PRIVACY POLICY
Privacy Policy
What personal data AuraCrawl collects, why, and the rights you have over it — for site visitors, for people who contact us, and for the data we extract on a customer’s behalf.
Effective 29 August 2026
AuraCrawl is a pre-launch service. This policy is provided in good faith and is not legal advice; have your own counsel review it before you rely on it.
1.Who we are
AuraCrawl (“we”, “us”) is a web-data engineering service based in India. For questions or to exercise your rights under this policy — including as our grievance contact under India’s Digital Personal Data Protection Act, 2023 — write to hi@auracrawl.com.
This policy explains how we handle personal data of people who visit our website or contact us. It also explains our separate role for data we extract on a customer’s instruction.
2.Two different roles
We handle personal data in two distinct capacities:
- Our website and enquiries. For personal data you give us directly, and data our website collects about your visit, we are the controller — we decide how it is used, as described below.
- Data we extract for a customer. When we extract data on a customer’s instruction, the customer is the controller and we act as their processor. We process that data only on the customer’s documented instructions, under the engagement agreement and this policy, and we never resell or reuse it.
3.What we collect
- Enquiry data — your name, email address, company, and anything you choose to tell us when you contact us to scope an engagement.
- Usage data — basic analytics collected through Google Analytics when you browse the site: cookies and similar identifiers, approximate location derived from your IP address, and device and browser information.
We do not knowingly collect special-category or sensitive personal data through the website, and we ask that you not send it to us in an enquiry.
4.How we use it, and our legal bases
We use enquiry and usage data to respond to you, scope and run engagements, keep the website working and secure, and meet our legal obligations. Where the GDPR or UK GDPR applies, our legal bases are: your consent for analytics cookies; our legitimate interests in responding to enquiries and operating and improving the service; and performance of a contract where you have engaged us. Where India’s DPDP Act applies, we rely on your consent or the legitimate uses it permits.
5.Cookies and analytics
The site uses Google Analytics to understand aggregate traffic. You can decline non-essential cookies in your browser, use Google’s opt-out add-on, or block analytics at the browser level. We do not run advertising networks and we do not use your browsing to build advertising profiles.
6.How we share data
We do not sell personal data. We share it only with a small set of service providers who process it on our behalf — currently our hosting provider (Vercel), our analytics provider (Google), and our email provider — and with authorities where disclosure is required by law. Each provider is permitted to use the data only to provide their service to us.
7.International transfers
We operate from India and our providers may process data in India, the United States, the European Union, and elsewhere. Where data moves across borders, we rely on the safeguards our providers offer (such as standard contractual clauses) and on the protections in this policy.
8.How long we keep it
We keep enquiry data for as long as needed to deal with your request and for a reasonable period afterwards, then delete it. Analytics data is retained per our Google Analytics configuration. Data we extract for a customer is retained only as long as needed to run and replay their pipeline, and is deleted in line with the engagement agreement.
9.Your rights
Depending on where you live, you may have the right to access, correct, delete, or port your personal data, to object to or restrict certain processing, and to withdraw consent. These rights are provided under India’s DPDP Act, the GDPR / UK GDPR, and — for California residents — the CCPA/CPRA. California residents are also entitled to know that we do not sell or share personal information as those terms are defined under the CCPA.
To exercise any right, email hi@auracrawl.com. Where we process data as a processor for a customer, we will refer your request to that customer. You also have the right to complain to your local data-protection authority.
10.Security
We protect data with encryption in transit and at rest, access controls, and least-privilege handling; session credentials you supply are write-only and never returned by our API. No method of transmission or storage is completely secure, but we work to protect your data and to notify you of a material breach as the law requires.
11.Children
AuraCrawl is a business service and is not directed to children. We do not knowingly collect personal data from anyone under 18.
12.Changes to this policy
We may update this policy from time to time. When we do, we post the revised version here with a new effective date.
13.Contact
For any privacy question, or to reach our grievance contact, email hi@auracrawl.com.
Questions about this document? Write to hi@auracrawl.com.