Privacy Policy & Data Protection

How Sandeep Services processes, safeguards, and respects your digital personal data under India's Digital Personal Data Protection Act, 2023.

Last Updated: March 2026 • DPDP Act (2023) Alignment

This Privacy Policy applies to Sandeep Services (acting as the "Data Fiduciary") and all affiliated digital interfaces including the website (sandeepservices.com) and the Sandeep Services Attendance Mobile Application. This document explains how we collect, process, retain, and safeguard personal data of our users, website visitors, job applicants, and deployed personnel (the "Data Principals") in accordance with The Digital Personal Data Protection Act, 2023 (Act No. 22 of 2023) and applicable Indian cybersecurity and data protection regulations.

1. Statutory Framework & Data Fiduciary Details

Under the provisions of the Digital Personal Data Protection Act, 2023 (DPDPA), Sandeep Services is the designated Data Fiduciary responsible for determining the purpose and means of processing personal data:

2. Categories of Digital Personal Data Collected

In accordance with the principle of Data Minimization (Section 6 & 8 of DPDPA 2023), we collect only the minimum personal data strictly necessary to fulfill specified operational and commercial requirements:

3. Specified Lawful Purpose of Processing

We process digital personal data strictly on lawful grounds for the following specified purposes:

4. Notice & Consent Architecture

Under Section 6 of the DPDP Act, 2023, every request for personal data is accompanied by a clear, itemized notice. By submitting personal data through our inquiry forms or logging into our enterprise applications, you provide explicit, free, specific, informed, and unambiguous consent for processing for the specified purpose.

Right to Withdraw Consent: Data Principals have the unconditional right to withdraw their consent at any time by writing to our Grievance Redressal Officer. Upon receipt of consent withdrawal, processing will cease unless retention is mandated by prevailing statutory laws.

5. Statutory Rights of the Data Principal

Under Chapter III (Sections 11 to 14) of the DPDP Act, 2023, all Data Principals possess the following enforceable rights:

6. Reasonable Security Safeguards & Encryption

In compliance with Section 8(5) of DPDPA 2023, Sandeep Services has instituted robust technical, operational, and physical security measures:

7. Prohibition on Data Selling & Third-Party Disclosures

Sandeep Services strictly upholds the trust of its clients and workforce:

8. Purpose Limitation & Data Retention Policy

Personal data is retained only for the duration necessary to satisfy the specified operational purpose for which it was collected, or as required by applicable statutory labor and commercial record-keeping regulations. When records reach the end of their retention lifecycle or upon a valid erasure request, they are irreversibly anonymized or securely deleted.

9. Statutory Grievance Redressal Officer (GRO) & Escalation

If you wish to exercise any statutory Data Principal rights, report a privacy concern, or file a grievance under the Digital Personal Data Protection Act, 2023, please reach out directly to our designated Grievance Redressal Officer:

Grievance Redressal Officer (DPDPA 2023)

Name & Designation: Compliance & Data Protection Desk

Email: info@sandeepservices.com / pinpoint@sandeepservices.com

Direct Telephone: +91 9010000536

Office Address: 2nd Floor, 2-2-61/14, 1/B, Main Road, Hayathnagar, Hyderabad, Telangana 500013, India

Response Timeframe: All grievances and data access requests will be formally acknowledged within 48 hours and resolved within 30 business days.

Escalation: In the event that a grievance remains unresolved after exhausting our internal grievance redressal mechanism, the Data Principal retains the right to file a formal complaint with the Data Protection Board of India (DPBI) in accordance with Section 13(3) of the Act.