Privacy Policy

Understand how Softorage collects, uses, and safeguards your personal data. Learn about your privacy rights, cookie consent controls, and choices.

Last updated: 01 September, 2026

Privacy Policy

1. Introduction

Softorage (“we”, “us”, or “our”) operates the website located at https://softorage.com, including its sub-domains, microsites, and related web services (collectively, the “Service”).

We respect your personal privacy and are committed to maintaining transparent, fair, and secure data processing practices. This Privacy Policy details the categories of personal data we collect, the lawful grounds upon which we process it, how it is handled alongside our infrastructure and service partners, and the statutory rights available to you under applicable data protection laws, including the Indian Digital Personal Data Protection Act (DPDP Act), the General Data Protection Regulation (EU/UK GDPR), and applicable United States state privacy statutes.

By accessing or using our Service, you acknowledge that you have read and understood this Privacy Policy. For the terms governing your general use of the website, please refer to our Terms and Conditions.


2. Information We Collect

We collect information directly from you when you submit it, as well as automatically when you browse our website.

A. Information You Provide Directly to Us

When you interact directly with our website (e.g., submitting contact forms, subscribing to updates, downloading resources, or applying for programs), you may provide personal data (“Personal Data”), including:

  • Identity and Contact Information: Full name, email address, physical postal address, country of residence, telephone number, and organization or employer name.
  • Inquiries and Correspondence: Content, attachments, and metadata contained in messages and support requests submitted to us.

B. Information Collected Automatically

When you navigate our Service, technical data is automatically logged by our systems and analytics partners (“Usage Data”):

  • Device and Browser Telemetry: Masked or truncated IP addresses, browser type and version, operating system, device type, screen resolution, and language preferences.
  • Navigation and Interaction Metrics: Pages viewed, referring/exit URLs, date/time stamps, session duration, scroll depth, and interaction events.
  • Pseudonymous Identifiers: Unique client identifiers generated via first-party analytics cookies (such as Google Analytics Client IDs) used to distinguish browsing sessions in aggregate.

Our Service uses a combination of essential local storage, analytics technologies, and third-party advertising cookies:

  • Strictly Necessary Storage: We use browser localStorage to save your interface preferences (e.g., theme mode) locally on your device without sending this data to our servers.
  • Analytics Technologies (Google Analytics): We use Google Analytics cookies to monitor traffic volume and aggregate usage patterns.
  • Third-Party Advertising (Google AdSense): We partner with Google to serve contextual and interest-based advertisements across our site.

Non-essential cookies (Analytics and Advertising) are deployed in accordance with your explicit preferences captured via our On-Site Cookie Consent Banner:

  • You may grant, customize, or decline consent when you first visit our site.
  • Withdrawing or Changing Consent: You can modify or withdraw your cookie consent at any time by clicking the “Cookie Settings” (or “Manage Cookies”) link in the footer of any page on our website.

For complete technical details, cookie lifespans, and secondary opt-out methods, please review our dedicated Cookie Policy.


4. Lawful Bases and How We Use Your Information

We process personal information under defined legal bases for specific, limited operational and commercial purposes:

Processing PurposeData CategoriesLawful Basis (GDPR / DPDP Framework)
Delivering Core Website FunctionalityDevice telemetry, UI preferencesLegitimate Interests / Contractual Performance
Customer Support & Inquiry ManagementContact details, message contentPerformance of Contract / Consent
Site Performance & Usage AnalyticsGoogle Analytics IDs, Usage DataConsent (via Cookie Banner)
Ad Serving & Commercial MonetizationAd identifiers, Advertising cookiesConsent (via Cookie Banner)
Platform Security & DDoS ProtectionNetwork logs, IP addresses (Cloudflare)Legitimate Interests / Legal Obligation
Statutory Compliance & Legal ClaimsContact records, Transaction historyLegal Obligation

5. Infrastructure and Third-Party Service Providers

We engage trusted technical partners who process data strictly under confidentiality, security, and data protection terms:

A. Hosting, Delivery, and Security

  • Cloudflare Pages & Edge Infrastructure: Our website is hosted and delivered globally via Cloudflare Pages, which also serves as our Content Delivery Network (CDN) and Web Application Firewall (WAF) to protect against DDoS threats, optimize load times, and manage SSL/TLS encryption. Transient network traffic and connection data are processed in accordance with the Cloudflare Privacy Policy.
  • GitLab CI/CD: We use GitLab for version control and automated Continuous Integration / Continuous Deployment (CI/CD) pipelines to push site updates to Cloudflare Pages. GitLab operates strictly as our build pipeline and does not directly serve live end-user web requests or process visitor personal data.

B. Traffic Analytics

  • Google Analytics (GA4): Google Analytics processes pseudonymous usage metrics to help us evaluate site trends. Under modern standards, IP addresses are automatically masked or truncated.
  • To learn how Google processes data from partner websites, review Google’s Partner Data Policy.
  • Opt-Out Controls: You can manage Google Analytics directly through our on-site Cookie Settings footer link, or across all websites by installing the Google Analytics Opt-out Browser Add-on.

