding a child's personal data using the contact details in this Policy.
If we learn that we have collected personal data from a child without appropriate authority where required, we will take reasonable steps to delete it or otherwise address the matter in accordance with law.
10. Analytics and service providers
We may use service providers to host our website, process applications, deliver communications, provide authentication, store data or support program operations. These providers process personal data only on our instructions and subject to appropriate contractual safeguards, where applicable.
If we enable analytics or measurement tools in the future, we will describe them in an updated version of this Policy and implement them in accordance with applicable law.
We do not sell personal data.
11. Data sharing and disclosures
We may share personal data with:
- Service providers and processors supporting website, application, communication or program operations.
- Academic, campus or institutional collaborators involved in program delivery, where relevant and appropriate.
- Professional advisers, auditors or insurers where reasonably necessary.
- Government authorities, courts or law enforcement when required by applicable law, regulation, legal process or to protect rights, safety and security.
12. Cross-border processing
Personal data is primarily processed in India. If we transfer personal data outside India, we will do so in accordance with applicable law, including any restrictions or conditions on cross-border transfers under the DPDP Act and related rules.
13. Data retention
We retain personal data only for as long as necessary for the purposes described in this Policy, including to comply with legal, accounting, admissions, academic or dispute-resolution requirements.
Retention periods may vary by data category. Application records, student records and communications may be retained for different durations based on operational and legal needs.
When personal data is no longer required, we will delete, anonymise or securely dispose of it in accordance with our retention practices and applicable law.
14. Security safeguards
We implement reasonable technical and organisational measures designed to protect personal data against unauthorised access, loss, misuse, alteration or disclosure.
No method of transmission or storage is completely secure. We cannot guarantee absolute security, but we work to maintain safeguards appropriate to the nature of the data we process.
15. Rights of data principals
Subject to applicable law, including the DPDP Act, you may have rights to:
- Obtain information about personal data we process about you.
- Request correction of inaccurate or incomplete personal data.
- Request erasure of personal data where permitted by law.
- Withdraw consent where processing is based on consent.
- Nominate another individual to exercise your rights in the event of death or incapacity, as permitted by law.
- Seek grievance redressal through our grievance process.
16. Personal data breach notification
If we become aware of a personal data breach that is likely to affect data principals, we will take reasonable steps to mitigate harm and, where required under the DPDP Act and applicable rules, notify the Data Protection Board of India and affected data principals in accordance with prescribed timelines and manner.
17. Grievance redressal
If you have a concern or grievance regarding our processing of personal data, you may contact our Grievance Officer at grievance@tezaract.com. We will endeavour to address grievances within timelines prescribed under applicable law.
If your grievance is not resolved satisfactorily, you may have the right to approach the Data Protection Board of India or other remedies available under applicable law.
18. Changes to this Policy
We may update this Privacy Policy from time to time to reflect changes in law, technology, services or operational practices. The effective date at the top of this Policy indicates when it was last revised.
Material changes will be posted on this website. Where required, we will provide additional notice or seek consent.
19. Contact us
For privacy-related questions, requests to exercise data principal rights or grievances, contact:
Tezaract Private Limited
Plot 669, Road No. 33
Jubilee Hills
Hyderabad – 500033
India
Email: privacy@tezaract.com
Grievance Officer: grievance@tezaract.com