DPDP Act 2023 & IT Act 2000 Compliant (India)

Privacy Policy

Last Updated: August 1, 2026 • Effective Date: August 1, 2026

Compliance with Digital Personal Data Protection (DPDP) Act, 2023

Flurid Technologies operates in full compliance with the Digital Personal Data Protection (DPDP) Act 2023 of India and the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011. Your school's personal data is processed transparently, securely, and hosted within MeitY-empaneled cloud data centers in India.

1. Roles of Data Fiduciary and Data Processor

Under the DPDP Act 2023:

  • Educational Institution (School/College): Acts as the primary Data Fiduciary who determines the purpose and means of processing personal data of students, parents, teachers, and staff.
  • Flurid Technologies: Acts as a Data Processor, processing personal data strictly on behalf of and according to explicit instructions from the Data Fiduciary.

2. Personal Data We Collect

We process only the minimal personal data necessary to provide our Education Operating System services:

Student & Parent Data

Name, Roll Number, Admission ID, Date of Birth, Gender, Class, Section, Parent Phone Number, Email, Emergency Contact Details, and Academic Performance Records.

Teacher & Staff Data

Employee ID, Name, Official Email, Mobile Number, Qualifications, Designation, Department, Attendance Logs, and Salary Breakdown.

3. Protection of Children's Personal Data (Section 9 DPDP Act)

Flurid enforces strict safeguards regarding personal data belonging to children under the age of 18:

  • Verifiable parental consent is mandatory before enrolling minor students onto the platform.
  • Flurid strictly prohibits any behavioral tracking, profiling, or targeted advertisement directed at minor students.
  • No personal data of students is ever sold, rented, or monetized for commercial advertising.

4. Rights of Data Principals (Students, Parents, Teachers)

Under Indian DPDP Law, Data Principals enjoy statutory rights regarding their personal data:

Right to Access Information:Request a summary of personal data being processed and identities of processing entities.
Right to Correction and Erasure:Request correction of inaccurate data or erasure of data when processing is no longer required.
Right of Grievance Redressal:Escalate data privacy grievances directly to our Data Protection Officer (`dpo@flurid.com`).

5. Data Residency and Cloud Encryption

All institutional data processed by Flurid resides strictly within Tier-IV MeitY-empaneled Indian cloud data centers (AWS / GCP Mumbai & Hyderabad regions).

  • Data Encryption at Rest: AES-256 bit military-grade encryption.
  • Data Encryption in Transit: TLS 1.3 SSL encrypted protocols.
  • Daily Encrypted Offsite Backups with 30-day retention cycles.

6. Data Protection & Grievance Redressal Officer

In accordance with DPDP Act 2023 and Information Technology Act 2000 rules, you may contact our designated Grievance Officer for data privacy requests:

Designation: Data Protection & Grievance Officer
Entity: Flurid Technologies India Private Limited
Response SLA: Within 48 hours of ticket receipt