Privacy Policy
Last Updated: August 1, 2026 • Effective Date: August 1, 2026
Flurid Technologies operates in full compliance with the Digital Personal Data Protection (DPDP) Act 2023 of India and the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011. Your school's personal data is processed transparently, securely, and hosted within MeitY-empaneled cloud data centers in India.
1. Roles of Data Fiduciary and Data Processor
Under the DPDP Act 2023:
- Educational Institution (School/College): Acts as the primary Data Fiduciary who determines the purpose and means of processing personal data of students, parents, teachers, and staff.
- Flurid Technologies: Acts as a Data Processor, processing personal data strictly on behalf of and according to explicit instructions from the Data Fiduciary.
2. Personal Data We Collect
We process only the minimal personal data necessary to provide our Education Operating System services:
Student & Parent Data
Name, Roll Number, Admission ID, Date of Birth, Gender, Class, Section, Parent Phone Number, Email, Emergency Contact Details, and Academic Performance Records.
Teacher & Staff Data
Employee ID, Name, Official Email, Mobile Number, Qualifications, Designation, Department, Attendance Logs, and Salary Breakdown.
3. Protection of Children's Personal Data (Section 9 DPDP Act)
Flurid enforces strict safeguards regarding personal data belonging to children under the age of 18:
- Verifiable parental consent is mandatory before enrolling minor students onto the platform.
- Flurid strictly prohibits any behavioral tracking, profiling, or targeted advertisement directed at minor students.
- No personal data of students is ever sold, rented, or monetized for commercial advertising.
4. Rights of Data Principals (Students, Parents, Teachers)
Under Indian DPDP Law, Data Principals enjoy statutory rights regarding their personal data:
5. Data Residency and Cloud Encryption
All institutional data processed by Flurid resides strictly within Tier-IV MeitY-empaneled Indian cloud data centers (AWS / GCP Mumbai & Hyderabad regions).
- Data Encryption at Rest: AES-256 bit military-grade encryption.
- Data Encryption in Transit: TLS 1.3 SSL encrypted protocols.
- Daily Encrypted Offsite Backups with 30-day retention cycles.
6. Data Protection & Grievance Redressal Officer
In accordance with DPDP Act 2023 and Information Technology Act 2000 rules, you may contact our designated Grievance Officer for data privacy requests:
