1. Introduction
EK Ra Sunya Inc. ("we", "us", "our") is a technology company registered in Nepal. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our websites and services, including ekrasunya.com, ekrasunya.cloud, erp.ekrasunya.com, and all associated products and services.
2. Information We Collect
We collect information that you provide directly and information gathered automatically when you use our services:
Personal Information
- Name, email address, and phone number (via contact forms or account registration)
- Company name, role, and organization details
Usage Data
- Pages visited, browser type, IP address, and device information
- Cookies and similar tracking technologies
Chat & Communication Data
- Messages exchanged with our website chat assistant and WhatsApp bot
- Contact details you provide during chat (name, email, phone number)
- Chat session identifiers and conversation history
Business Information
- Company name, industry, and organizational details provided during onboarding
3. How We Use Your Information
- Deliver, maintain, and improve our services
- Process transactions and send invoices
- Communicate about projects, updates, and support
- Provide AI-powered chat assistance and follow up on inquiries
- Improve our platforms and user experience
- Comply with legal obligations
4. Cloud & Hosting Services (ekrasunya.cloud)
- Client data stored on our managed servers remains the property of the client at all times.
- We access hosted data only for service maintenance and only with the client's consent.
- Domain registration data is handled per the respective registrar's policies (Namecheap, Babal Host, etc.).
- Server credentials are stored in encrypted form and accessible only to authorized personnel.
5. ERP Platform (erp.ekrasunya.com)
- Employee, payroll, and business data entered by clients is owned by the client.
- We do not access client ERP data unless required for support with the client's explicit permission.
- Financial data (payroll, invoices, tax records) is encrypted at rest and in transit.
- Data isolation is enforced between organizations — there is no cross-tenant data access.
6. Data Sharing & Third Parties
We may share limited information with trusted third parties solely to operate our services:
- Payment processors for billing and transactions
- Cloud infrastructure providers for hosting
- Analytics tools using anonymized usage data only
- AI service providers (e.g., OpenAI) to power our chat assistant — chat messages are processed to generate responses but are not used to train third-party models
We never sell personal data to third parties.
7. Data Security
- SSL/TLS encryption across all platforms
- Regular security updates and monitoring
- Access controls and role-based permissions
- Regular backups with secure storage
8. Data Retention
- Account data: Retained while your account is active, plus 12 months after deletion.
- Hosted service data: Retained per the service agreement and deleted upon service termination.
- Contact form submissions: Retained for 24 months.
- Chat conversations: Chat messages and associated contact details are retained for 24 months for service improvement and follow-up purposes.
- Usage logs: Retained for 12 months.
9. Your Rights
You have the right to:
- Access your personal data
- Correct inaccurate data
- Request deletion of your data
- Request data portability
To exercise any of these rights, contact us at [email protected].
10. Cookies
- Essential cookies: Session management and theme preference (eks-theme).
- Analytics cookies: Anonymous usage statistics.
- We do not use third-party advertising cookies.
- You can manage cookies through your browser settings.
11. Changes to This Policy
We may update this Privacy Policy periodically. Material changes will be communicated via email to registered users. Continued use of our services after changes are posted constitutes acceptance of the updated policy.
12. Contact Us
If you have questions about this Privacy Policy, contact us: