Legal
Privacy Policy
We collect as little personal data as we can, use it to run your service, and never sell it. This policy explains what we collect, why, who processes it with us, how long we keep it and your rights.
Who we are
RyzenRDP is operated by Rackvolt Cloud Solutions Pvt Ltd, a private limited company incorporated in India ("we", "us"). We decide how and why your personal data is used, so we are the data fiduciary under India's Digital Personal Data Protection Act, 2023 ("DPDP Act") and the controller under the EU and UK General Data Protection Regulation (GDPR) where it applies to you. Contact us at [email protected].
This policy covers ryzenrdp.com, the RyzenRDP console and the services we provide. It does not cover the content of your server, which you control.
Data we collect
- Account and billing data: your name, email address, postal address, country, a phone number if you give one, and the details on your invoices.
- Verification data: where we must verify a customer, the details you give us for it, such as the purpose of a service.
- Service data: the servers you order, their IP addresses, locations and settings, your invoices, payment records and account credit.
- Support data: your tickets and emails, and anything you include in them.
- Technical data: IP addresses, browser details and request records in the server logs of ryzenrdp.com and the console, and the IP address and time of each console sign-in.
- What we do not collect: card numbers (we do not accept cards), wallet keys, or the contents of your server. We look inside a server only when you ask us to, or when the law or an abuse or security investigation requires it.
How we use it
| Purpose | Data used | Legal basis |
|---|---|---|
| Set up, run and bill your services | Account, billing and service data | The contract with you |
| Answer support requests | Support and service data | The contract with you |
| Verify customers and keep the records the law requires | Account, verification and technical data | Legal obligation |
| Prevent fraud and abuse and keep our systems secure | Technical and service data | Legitimate interests; legal obligation |
| Send service email: invoices, setup, security notices and policy changes | Email address | The contract with you; legal obligation |
Under the DPDP Act we process your data for the purpose you gave it to us for, to meet legal obligations, or with your consent. We do not sell personal data, do not use it for advertising, do not send marketing email without your consent, and do not make decisions about you by automated means.
Cookies and analytics
The public pages of ryzenrdp.com set no cookies and load no third-party scripts: no analytics tags, advertising pixels, chat widgets or session recording. If you choose a light or dark theme, that choice is stored only in your own browser.
The console sets cookies that keep you signed in and protect its forms against misuse; they are not used for tracking. Cloudflare, which protects our websites, may set a strictly necessary security cookie.
We use Google Search Console to see aggregate data about how our pages appear in Google Search, such as queries, impressions and clicks. It adds nothing to our pages and gives us no data about individual visitors.
Payments
Payments are made in cryptocurrency through Cryptomus, which runs the payment page. Cryptomus receives the invoice amount and reference and the details you enter on its page, processes them under its own privacy policy, and may ask you to verify your identity under the laws that apply to it. We receive the payment status, amount, currency, network and transaction reference. Blockchain transactions are public by design: a payment and the addresses involved stay visible on the blockchain, and we cannot erase them.
Processors we use
We share personal data only with service providers that need it to run the service, under terms that require them to protect it, and with authorities when the law requires it.
- Cloudflare: content delivery, DNS and protection for ryzenrdp.com and the console. It processes visitor IP addresses and request data.
- Cryptomus: cryptocurrency payment processing, as described under Payments.
- Our email hosting provider: the infrastructure provider that hosts the mail server for ryzenrdp.com, through which we send and receive account and support email. It processes email addresses and message content.
- Data centres and server infrastructure: the data centres in each server location, and the infrastructure provider that hosts our website and console. They host the systems that store account and service data. Our server management platform keeps technical records for each server, such as its IP addresses, resources and a customer reference.
- Google (Search Console): aggregate search data only, as described above.
Some of these providers process data outside India and outside your own country, including in the United States and the European Union. Where the law requires it, these transfers rely on appropriate safeguards.
Retention
We keep personal data only as long as we need it for the purposes above, or as long as the law requires:
| Data | How long we keep it |
|---|---|
| Account, verification and service records | While your account is open, and for 5 years after your last service ends (records Indian law requires server providers to keep) |
| Invoices and payment records | 8 years from the end of the financial year they belong to (Indian accounting and tax law) |
| Support tickets and emails | While your account is open, and for 3 years after your last service ends |
| Server logs of the website and console | 180 days |
| The contents of a server | Deleted when the server is terminated; they cannot be recovered |
When a period ends, we delete the data or make it anonymous.
Your rights
Wherever you live, you can ask us to:
- access the personal data we hold about you and learn how we use it;
- correct, complete or update it;
- erase it, unless the law requires us to keep it (see Retention);
- withdraw consent you gave, without affecting processing that took place before;
- nominate someone to exercise your rights if you die or become unable to (DPDP Act);
- object to or restrict some processing, and receive your data in a portable format (EU and UK GDPR).
Write to [email protected] from the email address on your account, or open a ticket in the console. We may need to confirm your identity first, and we reply within 30 days. If you are not satisfied with our answer, contact our Grievance Officer (below). You may also complain to the Data Protection Board of India or, in the EU or UK, to your local data protection authority.
Security
We protect personal data with access controls, encrypted (HTTPS) connections to the website and console, two-factor authentication for console accounts, and by limiting who on our team can reach customer data. No system is perfectly secure: if a breach affects your personal data, we will tell you and the authorities as the law requires.
Children
Our services are not for anyone under 18, and we do not knowingly collect personal data from children.
Changes to this policy
We may update this policy. The "Last updated" date at the top shows the current version, and we tell customers by email or in the console about any change that materially affects them.
Grievance Officer
Questions, requests and complaints about personal data can be sent to our Grievance Officer at [email protected] with "Privacy" or "Grievance" in the subject. We acknowledge every complaint and answer it within the time limits set by Indian law. The Grievance Officer's name, designation and our address are in the Terms of Service.
Contact
Privacy questions and requests: [email protected], or a ticket in the console.