Privacy Policy & DPDP Act Posture
TRIOGENX GROUPS LLP (“TRIOGENX”, “we”, “our”, or “us”), parent organization of ReViSense AI, respects your privacy and is unconditionally committed to protecting personal data. This Privacy Policy sets forth our data protection standards, institutional security commitments, and compliance posture under the Digital Personal Data Protection Act, 2023 (DPDP Act 2023 - India) and applicable global data privacy regulations.
1. About TRIOGENX GROUPS LLP
TRIOGENX GROUPS LLP develops and operates an integrated ecosystem of enterprise educational technology, academic intelligence platforms, and smart school infrastructure, including:
- ReViSense AI: Teacher-Governed AI Academic Copilot & Evaluation Engine.
- RVS AI School OS: Comprehensive Institution ERP, timetable planner, fee management, and administrative suite.
- Learning Universe: Guided student revision, active retrieval, and multi-lingual concept clarification environment.
- RVS Analytics: Predictive academic intelligence and student retention telemetry.
- Smart Hardware Infrastructure: AIOT Digital Board, AIOT Hologram, and STEM Robotics Lab deployments.
2. Dual Governance Roles under DPDP Act 2023
Under the Digital Personal Data Protection Act, 2023, data governance roles are demarcated based on the nature of interaction:
- When Serving Subscribing Institutions (Data Processor): In our enterprise SaaS deployment (School OS, Learning Universe, AI Copilot), the subscribing Educational Institution (School/Trust/Board) acts as the primary Data Fiduciary determining the purpose and means of student/staff data processing. TRIOGENX GROUPS LLP acts strictly as a Data Processor operating under a formal Data Processing Addendum (DPA) and institutional service contract.
- When Interacting on Public Websites (Data Fiduciary): For visitors browsing our marketing portal, submitting demo requests, applying for employment, or submitting institutional inquiries, TRIOGENX GROUPS LLP acts as the Data Fiduciary.
3. Information We Collect
A. Information You Voluntarily Provide
- Institutional Inquiries & Demo Requests: Name, professional email address, official phone number, school/institution name, designation (e.g., Principal, Trustee, Administrator), student enrollment band, and geographic city/state.
- Career Applications: Curriculum Vitae (CV), professional experience, educational qualifications, and contact coordinates.
- Support & Communications: Transcripts of emails, chat inquiries, feedback submissions, and support ticket descriptions.
B. Institutional Educational Data (Governed by Institutional DPA)
- Student roster details (name, roll number, section/grade, parent/guardian contact credentials).
- Academic performance telemetry, attendance logs, timetables, fee reconciliation statuses, and teacher worklogs.
- Student interaction logs within Learning Universe (active retrieval history, concept mastery index, voice queries).
C. Automatically Collected Technical Metadata
- IP address, browser type and version, device hardware specifications, operating system, network connection type, timestamp, referral URLs, and session interaction metrics.
4. Special Protections for Children and Minors (Section 9 DPDP Act 2023)
Given that ReViSense AI serves K-12 educational environments, our platform is built from the ground up to comply strictly with Section 9 of the DPDP Act 2023 regarding children’s personal data:
- Verifiable Parental Consent (VPC): Student accounts are provisioned exclusively through authorized educational institutions that have verified parental or legal guardian consent as part of school enrollment and institutional software deployment.
- Strict Prohibition on Behavioral Profiling & Tracking: In accordance with Section 9(3) of the DPDP Act 2023, TRIOGENX does not engage in behavioral monitoring, psychological profiling, or commercial tracking of students or children.
- No Targeted Advertisements: ReViSense AI is 100% ad-free. No student data, telemetry, or query history is ever monetized, auctioned, or shared with third-party ad networks or data brokers.
- Best Interests of the Child: All automated learning interventions and AI explanations are designed strictly to enhance academic comprehension and student well-being, with complete safety guardrails.
5. AI Ethics, Academic Guardrails & Non-Training Pledge
We maintain strict ethical boundaries regarding artificial intelligence and machine learning:
- Zero Model Training on Customer Data: Student prompts, assignments, test responses, teacher worklogs, and proprietary school curricula are NEVER used to train, fine-tune, or improve public foundational LLMs (such as OpenAI, Anthropic, or open-source foundation models).
- Teacher-Governed Guardrails: AI responses in student environments operate within deterministic academic bounds configured and supervised by school educators.
- Data Ephemerality: AI query tokens are processed in isolated memory environments and purged from inference pipeline caches following response generation.
6. Data Localisation & Indian Sovereign Cloud Posture
In adherence to Indian data sovereignty best practices and institutional security guidelines:
Indian Sovereign Infrastructure Posture
7. Technical & Organizational Security Standards
We enforce defense-in-depth security across all platform layers:
- Cryptographic Protection: All data in transit is encrypted using modern TLS 1.3 protocols. All data at rest is encrypted using military-grade AES-256 encryption.
- Strict Multi-Tenant Isolation: Logical and schema-level isolation ensures no school’s data can ever be accessed, leaked, or commingled with another institution.
- Role-Based Access Control (RBAC): Granular permissions enforce strict separation between School Principals, Administrators, Teachers, Mentors, Parents, and Students.
- Audit Logging & Session Management: Immutable audit trails log all sensitive administrative operations, with automatic inactivity session timeouts.
8. Data Breach Notification Protocol & Timelines
TRIOGENX GROUPS LLP maintains a 24/7 Computer Security Incident Response Plan (CSIRP) in compliance with the DPDP Act 2023 and CERT-In cybersecurity directives:
- Regulatory Notification: In the event of a confirmed personal data breach affecting personal data, TRIOGENX will notify the Data Protection Board of India (DPBI) and the Indian Computer Emergency Response Team (CERT-In) within prescribed statutory reporting timelines.
- Institutional Notification: Subscribing Educational Institutions acting as Data Fiduciaries will be notified without undue delay upon confirmation of an incident, accompanied by a comprehensive technical assessment, impact radius, and mitigation measures.
9. Rights of Data Principals under DPDP Act 2023
As a Data Principal under Indian law, you (and parents/legal guardians acting on behalf of minor students) possess the following statutory rights:
- Right to Access Summary: Request a summary of personal data processed, identities of data processors shared with, and processing activities undertaken.
- Right to Correction & Erasure: Request the correction of misleading or inaccurate personal data, completion of incomplete data, or deletion of data no longer required for its original purpose.
- Right of Grievance Redressal: Avail readily accessible grievance redressal mechanisms through our designated Grievance Officer.
- Right to Nominate: Nominate another individual to exercise data rights on your behalf in the event of death or incapacity.
Note: For student records managed under an active school enrollment, erasure and modification requests must be routed through the relevant school administration acting as the primary Data Fiduciary.
10. Statutory Grievance Redressal Officer & DPO Designation
In statutory compliance with the DPDP Act 2023 and the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021, TRIOGENX GROUPS LLP has designated a dedicated Grievance Officer and Data Protection Lead:
Designated Grievance & Data Protection Officer
11. Cookies and Analytics
Our public marketing website uses strictly necessary and performance analytics cookies to understand visitor navigation flows and optimize page responsiveness. You can adjust your browser settings to reject non-essential cookies at any time.
12. Updates to this Policy
We may update this Privacy Policy periodically to reflect evolving legal standards, regulatory clarifications issued by the Data Protection Board of India, or architectural enhancements. Changes will be posted to this URL with an updated revision date.