GDPR Compliance

Last updated: March 26, 2026

Our Commitment to GDPR

Xpecto® AI, a product of Xpecto® IT Solutions (www.xpectoitsolutions.com), is committed to protecting your personal data and complying with the General Data Protection Regulation (GDPR). This page explains how we ensure GDPR compliance and outlines your rights as a data subject.

Your Rights Under GDPR

Right to Access

Request a copy of your personal data we hold and information about how we process it.

Right to Rectification

Request correction of inaccurate or incomplete personal data we hold about you.

Right to Erasure

Request deletion of your personal data when it is no longer necessary for the purpose it was collected.

Right to Data Portability

Receive your personal data in a structured, machine-readable format and transfer it to another service.

Right to Restrict Processing

Request limitation on how we process your personal data in certain circumstances.

Right to Object

Object to processing of your personal data for direct marketing or legitimate interests.

Data We Collect

Under GDPR, we collect and process the following categories of personal data:

  • Identity Data: Name, username, company name
  • Contact Data: Email address, phone number, address
  • Technical Data: IP address, browser type, device information
  • Usage Data: Information about how you use our services
  • Transaction Data: Payment and subscription details

Legal Basis for Processing

We process your personal data under the following legal bases:

  • Contract: To fulfill our contractual obligations when you use our services
  • Consent: Where you have given explicit consent for specific processing
  • Legitimate Interests: For business operations, security, and service improvement
  • Legal Obligation: To comply with applicable laws and regulations

Data Security Measures

We implement appropriate technical and organizational measures to ensure the security of your personal data, including:

  • End-to-end encryption for data in transit and at rest
  • Regular security audits and penetration testing
  • Access controls and authentication mechanisms
  • Employee training on data protection
  • Incident response procedures

International Data Transfers

When we transfer personal data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, such as Standard Contractual Clauses approved by the European Commission or adequacy decisions.

Exercising Your Rights

To exercise any of your GDPR rights, please contact our Data Protection Officer at:

Data Protection Officer
Email: dpo@xpectoitsolutions.com
Office: B-05, Block H-160, BSI Business Park, Sector 63, Noida, Delhi - NCR, India 201301
Website: www.xpectoitsolutions.com

We will respond to your request within 30 days. If you are not satisfied with our response, you have the right to lodge a complaint with your local supervisory authority.