Privacy Policy
Last updated: June 11, 2026
1. Introduction
SymanticOps operates a multi-tenant SaaS platform where each customer organization is the Data Controller and SymanticOps acts as a Data Processor for controller-managed data. This policy explains how we collect, use, disclose, retain, and protect information when you use the Service at https://www.symanticops.com.
2. Information We Collect
2.1 CRM features
- Contact records, lists, tags, notes, lifecycle data, and custom fields
- Lead source, lead status, lead score, owner assignment, and activity history
- Messages, tasks, campaign enrollment, and automation-related events
2.2 Meetings features
- Booking details such as name, email, notes, date, time, and timezone
- Consent timestamps for booking-related processing
- Calendar synchronization data and scheduling metadata
2.3 Messaging features
- Message content, delivery status, timestamps, and provider identifiers
- Recipient handles, conversation metadata, and channel configuration
2.4 HRMS features
- Employee profile data, department assignment, and employment status
- Leave requests, attendance records, and compensation data where enabled
2.5 Technical and support data
- IP address, user agent, device information, and access logs
- Cookie and session data needed to operate the Service
- Support requests, audit events, and security logs
3. Legal Basis for Processing
- Contract performance - to provide the features your organization requested, including CRM, meetings, messaging, and HRMS workflows.
- Legitimate interests - to secure the platform, prevent abuse, and improve reliability.
- Consent - for cookies and any processing where we rely on affirmative consent from the data subject.
- Legal obligation - to retain or disclose records when required by law, regulation, or a valid request.
4. How We Use Data
- Operate the Service and provide controller-configured features
- Send transactional emails and service notifications
- Store and route CRM, meeting, and messaging records
- Process employee and HR administrative workflows
- Detect fraud, troubleshoot errors, and maintain audit trails
- Comply with legal obligations and respond to data subject requests
5. Data Retention
Unless an organization sets a different retention policy, the Service uses the default retention windows below:
- Bookings: 365 days
- Messages: 365 days
- Contacts: 730 days
- Audit logs: 365 days
Retention may be extended where needed for legal obligations, dispute resolution, or security investigations.
6. Sub-Processors
We use the following service providers to deliver the Service:
- AWS - hosting, storage, infrastructure, and database operations
- Resend - transactional and verification email delivery
- Google - calendar integration and related productivity services
These sub-processors act under our instructions and contractual confidentiality obligations.
7. Data Subject Rights
Depending on your jurisdiction, you may have the right to:
- Access your data
- Correct inaccurate or incomplete data
- Delete data where applicable
- Receive a copy of your data in a portable format
- Object to or restrict certain processing
You can exercise these rights through our public request form at /data-request.
8. DPO Contact
Privacy and data protection inquiries can be sent to privacy@symanticops.com.
9. Cross-Border Transfers
Data may be processed in countries outside your own, including the United States and other jurisdictions where our service providers operate. Where required, we use appropriate safeguards for international transfers.
10. DPDP Act Notice
Where the Digital Personal Data Protection Act, 2023 applies, the organization using the Service acts as the Data Fiduciary and SymanticOps acts as a Data Processor.
- We process personal data only on documented instructions from the controller
- We support consent withdrawal workflows through the data request process
- We maintain reasonable technical and organizational security measures
- We assist controllers with data subject rights and breach response obligations
To withdraw consent, submit a request at /data-request.
11. Cookie Policy
We use essential cookies and similar technologies for authentication, session management, security, and preferences. Non-essential cookies are only used when permitted by your consent choice. Your banner preference is stored locally in your browser so we can remember whether you accepted or rejected non-essential cookies.
You can manage cookie settings in your browser or withdraw consent by clearing your browser data and revisiting the Service.
12. Security
We use access controls, encryption in transit, and environment-level protections to protect data. No online service is completely secure, but we work to reduce risk and respond quickly to incidents.
13. Changes to This Policy
We may update this policy from time to time. Material changes will be surfaced within the Service or through email where appropriate.
14. Contact Us
Questions about this policy or our data practices can be sent to privacy@symanticops.com.

