Skip to content
Ilmora Technologies

LEGAL

Privacy Policy

Plain-language answers to what we collect, why, who sees it, and the rights you have over it — under GDPR, UK GDPR, CCPA/CPRA, and Singapore's PDPA.

Last updated: March 4, 2026

01.Scope of this policy

This Privacy Policy explains how Ilmora Technologies, Inc.(“Ilmora,” “we,” “us”) collects, uses, discloses, and protects personal data when you visit www.ilmora.com, contact us, attend our events, apply for a role, or engage our services. It applies to Ilmora acting as a data controller. Where we process personal data on behalf of clients in the course of delivering services, we act as a data processor and that processing is governed by the applicable data processing agreement, not this policy.

This policy covers our operations from India. Where our services or users bring us within scope of the EU General Data Protection Regulation (GDPR), the UK GDPR, the California Consumer Privacy Act as amended by the CPRA (“CCPA”), or Singapore's PDPA, we extend the relevant protections to those individuals.

02.Personal data we collect

We collect the following categories of personal data:

  • Contact and identity data — name, work email, phone number, company, and job title, provided when you submit a form, book a consultation, or register for an event.
  • Business context data — information you volunteer about your projects, budgets, and timelines when requesting a consultation or quote.
  • Recruitment data — CVs, portfolio links, and interview notes when you apply for a role.
  • Technical data — IP address, browser type, device identifiers, pages viewed, and referral source, collected automatically via cookies and similar technologies (see our Cookie Policy).
  • Communications data — the content of emails, form submissions, and call notes when you correspond with us.

We do not intentionally collect special-category data (such as health or biometric data) through this website, and we ask that you do not submit it.

03.How we use personal data

We use personal data to:

  • Respond to inquiries, consultations, and quote requests;
  • Provide, administer, and improve our services and this website;
  • Manage event registrations, webinars, and recordings you request;
  • Evaluate job applications and administer recruitment;
  • Send service communications and, with your consent or as otherwise permitted, marketing communications you can opt out of at any time;
  • Maintain security, prevent fraud and abuse, and debug our systems;
  • Comply with legal obligations and enforce our agreements.

We do not sell personal data, and we do not “share” personal data for cross-context behavioral advertising as those terms are defined in the CCPA.

05.How we share personal data

We share personal data only with:

  • Service providers acting under contract on our behalf — cloud hosting, email delivery, CRM, analytics, applicant tracking, and event platforms — bound by confidentiality and data protection terms;
  • Professional advisers (lawyers, auditors, insurers) where necessary;
  • Authorities where required by law, court order, or to protect rights, safety, or property;
  • Successorsin connection with a merger, acquisition, or asset sale, subject to this policy's protections.

A current list of subprocessors is available on request at info@ilmoratechnologies.in.

06.International data transfers

Because we operate globally, personal data may be transferred to countries other than the one in which it was collected, including the United States. Where we transfer personal data from the EEA, UK, or Switzerland to countries without an adequacy decision, we rely on appropriate safeguards, principally the European Commission's Standard Contractual Clauses and the UK International Data Transfer Addendum, supplemented by technical measures such as encryption in transit and at rest.

You may request a copy of the relevant safeguards by contacting info@ilmoratechnologies.in.

07.Data retention

We keep personal data only as long as necessary for the purposes described above, then delete or anonymize it. Typical retention periods:

  • Inquiry and consultation records — 24 months after last contact;
  • Client contract and billing records — 7 years, per legal requirements;
  • Recruitment records — 12 months after the process ends, unless you consent to longer;
  • Marketing lists — until you unsubscribe or 24 months of inactivity;
  • Server and security logs — 12 months.

08.How we protect personal data

We apply the same engineering discipline to our own systems that we sell: encryption in transit (TLS 1.2+) and at rest, single sign-on with hardware-key MFA for internal systems, least-privilege access controls, network segmentation, continuous vulnerability scanning, and annual third-party penetration testing. Our controls are audited annually under SOC 2 Type II, and our AI management practices are certified against ISO/IEC 42001.

No system is perfectly secure. If we become aware of a breach affecting your personal data, we will notify you and the relevant supervisory authority where required by law and without undue delay.

09.Your rights (EEA, UK, and similar regimes)

Subject to conditions and exemptions in applicable law, you have the right to: access the personal data we hold about you; rectify inaccurate data; erase data; restrict or object to processing (including direct marketing, which we will stop on request without exception); data portability; and the right to withdraw consent at any time.

To exercise any right, email info@ilmoratechnologies.inwith the subject “Privacy request.” We respond within one month. You also have the right to lodge a complaint with your supervisory authority — in the UK, the ICO; in the EEA, the authority of your member state.

10.California privacy rights (CCPA/CPRA)

If you are a California resident, you have the right to: know the categories and specific pieces of personal information we have collected about you; delete personal information; correct inaccurate personal information; and non-discrimination for exercising these rights. Because we do not sell or share personal information for cross-context behavioral advertising, no opt-out is necessary; we honor the Global Privacy Control signal as an opt-out preference where applicable.

Submit requests to info@ilmoratechnologies.in or by phone at +91 8519988385. We verify requests by matching the information you provide against our records, and you may use an authorized agent with written permission.

11.Children's privacy

Our website and services are directed at businesses and professionals. We do not knowingly collect personal data from anyone under 16. If you believe a child has provided us personal data, contact info@ilmoratechnologies.in and we will delete it promptly.

12.Changes to this policy & how to contact us

We review this policy at least annually and update it when our practices or the law change. Material changes will be signposted on this page with an updated “last updated” date, and — where changes materially affect how we use data already collected — notified to affected individuals directly.

Data controller: Ilmora Technologies, Inc., 6-2, Kohinoor Enclave, Neknampur, Alkapur Road, Manikonda, Hyderabad, Telangana 500089, India. Privacy contact: info@ilmoratechnologies.in · +91 8519988385.

Questions about our policies?

Our legal and compliance team answers policy questions directly — data processing agreements, security documentation, and subprocessor lists are available on request.