Legal Documentation

Privacy Policy

Last Updated: May 22, 2026
Comprehensive privacy policy detailing how Stragure collects, uses, and protects your personal information in compliance with Indian privacy laws.

Table of Contents
1. Introduction Our commitment to privacy
2. Data Collection What information we collect
3. Data Usage How we use your information
4. Security How we protect your data
5. Your Rights Your privacy choices
6. Contact Get in touch with us

1. Introduction

This Privacy Policy explains how we collect, use, process, and protect your personal information when you use our website, GrowchainAI platform, and related services.

Legal Compliance: This policy complies with Information Technology Act, 2000 and SPDI Rules, 2011.

2. Information We Collect

🔹 Personal Information

  • Contact Information: Name, email, phone, company details
  • Account Information: Username, password, preferences
  • Voice Data: Voice recordings and speech transcripts processed only with explicit user consent for AI-powered voice assistant functionality
  • Biometric Information: When facial attendance features are enabled, the platform may generate and store a facial biometric template (embedding) for identity verification and attendance purposes. Original facial images captured during enrollment or attendance verification are processed solely for identity verification, liveness detection, and generation of biometric templates, and are not retained after processing unless required for operational, legal, audit, or compliance purposes.
  • Liveness Verification Data: The platform may process liveness detection signals to verify that attendance submissions originate from a live person and to prevent spoofing attempts.

🔹 Technical Information

  • Device Data: IP address, browser type, device identifiers
  • Usage Analytics: Pages visited, interaction patterns
  • Tracking: Cookies and similar technologies

3. How We Use Your Information

  • Platform Services: Provide and maintain GrowchainAI platform
  • Voice AI Processing: Process voice recordings, speech transcripts, and AI-powered enterprise workflow requests using secure backend infrastructure and OpenAI APIs
  • Security: Authentication and account protection
  • Support: Customer service and platform improvements
  • Compliance: Legal requirements and business operations

🔹 AI Voice Assistant & Third-Party AI Processing

GrowchainAI includes AI-powered voice assistant and natural-language processing features.

When users interact with voice assistant functionality, certain data may be securely transmitted to and processed by trusted third-party AI service providers, including OpenAI APIs, solely for the purpose of providing requested functionality such as:

  • Speech recognition and transcription
  • Natural-language understanding
  • AI-powered responses and workflow assistance

This processing may include:

  • Voice recordings captured while actively using voice assistant features
  • Speech transcripts generated from user voice input
  • Work-related operational requests such as leave applications, payroll queries, approvals, employee search, attendance requests, inventory queries, procurement workflows, and other enterprise operations initiated by the user
  • Authenticated user account context required to fulfill enterprise workflow requests

Voice and AI processing occurs only after the user provides explicit in-app consent.

Data is transmitted over encrypted connections and is not sold to third parties.

Voice recordings are processed transiently for transcription and are generally not retained after processing by our backend proxy infrastructure unless required for operational, legal, audit, or compliance purposes.

Data transmitted through OpenAI APIs is not used to train AI models.

🔹 Facial Recognition & Attendance Verification

The platform may provide facial-recognition-based attendance functionality for organizations that enable this feature.

Facial biometric templates and liveness verification data are used solely for:

  • Employee identity verification
  • Attendance recording and validation
  • Prevention of impersonation and attendance fraud
  • Liveness verification and anti-spoofing protection

Biometric data is not used for advertising, profiling, marketing, or purposes unrelated to attendance management and authorized workforce operations.

Biometric templates are retained only for as long as required to provide attendance verification services, comply with legal obligations, or satisfy organizational record-retention requirements, after which they are securely deleted.

4. Data Security

  • 🔐 Encryption: Military-grade encryption in transit and at rest
  • 🛡️ Access Controls: Multi-factor authentication & role-based access
  • 🎙️ Voice Protection: Advanced encryption for voice data processing
  • 🤖 AI Processing Security: Audio and AI-related data is transmitted through encrypted connections and processed through secured backend proxy infrastructure
  • 👤 Biometric Protection: Facial biometric templates are stored securely using industry-standard security controls. Access is restricted to authorized personnel and system processes required for attendance verification.
  • 🔍 Regular Audits: Continuous security assessments

5. Your Rights and Choices

  • 📥 Access: Get a copy of your personal data
  • ✏️ Correct: Fix inaccurate or incomplete information
  • 🗑️ Delete: Request removal of personal information
  • 📧 Opt-out: Unsubscribe from marketing communications
  • 🚫 Withdraw: Remove consent for data processing
  • 👤 Biometric Data: Request information regarding biometric data associated with your account and, where permitted by organizational policy and applicable law, request its deletion.
Exercise your rights: info@stragure.com

6. Contact Information

For questions about this Privacy Policy or our data practices:

Privacy Inquiries: privacy@stragure.com

📧 Email: info@stragure.com
⏰ Response Time: Within 30 days per Indian regulations
⚖️ Jurisdiction: Governed by the laws of India