Corporate Privacy Policy & Data Protection Governance Notice
Divine Solutions is dedicated to preserving the absolute confidentiality, technical integrity, and privacy of personal and organizational data processed during commercial engagements, procurement workflows, and technical support operations.
Scope, Legal Basis & Fiduciary Commitment
This Corporate Privacy Policy and Data Protection Governance Notice ("Policy") articulates the data collection, handling, processing, and protection protocols enforced by Divine Solutions ("Company," "we," "our," or "us"), operating as a Data Fiduciary pursuant to the Digital Personal Data Protection Act, 2023 (DPDPA) and the Information Technology Act, 2000 (including Reasonable Security Practices and Procedures and Sensitive Personal Data or Information Rules, 2011).
This Policy governs personal and organizational telemetry collected when you visit our website (https://pub4.b2bmedium.com), communicate with our engineering advisors via official WhatsApp Business channels, enter into commercial procurement contracts, or engage our engineers under an active Service Level Agreement (SLA).
Categories of Data Collected and Processed
In the course of technical auditing, hardware provisioning, and SLA execution, we process specific categories of business and technical data:
Authorized personnel names, corporate designations, registered office address, GSTIN numbers, business email addresses, and direct phone/WhatsApp numbers.
Datacenter server hardware configurations, RAID arrays, IP subnets, switch topologies, firewall firmware revisions, and cloud backup repository paths.
Facility DISCOM electricity consumer numbers, monthly sanctioned load curve profiles, rooftop structural drawings, and IoT inverter kilowatt-hour generation logs.
Aggregated non-identifying telemetry including browser user-agent tokens, IP address routing data, session timestamps, and encrypted cookie identifiers.
Lawful Purpose & Specific Use of Information
Divine Solutions processes organizational and personal data strictly for legitimate commercial and technical execution purposes, including:
- Contractual Fulfillment & Hardware Delivery: Processing Purchase Orders, provisioning bespoke Dell/HPE server builds, dispatching OEM components, and executing on-site hardware deployment.
- SLA Incident Response: Dispatching certified field service engineers within 4-hour or 8-hour SLA windows to diagnose server outages, network loops, or inverter faults.
- Regulatory DISCOM Submissions: Preparing and submitting bi-directional net-metering applications, grid synchronization filings, and electrical inspectorate paperwork on behalf of the Client.
- OEM Warranty Registration: Transmitting serial numbers and end-customer contact verification to authorized OEM manufacturers (Dell, HPE, Fortinet, Sophos, Solis) to activate official enterprise warranties.
- Statutory Tax & Accounting Compliance: Generating tax invoices, e-way bills, and GST filings required under Indian commercial and fiscal regulations.
Strict Prohibition on Commercial Data Monetization
Divine Solutions maintains an absolute, non-negotiable policy against the sale, lease, rental, or commercial licensing of client personal records, technical schematics, or organizational contact lists to third-party marketing brokers, data aggregators, or unauthorized third parties.
Authorized Disclosures & Third-Party Sub-Processors
Information is shared exclusively on a strict need-to-know basis with the following verified entities to fulfill contracted deliverables:
- Original Equipment Manufacturers (OEMs): Hardware serial numbers, deployment location, and corporate entity name shared with Dell Technologies, Hewlett Packard Enterprise, Fortinet Inc., Sophos Ltd., and Tier-1 Solar PV manufacturers to bind official warranties.
- Government & Public Electric Utilities: Technical solar engineering drawings and consumer numbers submitted to state power distribution companies (e.g., MSEDCL) for net-metering approvals.
- Encrypted WhatsApp Business API: Messaging transmissions via WhatsApp are subject to WhatsApp LLC / Meta Platforms end-to-end cryptographic protocols for business-to-business communications.
- Statutory Authorities: Disclosure where strictly mandated by judicial order, police subpoena, or binding governmental regulatory authority pursuant to Indian law.
Cybersecurity Architecture & Reasonable Security Practices
In compliance with Section 43A of the IT Act, 2000 and the DPDPA, Divine Solutions maintains robust physical, organizational, and technical safeguards, including:
All digital transmissions across web endpoints protected by TLS 1.3 encryption and AES-256 encrypted storage volumes.
Strict Role-Based Access Control (RBAC) ensuring only assigned field engineers access client technical schematics.
Periodic vulnerability assessments, firewall rule audits, and secure credential destruction upon project handover.
Data Retention & Secure Disposal Schedule
Personal and corporate transaction records are retained only for the duration necessary to accomplish the purpose for which they were collected:
- Active AMC & Solar Warranty Data: Retained for the active tenure of the service agreement plus the OEM 25-year panel lifecycle to support warranty service calls.
- Fiscal & Commercial Tax Records: Invoices, work orders, and payment records retained for eight (8) statutory financial years in accordance with Indian Income Tax and GST compliance rules.
- Disposal: Upon expiration of statutory and contractual retention horizons, digital records are purged via DoD 5220.22-M sanitization protocols and physical paperwork shredded.
Client Data Rights & Grievance Redressal Mechanism
Under the Digital Personal Data Protection Act, 2023, data principals hold enforceable rights regarding their personal data, including: (a) Right to access an itemized summary of personal data processed; (b) Right to correction and updating of inaccurate records; (c) Right to erasure of data no longer required for statutory or contractual purposes; and (d) Right to grievance redressal.
To exercise any of these rights, corporate representatives may submit a formal written request to our designated Data Grievance Officer.
Divine Solutions Data Governance Desk
Pursuant to Rule 5(9) of the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 and the DPDPA 2023, our designated Grievance Officer can be contacted at:
Grievance & Privacy Officer
Divine Solutions, B-111, Varun Park, S-No. 236, Pimple Saudagar, Pune 411027