Data Protection Policy
1. Purpose & Scope
The purpose of this Policy is to establish SoftGen's commitment to protecting personal data and confidential information throughout its lifecycle.
This Policy applies to:
- Visitors to the SoftGen website & prospective clients
- Existing clients & business partners
- Software development projects & SaaS products operated by SoftGen
- Employees, contractors, and authorized personnel
2. Types of Data We Protect
Depending on the services provided, SoftGen may process or protect information including:
- Personal Information: Name, Email address, Phone number, Company name, Job title.
- Business Information: Project requirements, Technical documentation, Business processes, Quotations.
- Technical Information: IP address, Browser information, Device logs, Performance metrics.
- Project Assets: Source code, database structures, Design files, API documentation, deployment keys.
3. Data Protection Principles
SoftGen follows the following principles when handling information:
- Lawfulness, Fairness, & Transparency
- Purpose limitation & data minimization
- Accuracy & storage limitation
- Integrity & confidentiality
- Accountability
4. Data Security
SoftGen implements reasonable safeguards including HTTPS/TLS encrypted communications, role-based access control, strong authentication practices, secure cloud infrastructure, secure source code repositories, update management, logging, and backup procedures.
5. Data Retention
Information is retained only for as long as necessary to complete projects, fulfill contractual obligations, meet legal requirements, resolve disputes, and maintain records.
When information is no longer required, it may be securely deleted or anonymized.
6. International Data Processing
Certain information may be processed or stored using infrastructure located outside your country depending on the technology providers used to deliver our services. Where applicable, reasonable safeguards are implemented to protect such information.
7. Access to Information
Access to confidential information is granted only to authorized individuals who require such access to perform their responsibilities. Access permissions are reviewed periodically and may be revoked when no longer required.
8. Data Breach Response
If SoftGen becomes aware of a security incident affecting protected information, we will take reasonable steps to investigate the incident, limit potential impact, restore affected services, notify affected parties when required by law or contract, and improve controls to reduce future risks.