Effective Date: August 5, 2026
•Last Updated: August 5, 2026
This Privacy Policy is issued by STITCHBYTE LLP (herein referred to as the "Company", "we", "us", or "our"). Under global data protection regulations—including the General Data Protection Regulation (GDPR - Regulation (EU) 2016/679) and the Digital Personal Data Protection Act, 2023 (DPDP Act - India)—STITCHBYTE LLP acts as the Data Controller and Data Fiduciary for the personal information processed through our main site (https://stitchbyte.in), our cloud-hosted administrative panels, pre-built web solutions, social media management channels, and direct B2B consulting services.
Corporate Registrations
Entity: STITCHBYTE LLP
LLPIN: ACJ-8283
Date of Incorporation: Oct 08, 2024
Registrar: ROC - Jaipur
Registered Address
446, Inside Delhi Gate, near Jain Dispensary,
Bhargava Bhawan, Alwar, Rajasthan, 301001, India
Email: info@stitchbyte.in
We gather the following categories of data in accordance with the principles of data minimization and purpose limitation:
STITCHBYTE LLP's internal administrative portal integrates Google OAuth (via Google Sign-In) to verify staff and administrators.
Scopes Requested & Justifications:
Google API Services User Data Policy Compliance: Our use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Sharing & Advertising Restrictions: Google user profile data is never sold, leased, shared with third parties, or used to build marketing profiles or display targeted advertising blocks.
Access Revocation: Users can revoke our application's access to their Google profile data at any time via the Google Account Security Permissions management page.
Engaging STITCHBYTE LLP for custom development milestone work or digital asset subscriptions involves strict billing compliance protocols:
Our website implements a cookie consent mechanism located at the bottom-left of the viewport. We classify our cookies into the following functional groupings:
Opt-Out & Do Not Track (DNT): No third-party analytics or marketing scripts run, nor do they write database keys to your local storage, unless you explicitly select "Accept All" on the consent banner. We respect your browser's "Do Not Track" (DNT) headers.
We share personal, transactional, or technical data only with trusted third-party service providers (Subprocessors) to maintain our operational channels:
| Subprocessor / Service | Purpose | Primary Storage Region |
|---|---|---|
| Vercel & Netlify | Frontend Deployment & Serverless Functions Hosting | United States / Global CDN |
| AWS (Amazon Web Services) | Cloud Infrastructure & Secure S3 Storage Asset hosting | India (Mumbai) / United States |
| DigitalOcean | Virtual Private Servers (VPS) hosting and backend staging | India (Bangalore) / Singapore |
| Oracle Cloud Infrastructure (OCI) | Virtual Private Servers (VPS) hosting and backend computation databases | India (Mumbai / Hyderabad) |
| MongoDB Atlas | Database Cluster Storage | India (Mumbai) / Singapore |
| Razorpay, Stripe & PayPal | Secure Financial Transactions Processing & Billing | India / United States |
| Brevo, Resend & SMTP services | Transactional Email and Newsletter Delivery | Europe (France) / United States |
| Cloudinary | Optimized Image and Video Asset Hosting | United States |
| OpenAI & Google Gemini | Artificial Intelligence content & text processing helpers | United States |
| Cloudflare & Google Fonts/reCAPTCHA | DNS management, Web Security Shielding & spam mitigation | Global Anycast Network |
Under Chapter II of the Indian DPDP Act 2023 and Article 6 of GDPR, we process personal details under the following legal bases:
We retain personal, billing, and transactional data only as long as necessary to fulfill the original purpose of collection or comply with statutory requirements:
Financial Invoices & Tax Logs
8 Years (Statutory requirement under Indian Income Tax Act & GST Act)
Client Project Files & Backups
2 Years following formal project sign-off and milestone closure
Administrative Portal Security Logs
180 Days for active threat and server performance detection
Support Communications & Emails
3 Years to support recurrent troubleshooting requests
Google OAuth Administrative Access
Immediate deletion upon account removal or access revocation
Analytics Logs (GA / GTM)
26 Months following user session activity closure
You hold the following rights regarding the personal information we process:
During deployment phases, clients routinely share server access, domain registrar logins, Firebase keys, or API tokens:
STITCHBYTE LLP operates cloud database nodes and utilizes subprocessors situated outside of India (including in the United States, Singapore, and Europe). Consequently, your information may be processed in regions with varying data privacy standards. To ensure safety, we execute Standard Contractual Clauses (SCCs), enforce SSL/TLS encrypted pipelines, and utilize certified enterprise cloud providers that guarantee compliance with international data transfer frameworks.
Our development, design, and SEO services are not structured for, nor marketed to, individuals under the age of 18. We do not knowingly collect personal data from minors. If we discover that personal details from an individual under 18 have been collected without parental consent, we will delete that data from our database servers immediately.
STITCHBYTE LLP maintains active server monitoring for security threat detection. In the unlikely event of a data breach compromising personal, transactional, or client credentials, we will notify affected individuals and regulatory authorities (such as CERT-In or supervisory bodies) within 72 hours of verification, outlining the containment strategies and corrective protocols.
We reserve the right to modify this Privacy Policy to reflect regulatory changes or software updates. When modifications are made, we will update the "Last Updated" date at the top of the policy page. Registered clients and active users will receive notice via email regarding material modifications.
For inquiries concerning your data rights, cookie consents, or billing invoices, please contact our designated Grievance and Compliance Officer:
Officer Name: Mayur Bhargava
Title: Head of Compliance & Legal Affairs
Email: info@stitchbyte.in
Response Timeline: Within 30 calendar days
STITCHBYTE LLP
446, Inside Delhi Gate, near Jain Dispensary,
Bhargava Bhawan, Alwar, Rajasthan, 301001, India
Email: info@stitchbyte.in