Privacy Policy
At Fyboard, we are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, and safeguard your data when you use our platform and services.
1. Privacy Overview
Our commitment to protecting your personal information
At Fyboard, privacy isn't an afterthought—it's a fundamental principle woven into every aspect of our platform. This Privacy Policy applies to all users of the Fyboard ecosystem, including website visitors, registered users, enterprise customers, and third-party integrations.
Core Privacy Principles
Data Minimization
We only collect data that's essential for providing our services and enhancing your experience
- Purpose limitation: Data collected only for specified, legitimate purposes
- Storage limitation: Retained only as long as necessary
- Regular audits to ensure minimal data collection
Security by Design
Enterprise-grade security measures protect your data throughout its entire lifecycle
- End-to-end encryption for data in transit and at rest
- Zero-trust architecture with multi-layered security
- Regular penetration testing and security audits
User Control
You maintain complete ownership and control over your personal data and privacy settings
- Granular privacy controls and preferences
- Easy data export and deletion options
- Transparent consent management
Transparency
Clear, honest communication about our data practices and privacy commitments
- Plain-language privacy policies and notices
- Regular transparency reports and updates
- Open communication about data breaches or incidents
Our Privacy Commitments
Never Sell Your Data
We will never sell, rent, or trade your personal information to third parties for monetary gain or any other consideration.
Consent-Based Processing
We process your data only with your explicit consent or when necessary to provide our services.
Global Privacy Standards
We comply with international privacy laws including GDPR, CCPA, PIPEDA, and other regional regulations.
Third-Party Verified
Our privacy practices are independently audited and certified by recognized security organizations.
Privacy by Default
The most privacy-friendly settings are applied by default, with options to customize based on your preferences.
Privacy by the Numbers
Key Points to Remember
- We never sell your personal data to third parties
- You can export or delete your data at any time
- Military-grade encryption for all stored information
- Regular independent security and privacy audits
2. Information We Collect
Types of data we gather to provide our services
Account & Profile Information
We collect personal information that you provide when creating an account, updating your profile, or using our services. This information helps us personalize your experience and provide customer support.
Required Information
- • Full name and username
- • Email address (primary contact)
- • Password (encrypted and secure)
- • Account type and preferences
- • Basic profile information
Optional Information
- • Profile picture and bio
- • Phone number for security
- • Organization and job title
- • Social media profiles
- • Communication preferences
Data Accuracy
You are responsible for keeping your personal information accurate. Incorrect information may affect service delivery and security.
Identity Verification & Security
For enhanced security and compliance, we may collect additional verification information for business accounts and premium features.
Security
- • 2FA data
- • Security questions
- • Biometric data (if enabled)
- • Authentication tokens
Business
- • Company registration
- • Tax identification
- • Business address
- • Authorized representative
Compliance
- • KYC documentation
- • Gov-issued ID copies
- • Address verification
- • Compliance records
Payment & Billing Information
When you subscribe, we collect payment information necessary to process transactions securely through certified processors.
Billing Details
- • Billing name and address
- • Payment method type
- • Last 4 digits of cards
- • Transaction history
Security
- • Encrypted tokens
- • Fraud prevention data
- • Bank verification
- • Processor identifiers
We never store full card numbers on our servers. All processing is PCI DSS compliant.
3. How We Use Information
Transparent processing for legitimate business purposes
Every piece of data we collect serves a specific, legitimate purpose. We process your information transparently and proportionally.
Primary Processing Purposes
We process your personal information for six primary categories of purposes, each with specific legal bases and retention periods.
Service Delivery
Core platform functionality and service provision to meet contractual obligations.
Security & Fraud
Comprehensive monitoring to protect users and the platform from threats.
Analytics & Improvement
Optimizing user experience and platform performance.
Communication
Keeping users informed about updates, security, and billing.
Legal Compliance
Required to meet tax, regulatory, and financial obligations.
Business Operations
Supporting customer relationships and operational excellence.
6. Data Security
How we protect your information
Security is our foundation. We use enterprise-grade encryption and zero-trust protocols.
Multi-Layered Security Architecture
Encryption Standards
Advanced cryptography for data at rest and in transit.
Infrastructure Security
Robust protection across all system components.
Application Controls
Security-first development lifecycle (SSDLC).
7. Data Retention
How long we keep your information
We retain data only as long as necessary for service delivery, compliance, or fraud prevention.
User Account Data
Personal info and account settings retention.
Standard
Active duration + 2yr inactivity
Business Data
Workspace content and collaboration records.
Standard
Subscription + 30-day grace
Usage Analytics
Platform metrics and performance data.
Standard
13-18 months (then anonymized)
Security & Legal
Audit trails and compliance records.
Standard
7-10 years (Regulatory)
8. Your Privacy Rights
Understanding and exercising your choices
You have the right to access, correct, or delete your personal data. We provide tools to make this easy.
Access
View and understand all personal data we have.
Rectification
Correct inaccurate or incomplete information.
Erasure
Request deletion of your personal data.
Restriction
Limit how we process your personal data.
Portability
Receive data in portable, machine-readable formats.
Object
Object to processing based on legitimate interests.
9. International Transfers
Global data protection and cross-border transfers
Your data is protected worldwide. We use Standard Contractual Clauses (SCCs) and only partner with verified providers.
Our Global Transfer Principles
We transfer personal data internationally only when necessary for service provision and with appropriate safeguards to protect your privacy rights. Every transfer is governed by strict legal frameworks and security controls.
Service Delivery
Global cloud infrastructure for performance.
Business Ops
HR and finance systems for global workforce.
Redundancy
Multi-region backups for disaster recovery.
10. Children's Privacy
Special protections for our younger users
We are committed to children's safety. We do not knowingly collect data from children under 13 without verifiable parental consent.
Comprehensive Child Protection
We recognize that our platform may be used in educational or family contexts. We are committed to the highest level of protection for any users under 18.
Children Under 13
We do not knowingly collect personal info from children under 13 without verifiable parental consent. Any inadvertently gathered data is purged immediately.
Teens 13-17
Additional privacy protections and content filtering are automatically applied. Features are limited to educational and professional focus.
Safety Contact
If you believe we have inadvertently collected data from a child, contact us immediately.
11. Policy Updates
How we manage and communicate changes
Privacy is dynamic. We update our policies to reflect new features and legal requirements, ensuring you stay informed.
Our Update Philosophy
We are committed to maintaining transparent, timely, and user-centric policy updates that respect your privacy rights while adapting to evolving legal requirements and technological advances.
Transparency First
Before/after comparison views for all changes.
Advance Notice
30-day warning for material updates.
User Choice
Granular consent options for new processing.
Material Changes
Significant modifications affecting user rights or data processing.
Administrative
Clarifications, contact info, and minor operational changes.
Legal Compliance
Changes required by new laws (GDPR, CCPA) or court orders.
Security
Updates to improve security, safety, or data protection.
12. Contact us
Questions, concerns, or rights requests
Our dedicated privacy team is available to assist you. We aim to respond to all inquiries within 48 hours.
Privacy Team
General privacy questions and policy clarifications.
Data Rights
Access, deletion, and portability requests.
Complaints
Privacy violations and formal concerns.
DPO (EU/EEA)
GDPR compliance and data protection matters.
Office Location
HQ Address
Fybyte Technology Private Limited
Sector Sigma-01, Greater Noida
Uttar Pradesh, India 201305
Details
IST (UTC+5:30)
Mon - Fri, 9 AM - 6 PM