Privacy Policy

Last updated: September 2026

Cyberfact Security ("we", "our", "us") respects your privacy and is committed to compliance with India's Digital Personal Data Protection (DPDP) Act 2023 and global privacy standards. This Privacy Policy outlines how data is collected, stored, and protected across our website (cyberfactsecurity.com) and software products, including QrEatz Restaurant POS OS — qreatz.in.

1. Client & Demonstration Inquiries

When you request a project quote, free assessment, or product demonstration ("Book a Free Live Demo"), we collect contact credentials including your name, business name, phone/WhatsApp number, email address, city, and operational specifications. This information is exclusively utilized to schedule your live walkthrough and communicate technical proposals.

2. QrEatz Restaurant Guest Privacy & Zero Data Resale

For restaurants deploying QrEatz Contactless QR Ordering and WhatsApp CRM (via qreatz.in):

  • All diner phone numbers and ordering histories captured at tables belong solely to the merchant outlet.
  • Cyberfact Security does not sell, broker, or syndicate consumer phone numbers to third-party advertisers or food delivery aggregators.
  • Payment transactions are routed directly to licensed payment gateways (PhonePe, Paytm, BharatPe, Pine Labs) with zero storage of CVVs or banking credentials.

3. Security Defenses & Data Protection

We enforce bank-grade defensive controls including TLS 1.3 encryption in transit, AES-256 encryption at rest, secure SQLite/PostgreSQL replicas, and strict Role-Based Access Control (RBAC) to eliminate unauthorized data access.

4. Data Subject Rights & Contact

You may request access to, correction of, or deletion of your personal contact records at any time by contacting our data protection officer at contact@cyberfactsecurity.com or messaging via official WhatsApp (+91 82520 02914).

WhatsApp