

At Zolarys, we build digital products — not surveillance tools. This policy explains what data we collect, why we collect it, and how we keep it safe. No legalese, no hidden agendas.
When you engage with Zolarys through our contact forms, project inquiries, or service agreements, we collect information you voluntarily provide. This includes your name, email address, phone number, company name, project details, and any other information you choose to share in communications with our team.
When you visit our website, our servers automatically log standard technical information. This includes your IP address, browser type and version, operating system, referring URLs, pages visited, time spent on pages, and device identifiers. We use this data to improve site performance and user experience.
We use essential cookies for site functionality and analytics cookies to understand how visitors interact with our website. We use Google Analytics 4 for traffic analysis and behavior tracking. You can control cookie preferences through your browser settings at any time.
We use your information primarily to deliver our services — web development, mobile app development, UI/UX design, and brand identity projects. This includes communicating about project progress, deliverables, timelines, and invoicing.
We may use your contact information to respond to inquiries, send project updates, share relevant industry insights, or inform you about new services. You can opt out of non-essential communications at any time by contacting us directly.
We analyze aggregated, anonymized usage data to understand traffic patterns, improve our website, optimize our services, and make informed business decisions. This data is never sold or shared with third parties for advertising purposes.
Zolarys does not sell, rent, or trade your personal information to third parties. Period. Your data is not a product — your trust is our priority.
We work with a limited number of trusted service providers who assist in operating our business — including hosting providers (Vercel, AWS), analytics services (Google Analytics), email services, and project management tools. These providers are contractually bound to protect your data and use it only for the purposes we specify.
We may disclose your information if required by law, in response to a valid legal process, or to protect the rights, property, or safety of Zolarys, our clients, or the public.
We implement industry-standard security measures to protect your information, including SSL/TLS encryption for all data in transit, secure server infrastructure, regular security audits, access controls, and encrypted backups. Our development practices follow OWASP security guidelines.
We retain your personal information only for as long as necessary to fulfill the purposes outlined in this policy, comply with legal obligations, resolve disputes, and enforce our agreements. Project-related data is retained for the duration of our engagement plus a reasonable period for reference and legal compliance.
You have the right to access, correct, or update your personal information at any time. Contact us at privacy@zolarys.com and we will respond within 30 days.
You may request deletion of your personal data. We will comply with your request unless we are legally required to retain certain information. Note that deletion may affect our ability to provide ongoing services or support.
You have the right to receive a copy of your personal data in a structured, commonly used, and machine-readable format. Contact us to initiate a data export request.
You can opt out of non-essential communications, analytics tracking, and cookie collection at any time. Essential cookies required for site functionality cannot be disabled while using our services.
As a global agency serving clients worldwide, your data may be processed in countries other than your own, including India where our primary operations are based. We ensure that all cross-border data transfers comply with applicable data protection laws and maintain the same level of security regardless of where data is processed.
We comply with applicable data protection regulations including the Information Technology Act (India), and respect the principles of GDPR for our EU-based clients and CCPA for California residents. If you have specific compliance requirements, please discuss them with us during project onboarding.
Our services are designed for businesses and are not directed at individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have inadvertently collected data from a minor, we will promptly delete it.
We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will notify you through our website or via email. We encourage you to review this page regularly. The "Last Updated" date at the top indicates when the latest revision was made.
If you have any questions about this Privacy Policy or how we handle your data, don't hesitate to reach out. We believe in clear, honest communication.