Privacy Policy
Last updated: March 03, 2026
1. Introduction
GPUVolt ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you use our GPU cloud computing services at gpuvolt.ai. This policy is compliant with the Information Technology Act, 2000, the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, and applicable Indian data protection laws.
By using our services, you consent to the practices described in this Privacy Policy. If you do not agree, please discontinue use of our services.
2. Information We Collect
2.1 Account Information
When you create an account, we collect your full name, email address, authentication credentials (hashed), and billing or payment information (processed by our payment partners; we do not store raw card data).
2.2 Usage Data
We automatically collect information about how you use our platform, including GPU instance start/stop events, resource consumption metrics (GPU hours, memory, storage), API call logs, and dashboard interactions.
2.3 Technical & Device Information
We collect technical data such as IP addresses, browser type and version, operating system, device identifiers, and system logs for the purposes of service optimisation, fraud prevention, and security monitoring.
2.4 Communications
If you contact our support team, we retain the content of your communications (emails, chat transcripts) to resolve your queries and improve our support quality.
2.5 Cookies & Tracking Technologies
We use session cookies essential for platform operation and authentication. We do not use third-party advertising trackers. You can disable cookies through your browser settings, though this may affect platform functionality.
3. How We Use Your Information
We use the information we collect to:
- • Provide, operate, and maintain our GPU cloud services
- • Process billing, payments, and issue invoices
- • Monitor, analyse, and optimise service performance
- • Provide customer support and respond to queries
- • Ensure platform security, detect fraud, and prevent abuse
- • Send transactional communications (receipts, alerts, maintenance notices)
- • Send service updates or promotional communications (you may opt out at any time)
- • Comply with applicable legal obligations under Indian law
- • Improve our services based on aggregated usage patterns
4. Disclosure of Your Information
We do not sell, trade, or rent your personal information to third parties. We disclose your information only in the following circumstances:
4.1 Service Providers
We engage trusted third-party vendors who assist in operating our platform, including payment processors (e.g., Stripe, Razorpay), cloud infrastructure providers, email delivery services, and analytics tools. These providers are bound by strict data processing agreements and are permitted to use your data solely to perform services on our behalf.
4.2 Legal Requirements
We may disclose your information when required to do so by law, court order, government authority, or other legal process under Indian or applicable international law, or when we believe disclosure is necessary to protect our rights, your safety, or the safety of others.
4.3 Business Transfers
In the event of a merger, acquisition, restructuring, or sale of all or part of our business, your information may be transferred to the acquiring entity, subject to the same privacy protections described in this policy.
4.4 With Your Consent
We may share your information with other parties when you have given us explicit consent to do so.
5. Method of Disclosure
Where disclosure of your information to third parties is necessary, it is transmitted using the following methods:
- • Encrypted API calls — data shared with service providers is transmitted over TLS 1.2/1.3-encrypted HTTPS connections.
- • Tokenisation — payment information is tokenised by our payment processors; we never transmit or store raw card numbers.
- • Secure file transfer — any bulk data transfers for legal or business-transfer purposes are conducted via encrypted, access-controlled channels.
- • Minimum necessary data — we share only the data strictly required for the stated purpose; we do not share full data sets when a subset suffices.
6. Security Practices
We implement industry-standard security measures in compliance with the IT (SPDI) Rules, 2011, including:
- • Encryption in transit: All data is transmitted over TLS 1.2 or higher.
- • Encryption at rest: Databases and storage volumes are encrypted using AES-256.
- • Access controls: Role-based access control (RBAC) ensures only authorised personnel can access personal data.
- • Authentication: Multi-factor authentication (MFA) is enforced for all internal systems and encouraged for user accounts.
- • Regular audits: We conduct periodic security assessments and vulnerability scans of our infrastructure.
- • Incident response: We maintain a documented incident response plan. In the event of a data breach, affected users will be notified as required by applicable law.
However, no method of transmission over the internet is 100% secure. While we strive to protect your personal information, we cannot guarantee absolute security.
7. Data Retention
We retain your personal information for as long as your account is active or as necessary to provide services. We also retain data as required by law (e.g., financial records for a minimum of 8 years under Indian accounting standards). Upon account deletion or upon your written request, personal data will be purged within 30 days, except where retention is required by law.
8. International Data Transfers
Your information may be processed on servers located outside India. When we transfer data internationally, we ensure appropriate safeguards are in place (such as Standard Contractual Clauses or equivalent protections) to maintain the level of protection required under Indian law.
9. Your Rights
You have the following rights with respect to your personal information:
- • Access: Request a copy of the personal data we hold about you.
- • Correction: Request correction of inaccurate or incomplete personal data.
- • Deletion: Request deletion of your personal data, subject to legal retention obligations.
- • Opt-out: Unsubscribe from non-transactional communications at any time via the unsubscribe link in our emails or by contacting us.
- • Grievance redressal: Lodge a complaint with our Grievance Officer (see Section 11).
To exercise any of these rights, contact us at [email protected]. We will respond within 30 days of receiving your request.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by email or through a prominent notice on our platform at least 14 days before the changes take effect. Your continued use of our services after such notice constitutes acceptance of the updated policy.
11. Grievance Officer & Contact
In accordance with the Information Technology Act, 2000 and applicable rules, our Grievance Officer can be contacted at:
Email: [email protected]
GPUVolt
Flat-301, Bd. 1117, 14th Main, 21st A Cross Road,
Sector 3, HSR Layout, Bengaluru, Karnataka – 560102, India
Grievances will be acknowledged within 48 hours and resolved within 30 days of receipt.