Digital Personal Data Protection Act (DPDP) Compliance Policy
Date Updated – 13th November 2025
This policy outlines PDeSol’s commitment to protecting the privacy and personal data of all individuals whose information we process, in accordance with the Digital Personal Data Protection Act, 2023 (“DPDP Act”), which is India’s primary law governing digital personal data privacy and security standards. This policy is based on global best practices, including concepts similar to the European Union’s GDPR.
Scope
This policy applies to:
- All personal data collected, stored, processed, and shared by PDeSol through our website, products, services, and operations within India and for Indian data subjects globally.
- All employees, contractors, and third parties handling personal data on behalf of PDeSol.
Core Principles
- Lawfulness, Fairness, and Transparency: All data is processed lawfully, fairly, and transparently. Data subjects (“Data Principals”) are informed of the data PDeSol collects and how it is used.
- Purpose Limitation: Data is collected for specified, clear, and lawful purposes and not processed further in a manner incompatible with those purposes.
- Data Minimization: Only data necessary for stated purposes is collected and processed.
- Accuracy: Personal data is kept accurate, complete, and up-to-date.
- Storage Limitation: Data is retained only for as long as necessary to fulfill the stated purpose or as required by law.
- Security: Appropriate measures are in place to protect data against unauthorized access, loss, alteration, or disclosure.
Data Subject Rights
PDeSol recognizes and upholds the following rights of Data Principals, as per DPDP Act:
- Right to access, correct, update, or delete their personal data
- Right to withdraw consent at any time
- Right to data portability (where applicable)
- Right to be informed about data collection and usage
- Right to grievance redressal—contact privacy@pdesol.in for any concerns or requests
Lawful Bases for Data Processing
We obtain clear, informed consent from users before collecting or processing their data, except where processing is required by law or contract, or for legitimate business purposes as defined under the DPDP Act.
Children’s Data
Parental or guardian consent is required for processing data of children under the age of 18. We have additional safeguards in place for such data.
Data Breaches
Any data breach is reported to both the affected individuals and the Data Protection Board of India as required by the DPDP Act. Remedial measures will be implemented immediately and transparently in case of a breach.
Data Sharing & Cross-border Data Transfer
Personal data may be shared with trusted service providers (data processors) under appropriate agreements and controls. Any cross-border transfer of personal data will comply with the DPDP Act’s requirements and be limited to jurisdictions approved by the Indian Government.
Data Protection Officer (DPO)
We have appointed a Data Protection Officer to monitor compliance with this policy, respond to data subject requests, and liaise with authorities. Contact: privacy@pdesol.in
Policy Review
This policy will be regularly updated to ensure compliance with DPDP Act and other applicable laws. Changes will be notified to all users via our website.



