Operance Labs
← Back to website

Privacy Policy

How Operance Labs isolates, protects, and governs client communications, project data, and AI agent workloads.

Last updated: January 1, 2026

Overview & Corporate Scope

Operance Labs ("we," "our," or "us") operates as a premier software engineering atelier specializing in high-performance web systems, distributed cloud infrastructure, and autonomous AI agents. This Privacy Policy details our strict standards regarding how client data, inquiry communications, and telemetry are collected, processed, and securely retained.

Our legal headquarters is located at 471, AR Mall, Surat - 394105, Gujarat, India. By accessing our website or engaging our services, you consent to the data practices described in this document.

Information We Collect

We strictly limit information collection to what is necessary to evaluate, scope, and execute engineering engagements:

  • Direct Inquiries: Name, work email address, company affiliation, and project scope details submitted via our contact terminal or direct founder communication.
  • Technical Metadata: Minimal HTTP request telemetry (IP address, browser user-agent, referrers, and diagnostic timestamps) required to maintain server reliability, DDOS mitigation, and security integrity.
  • Engagement Materials: Architecture schemas, API credentials, and repository access provided under explicit bilateral Non-Disclosure Agreements (NDAs).

AI & Model Data Isolation Guarantee

As engineers building frontier AI agent systems, we enforce a strict Zero-Training Mandate:

  • No client code, proprietary business logic, document stores, or database records are ever used to train public, open, or third-party foundation models.
  • All AI pipeline integrations utilize enterprise API contracts featuring zero-retention policies, ensuring prompt inputs and outputs are discarded immediately after inference.
  • Model fine-tuning and retrieval-augmented generation (RAG) vector embeddings are isolated within dedicated single-tenant client VPC boundaries.

How We Use Information

Collected information is utilized solely for:

  • Responding to inbound technical inquiries and scoping system feasibility within our 24-hour SLA.
  • Drafting Statements of Work (SOW), master service agreements, and mutual NDAs.
  • Maintaining security perimeter logging and defending our web infrastructure against automated abuse.
  • Compliance with statutory tax, corporate, and legal obligations under Indian law.

Sub-Processors & Infrastructure

We partner exclusively with tier-1 enterprise infrastructure providers that comply with SOC 2 Type II, ISO 27001, and GDPR standards:

  • Vercel & Cloudflare: Edge CDN routing, global TLS termination, and serverless compute hosting.
  • Google Cloud Platform (GCP) & AWS: Isolated production compute, storage, and automated build pipelines.
  • Transactional Mail: Encrypted enterprise email gateways for direct client correspondence.

Retention & Security Standards

Inquiry details are retained only for the duration of the scoping evaluation or the life of the active engagement. Upon project completion or request, all sandbox credentials, temporary repositories, and auxiliary assets are purged within 30 days.

All data in transit is protected using TLS 1.3 encryption, and data at rest is encrypted using AES-256 standards with hardware-backed key rotation.

Your Rights & Jurisdiction

Depending on your jurisdiction (including GDPR, CCPA, and India's Digital Personal Data Protection Act), you have the right to request access, correction, export, or deletion of your personal data held by Operance Labs.

To exercise your rights or request an audit of your data footprint, contact our founders directly at contact@operancelabs.com.

Contact & Official Notices

If you have any questions or legal inquiries regarding this agreement, please email us at contact@operancelabs.com, or write to our registered office:

Operance Labs
471, AR Mall
Surat - 394105, Gujarat, India

© 2026 Operance Labs. All rights reserved.

Privacy PolicyTerms of ServiceSecurityInstitutional NDACookie Policy