CmpliHR.ai
Privacy Policy

How we collect, use and protect your information.

Last updated: 2026-08-14

This Privacy Policy describes how cmplihr.ai ("we", "our", "the Platform") collects, uses, discloses and safeguards personal information when you interact with our website, request a demonstration, or use the Platform.

cmplihr.ai is jointly owned and developed by Talent Works LLP and Globalion Technology Solutions Private Limited (the "Operators"). For any privacy enquiry, you may contact us at contact@cmplihr.ai.

1. Information we collect

1.1 Information you provide

  • Contact details such as name, work email, phone number, designation and employer.
  • Account, role and tenant identifiers for users of the Platform.
  • Information you submit through forms, enquiries, support tickets or written communication.
  • Customer content uploaded into the Platform (e.g. statutory records, registers, notices, evidence).

1.2 Information collected automatically

  • Device, browser and network identifiers, IP address and approximate location.
  • Pages visited, actions taken, timestamps and referring URLs.
  • Cookies and similar identifiers, as described in our Cookies Policy.

2. How we use your information

  • To deliver, operate, secure and improve the Platform and our website.
  • To respond to enquiries, deliver demonstrations and provide support.
  • To comply with statutory, regulatory and contractual obligations.
  • To detect, investigate and prevent fraud, abuse or security incidents.
  • For limited, opt-in marketing communications relating to our services.

3. Legal bases

We process personal data on the basis of your consent, performance of a contract, compliance with a legal obligation, or our legitimate interests in operating and securing the Platform. For Indian data principals, we rely on consent and the legitimate uses recognised by the Digital Personal Data Protection Act, 2023.

4. Roles and responsibilities

For customer content uploaded into the Platform, our customer (the enterprise) is the data fiduciary / controller, and cmplihr.ai is the data processor acting on the customer's documented instructions and Data Processing Addendum.

5. Disclosures

We may share personal information with vetted sub-processors — categories include cloud hosting and infrastructure providers, AI/large-language-model processing providers, and email delivery providers — with our customers (in the case of their authorised users), with professional advisors, and where required by law. A current list of named sub-processors is available on request.

6. AI processing

Parts of the Platform use AI/large-language-model providers to help generate draft responses, summaries and gap analyses from the information you or your organisation provide. We do not use your data to train any third-party provider's general-purpose models, and AI outputs are always presented for human review rather than acted on automatically. See our Security Policy for how tenant isolation is enforced in any AI prompt context.

7. International transfers

Customer content is stored in India-located data regions. Where any limited operational processing occurs outside India (for example, by a support engineer, or by an AI processing provider as described above), we apply contractual safeguards and data-minimisation by default.

8. Retention

We retain personal information for as long as necessary to deliver the Platform, meet our legal obligations, resolve disputes and enforce our agreements. Customer-specific retention is defined in the order form or DPA. If you complete our free preliminary self-assessment without becoming a customer, we retain the details and answers you provide for 24 months from the date you complete it, after which they are deleted — you can ask us to erase them sooner at any time (see the consent notice shown on the assessment itself for full detail).

9. Your rights

  • Access, correction and erasure (where applicable).
  • Withdrawal of consent for marketing communications at any time.
  • Grievance redressal through our Grievance Officer (details below).

10. Security

We apply technical and organisational safeguards including encryption in transit and at rest, tenant isolation, role-based access controls, audit logging, vulnerability management and incident response procedures.

11. Grievance Officer

In accordance with the Information Technology Act, 2000 and the DPDP Act, 2023, complaints may be addressed to our Grievance Officer at contact@cmplihr.ai. We will acknowledge complaints promptly and respond within statutory timelines.

12. Updates

We may update this Privacy Policy from time to time. Material changes will be highlighted on this page or, where appropriate, communicated by email.

This document is published for transparency and does not constitute legal advice. For specific concerns, contact contact@cmplihr.ai.