This Privacy Policy explains how Azisly ("Azisly", "we") handles personal information collected through the AzislyLab platform ("Service"). It is written to align with the Digital Personal Data Protection Act, 2023 (India) and other applicable privacy laws.
The Service is a business-to-business platform used by higher-education institutions. For most personal data processed through the Service — student rosters, notice recipients, communication records — the institution ("Customer") is the Data Fiduciary and Azisly acts as a Data Processor on its behalf. The terms of that processing are set out in the Data Processing Agreement. Azisly does not use your data for any purpose unrelated to providing the Service to your institution, and does not use it for marketing or advertising.
1. Information we collect
1.1 Account information (Users)
- Full name, email address, role (superadmin, college admin, department admin, T&P admin);
- Institution affiliation and department, where applicable;
- Hashed authentication credentials.
1.2 Institutional data (uploaded by Customer)
- Student directory: name, email, roll number, department, batch;
- Notice content, attachments, and delivery records;
- An engagement score derived from your use of AzislyLab's affiliated career-coaching apps (MockMate AI, ResumeArchitect, DomainPrep, InterviewPrep), where you have separately consented to that use with the relevant app. We have no student account, login, or direct interaction with you — interview, CV, and video/audio data are held by the relevant coaching app, not by us.
1.3 Technical data
- IP address, browser user-agent, and server access logs;
- Session cookies required to keep Users signed in;
- Product-analytics events (page views, feature usage) if enabled — always in aggregate.
2. How we use information
- To provide and operate the Service — authentication, notice delivery, report generation;
- To generate and display an engagement score derived from your use of affiliated career-coaching apps, where consented, to support your institution's training-and-placement function;
- To communicate with account administrators about the Service — outages, feature updates, billing;
- To secure the Service — abuse detection, audit trails, incident investigation;
- To comply with legal obligations.
We do not sell personal information. We may use it, in de-identified or aggregated form, to improve Azisly's own AI models.
3. Legal basis
For personal data of Users, our processing is based on the contract for the Service and, where applicable, consent. We have no student account, login, or other direct interactive relationship with you. For institutional data relating to students, your institution is responsible for ensuring a lawful basis under the DPDP Act for providing your data to us, including obtaining any verifiable parental consent required for students under 18 before your data is provided to us. Where your engagement score is derived from our affiliated career-coaching apps, the consent for that underlying use is obtained directly by the relevant app, not by us.
4. Sharing
We share personal information only with:
- Sub-processors that help us operate the Service — currently Amazon Web Services (cloud hosting, Mumbai region) and Amazon Simple Email Service (transactional email delivery, Mumbai region);
- In the future, and only where your institution has agreed to enable this as part of the Service and you separately opt in, your profile and related data may be made visible to recruiters through Azisly Recruiter. This is not currently active and will not apply to you unless both conditions are met;
- Legal authorities, where required by law and after reasonable notice to Customer unless prohibited.
We do not share personal information with advertisers or data brokers.
5. Data location and transfers
Customer Data is stored in India (AWS Mumbai region) by default. Any cross-border transfer will be conducted in accordance with the DPDP Act and will be disclosed in advance.
6. Retention
Customer Data is retained for the duration of the subscription and for a grace period of thirty (30) days after termination to allow for export. Following that grace period, Customer Data is deleted from active systems within a further thirty (30) days. Server access logs and audit logs of administrative actions are retained separately, for a minimum of twelve (12) months from the date of the relevant activity, as required under the DPDP Rules, 2025, regardless of when the related Customer Data is deleted. Full retention terms are set out in the Data Processing Agreement.
7. Security
We use industry-standard measures to protect personal information, including encryption in transit (HTTPS), encryption at rest for database storage, hashed passwords, tenant-level data isolation (schema-per-college), role-based access control (college administrator / department administrator / T&P administrator), and role-based, least-privilege access controls for Azisly personnel to student roster data, notice-delivery records, and engagement scores, limited to those whose function requires it. No system is perfectly secure; we commit to notifying Customer without undue delay in the event of a Personal Data Breach that affects its Customer Data, and in any event within seventy-two (72) hours of becoming aware of it.
8. Your rights
Under the DPDP Act and other applicable law, individuals may have the right to access, correct, update, or request deletion of their personal information, and to withdraw consent where processing is consent-based. Because most personal data is held on behalf of a Customer institution, individuals should first contact their institution's administrator. Requests may also be sent to contact@azislylab.ai and we will route them appropriately. We will acknowledge a grievance within twenty-four (24) hours and aim to resolve it within fifteen (15) days, in line with the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021, and in any event within a reasonable period not exceeding ninety (90) days, as required under the DPDP Rules, 2025.
9. Cookies and session storage
We use a small number of first-party cookies strictly necessary for authentication and session continuity (httpOnly cookies containing a signed JWT). We do not set third-party advertising cookies. If product analytics are enabled, only aggregated, non-identifying event data is collected.
10. Children
Some students using the Service through their institution may be under 18. We have no student account, login, or other direct interactive relationship with you, so we rely on your institution to tell us where a student is under 18, at the time it provides student data to us or otherwise. Your institution is responsible for obtaining verifiable consent from a parent or guardian before providing that student's data to us. We exclude any student flagged as under 18 from the engagement-score feature until your institution confirms that consent has been obtained.
11. Changes
We may update this Privacy Policy. Material changes will be notified to Customer's primary administrative contact at least thirty (30) days before they take effect.
12. Contact
Privacy questions, takedown requests, and contract matters may be sent to contact@azislylab.ai. Azisly's designated Grievance Officer under the DPDP Act is Priyank Jain, reachable at contact@azislylab.ai.
13. Operator identity
This Privacy Policy is issued by Azisly Technologies Private Limited, CIN U85499HR2025PTC139647, registered office at 3rd Floor, Orchid Centre, Golf Course Road, Sector 53, Gurgaon – 122002, Haryana, India.