C. Advertising Networks

  • Google AdSense: Google AdSense uses cookies to deliver relevant advertising. You can control these cookies via our on-site Cookie Settings, customize your profile in Google My Ad Center, or use the industry-wide YourAdChoices platform.

6. How We Share and Disclose Data

We do not sell, rent, or trade your personal information for monetary compensation. We share data only under the following strictly defined conditions:

  • Service Providers: With vetted technical processors (hosting, infrastructure, analytics, and security vendors) acting strictly under our instructions.
  • Legal and Regulatory Disclosures: When required by law, court order, regulatory summons, or government authority, or when necessary to protect the legal rights, safety, and property of Softorage, our users, or the public.
  • Corporate Transactions: In connection with any merger, restructuring, asset sale, or acquisition involving our organization.
  • With Your Explicit Consent: Where you provide direct, informed consent for a specific data-sharing purpose.

7. International Data Transfers

Softorage operates globally, and our service providers (including Google, Cloudflare, and GitLab) maintain infrastructure across multiple international jurisdictions, including India, the European Union, and the United States.

When personal data is transferred across international borders, we ensure appropriate legal safeguards are implemented to protect your data, including:

  • Standard Contractual Clauses (SCCs) approved by the European Commission and UK authorities.
  • Compliance with recognized international data transfer mechanisms and statutory data adequacy standards.
  • Technical safeguards, including end-to-end encryption in transit (HTTPS/TLS) and rest-state data protections.

8. Data Retention and Security

  • Retention: We retain personal information only for as long as necessary to fulfill the purposes for which it was collected, provide our services, maintain audit records, resolve disputes, and satisfy our statutory obligations. Aggregated, non-identifying analytics metrics may be retained indefinitely.
  • Security Measures: We apply industry-standard physical, technical, and administrative safeguards—such as automated threat filtering, SSL/TLS encryption, and access limitations—to protect your data. While we take every reasonable measure, no digital transmission or electronic storage method can be guaranteed 100% secure.

Depending on your geographic location and the data protection laws applicable to you, you possess specific legal rights regarding your personal information:

A. Rights Under the Indian DPDP Act (Data Principals in India)

  • Right to Access Information: Request a summary of the personal data we process about you and the processing activities performed.
  • Right to Correction and Erasure: Request the correction, completion, updating, or erasure of your personal data.
  • Right to Grievance Redressal: Access an expeditious grievance redressal mechanism regarding our data obligations.
  • Right to Nominate: Nominate another individual to exercise your privacy rights in the event of death or incapacity.

B. Rights Under the GDPR / UK GDPR (EEA & UK Users)

  • Access & Portability: Request access to and a portable, machine-readable copy of your personal data.
  • Rectification & Erasure: Request the correction of inaccurate data or the deletion of your personal information (“Right to be Forgotten”).
  • Restriction & Objection: Object to or restrict our processing of your data, particularly for direct marketing or legitimate interest grounds.
  • Withdraw Consent: Withdraw your consent at any time without affecting the legality of prior processing (either via our on-site Cookie Settings link or by contacting us).
  • Lodge a Complaint: Lodge a complaint with your local Data Protection Supervisory Authority.

C. Rights Under US State Privacy Laws (e.g., California CCPA/CPRA)

Residents of applicable US states have the right to know what personal data is collected, request deletion, correct inaccuracies, and opt out of the “sale” or “sharing” of personal data for cross-context behavioral advertising via our on-site Cookie Settings or external opt-out tools.

To exercise any of these statutory rights, please submit a formal request via our Contact Us page.


10. Children’s Privacy

Our Service is intended for a general audience and does not knowingly target, collect, or process personal data from children under the age of 18 (“Minors”). If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately so we can take steps to permanently delete such data from our records.


Our Service may contain links to third-party websites, plug-ins, or external platforms. Clicking on those links may allow third parties to collect or share data about you. We do not control and are not responsible for the privacy practices or content of external sites. We encourage you to review the privacy policy of every external website you visit.


12. Changes to This Privacy Policy

We may update this Privacy Policy periodically to reflect technological adjustments, operational developments, or amendments to statutory regulations. When updates occur, we will revise the “Last Updated” date at the top of this document. Material changes will be accompanied by a prominent notice on our website. Continued use of our Service after revisions are published constitutes acknowledgment of the updated terms.


13. Grievance Redressal and Contact Details

If you have questions, feedback, or grievances regarding this Privacy Policy or our data handling practices, or if you wish to exercise your legal privacy rights, please direct your communication to our designated Grievance / Privacy Officer:

  • Designation: Chief Privacy & Grievance Redressal Officer
  • Entity: Softorage
  • Electronic Contact: Submit your request via our Contact Us page
  • Location: Mumbai, Maharashtra, India