1. About this policy
Connexolve Technologies ("Connexolve", "we", "us") operates the Connexolve BGV platform — an Indian background verification service. This policy explains what personal data we collect, why we collect it, how long we keep it, and what rights you have over it. It applies to anyone using bgv.connexolve.in or any related service.
2. What we collect
We collect two distinct categories of data:
From you, as our customer
- Your name, email address, WhatsApp number, and password (hashed)
- Your PAN or GSTIN, used to verify you as a registered Indian entity
- Your business address, company name (if applicable)
- Payment information (processed via a PCI-DSS-compliant payment gateway — we never store card details)
- Activity logs (which verifications you ran, when, and at what cost)
About your verification subjects
- The names, identification numbers, and contact details you enter for verification
- Photographs, address documents, and consent records you upload
- The results returned by government APIs (UIDAI, NSDL, GSTN, eCourts, etc.)
For verification subjects, the lawful basis is the explicit consent obtained from them before you run a check (this is your responsibility as the customer).
3. How we use this data
- To run the verifications you request — we transmit only the minimum required fields to government and partner APIs.
- To produce the audit-trail PDF reports you receive.
- To bill you and reconcile wallet credits/debits via our payment gateway.
- To comply with Indian regulations — the Digital Personal Data Protection Act 2023, the IT Act 2000, and applicable sector laws.
- To improve the platform (aggregated, anonymised usage data only).
4. Who we share it with
We share data only with the parties required to deliver the service:
- Government data sources: UIDAI (Aadhaar), NSDL/Protean (PAN), GSTN (GST), eCourts (court records), Election Commission (Voter ID), RTO (driving licence), EPFO (employment), and DigiLocker (document retrieval).
- Authorised service providers: identity verification API partner(s), SMS/WhatsApp delivery providers, payment gateway(s), and map/geocoding services. Each receives only the minimum data required for the specific check or function. A current list of processors is available on request at directors@connexolve.in.
- Hosting infrastructure: our servers are in Mumbai (Hostinger). Data does not leave India during normal operations.
- Legal requests: only with a valid court order or government notice.
We do not sell your data, and we do not share it for advertising.
5. How long we keep it
- Verification results & reports: 7 years (compliance retention).
- Account & billing records: 7 years after closure.
- Server access logs: 90 days.
- Payment authorisation tokens: only as long as the transaction is open.
6. Your rights
Under the Digital Personal Data Protection Act 2023, you can:
- Request access to the personal data we hold about you
- Ask us to correct inaccurate or incomplete data
- Withdraw consent for non-essential processing
- Request deletion of your account and associated data (subject to legal retention)
- Lodge a grievance with the Data Protection Board of India
To exercise any of these, email directors@connexolve.in.
7. Security
We use TLS 1.3 for all traffic, encrypt passwords with bcrypt, restrict database access to localhost, and back up daily. We follow the practices described in our security overview. No system is perfectly secure; we will notify affected users within 72 hours of any breach involving personal data.
8. Children
Our service is for businesses verifying adults. We do not knowingly collect data on persons under 18. If you believe we have, email us and we will delete it.
9. Changes to this policy
We will publish material changes here and notify account-holders by email at least 14 days before they take effect.
10. Contact
Grievance Officer: directors@connexolve.in
Postal: Connexolve Technologies, Kalighat, Kolkata – 700026, India
Phone: +91‑87773‑97384