Privacy Policy
At Octa Devs, your privacy and digital security are fundamental to our engineering ethics. This Privacy Policy outlines with complete clarity how we collect, store, process, and safeguard your personal information when you visit https://octadevs.fun or engage our agency for mobile, web, or digital software engineering services.
Studio Information & Scope
Octa Devs ("we", "us", or "our") is an application development studio and digital engineering agency founded by Aarav Sharma and Akshansh Sinha. We architect and build high-performance mobile applications, modern web platforms, and tailored digital solutions.
This policy applies to all visitors, prospective clients, and users accessing our official portal at https://octadevs.fun and related administrative interfaces. We act as the Data Controller regarding information collected through our website and communication channels.
Information We Collect
We intentionally minimize the volume of data we collect, adhering to privacy-by-design principles:
- Inquiry & Contact Data: When you submit our project contact form, we collect your full name, email address, and project requirements to evaluate scope and respond to your inquiry.
- Technical & Telemetry Data: When accessing our website, web servers and CDN edge nodes automatically log standard connection metadata including IP addresses, browser user agent, device screen resolution, and HTTP request headers for security auditing and performance monitoring.
- Administrative Credentials: Authorized studio personnel authenticate using session tokens and passcodes. These tokens are stored securely in browser storage and are never broadcast publicly.
How We Use Your Information
Your information is processed strictly for legitimate operational purposes:
- Client Communication: To review submitted project proposals, generate formal engineering estimates, and respond to your inquiries via email or Discord.
- Real-Time Discord Alerts: Project inquiries submitted on our site trigger an encrypted webhook notification to our internal studio Discord channel so our founders can evaluate your request promptly.
- Service Delivery: To build, test, and deploy software applications requested under bilateral client agreements.
- Security & Spam Mitigation: To prevent denial-of-service attacks, automated bot submissions, brute-force admin login attempts, and malicious vulnerability scans.
Cookies & Storage Preferences
Cookies are compact data files placed on your device. We use browser storage (`localStorage` and HTTP cookies) solely for essential platform operations:
- Essential & Security Cookies: Required to verify administrator sessions and maintain system state.
- Consent Memory: We store your cookie preferences in `localStorage` under `octa_cookie_consent` to ensure our banner respects your decision and does not repeatedly interrupt your browsing experience.
You can review or change your cookie preferences at any time using the control button below or through the footer link across any page on our site:
Third-Party Service Providers
We work with enterprise cloud and infrastructure providers who adhere to strict data protection standards:
- Supabase Inc. — Managed PostgreSQL database hosting, Row Level Security (RLS), and REST API infrastructure.
- Discord Inc. — Real-time notification webhooks used strictly for incoming lead alert dispatching.
- Cloudflare Inc. — Global content delivery network (CDN), DNS resolution, edge caching, and DDoS defense.
- GitHub (Microsoft) — Source code revision management and open-source project distribution.
Each partner is bound by contractual obligations to protect information and process it only in accordance with our instructions.
Security & Cloud Infrastructure
We employ multi-layered technical safeguards to protect your personal information against unauthorized access, destruction, loss, or alteration:
- Cryptographic In-Transit Security: All data transmitted to and from our site is encrypted using modern TLS (Transport Layer Security) 1.2 and 1.3 standards with HTTPS enforcement.
- Row Level Security (RLS): Our database implements strict Postgres Row Level Security policies preventing unauthorized write or read operations.
- Administrative Isolation: Administrative studio capabilities are protected by passcodes and session authentication checks.
Your Rights (GDPR & CCPA/CPRA)
Under applicable data protection legislation (including the EU/UK General Data Protection Regulation and the California Consumer Privacy Act), you are entitled to the following rights:
- Right of Access: Request a copy of the personal information we hold about you.
- Right to Rectification: Request correction of inaccurate or incomplete contact records.
- Right to Erasure ("Right to Be Forgotten"): Request that we delete any contact form inquiry submissions from our database.
- Right to Restrict or Object: Restrict or object to specific processing of your personal information.
- Right to Data Portability: Receive your data in a structured, commonly used, and machine-readable format.
- Right to Non-Discrimination: We never discriminate against any client or user who exercises their statutory privacy rights.
To exercise any of these rights, email us at [email protected]. We fulfill verified requests within thirty (30) calendar days.
Data Retention & Erasure
We retain personal contact information only for the duration necessary to satisfy the purposes set out in this Privacy Policy:
- Project Inquiries: Retained for up to 12 months to facilitate ongoing project discussions, after which they are routinely purged unless an active client agreement is in effect.
- Client Contract Records: Retained for duration required under tax, commercial accounting, and corporate governance laws.
Children's Privacy
Our services and website are intended strictly for businesses, founders, and professionals aged 18 and older. We do not knowingly solicit or collect personal identifiable information from children under the age of 13. If you believe a child has provided us with personal information, please notify us immediately at [email protected] and we will expeditiously remove the data.
Contact & Data Controller
If you have any questions, concerns, or requests regarding this Privacy Policy or our data protection practices, please contact our team directly:
Octa Devs Studio — Legal Office
Email: [email protected]
Official Website: https://octadevs.fun
Discord Community: https://discord.gg/6t8GfTSRBN