Back to HomeLegal

Privacy Policy

Effective date: July 2, 2026

This Privacy Policy describes how Anvesh Technologies Pvt. Ltd.(“Anvesh,” “we,” “us,” or “our”) collects, uses, and protects personal information when you use Certify Premium, our certificate issuance and verification platform (the “Service”).

By accessing or using the Service, you agree to the practices described in this policy. If you do not agree, please do not use the Service.

1. Scope

This policy applies to:

  • Visitors to our website and public verification pages
  • Institution users who issue and manage credentials
  • Recipients who access, store, or share issued credentials
  • Verifiers who look up credentials using credential IDs or QR codes
  • Prospective customers who submit demo or contact requests

If you use the Service on behalf of an organization, you represent that you have authority to bind that organization to this policy.

2. Information we collect

Information you provide

  • Account and profile data: name, email address, organization name, role, and login credentials for institution and recipient accounts
  • Credential data: recipient names, credential titles, issuance details, identifiers, and related metadata entered by issuing institutions
  • Demo and contact requests: name, email, organization, and message content submitted through our forms
  • Communications: information you send when you contact support or respond to our messages

Information collected automatically

  • Usage data: pages viewed, features used, verification lookups performed, timestamps, and referring URLs
  • Device and technical data: IP address, browser type, operating system, and general location derived from IP
  • Cookies and similar technologies: see Section 9 below

Information from third parties

We may receive limited information from institutions about recipients when credentials are issued, and from service providers that help us operate the platform (such as hosting and analytics providers).

3. How we use information

We use personal information to:

  • Provide, operate, and maintain the Service
  • Issue, store, display, and verify digital credentials
  • Authenticate users and manage accounts
  • Respond to demo requests, inquiries, and support needs
  • Improve platform performance, security, and user experience
  • Detect, prevent, and address fraud, abuse, or technical issues
  • Comply with legal obligations and enforce our terms
  • Send service-related notices (for example, account or security updates)

We do not sell your personal information. We do not use credential recipient data for unrelated advertising purposes.

4. Legal bases for processing

Where applicable, we process personal information based on:

  • Contract: to provide the Service you or your organization requested
  • Legitimate interests: to secure, improve, and administer the platform
  • Consent: where you have given clear permission, such as for optional communications
  • Legal obligation: where required by applicable law

5. How we share information

We may share information in the following circumstances:

  • With issuing institutions: credential and recipient data is available to the institution that issued the credential, as required for administration and verification
  • With recipients: issued credentials are made available to the designated recipient
  • Public verification: when a verifier uses a credential ID or QR code, limited credential details needed to confirm authenticity may be displayed
  • Service providers: trusted vendors who assist with hosting, infrastructure, analytics, email delivery, and security, subject to confidentiality obligations
  • Legal and safety: when required by law, regulation, legal process, or to protect rights, safety, and integrity of the Service
  • Business transfers: in connection with a merger, acquisition, or sale of assets, with appropriate safeguards

6. Blockchain and verification data

Certify Premium may record cryptographic references or integrity anchors associated with issued credentials to support tamper-resistant verification. Depending on the implementation, certain non-sensitive reference data may be written to a distributed ledger or immutable record.

We design the Service to minimize exposure of personal information on public or distributed systems. Institutions are responsible for ensuring that credential content they submit is appropriate for issuance and sharing through the platform.

7. Data retention

We retain personal information for as long as necessary to provide the Service, meet contractual and legal requirements, resolve disputes, and enforce our agreements.

Credential records may be retained for the duration required by the issuing institution’s policies, applicable law, or legitimate verification needs. When data is no longer needed, we take reasonable steps to delete or anonymize it.

8. Security

We implement administrative, technical, and organizational measures designed to protect personal information, including access controls, encryption in transit where appropriate, and monitoring for unauthorized activity.

No method of transmission or storage is completely secure. You are responsible for safeguarding your account credentials and notifying us promptly of any suspected unauthorized access.

9. Cookies and similar technologies

We use cookies and similar technologies to keep you signed in, remember preferences, understand usage, and improve the Service.

You can control cookies through your browser settings. Disabling certain cookies may affect the functionality of the Service.

10. Your rights and choices

Depending on your location, you may have rights to access, correct, delete, restrict, or object to certain processing of your personal information, and to receive a copy of your data in a portable format.

Credential recipients should contact their issuing institution for changes to issued credential content. Account holders may update certain profile information directly within the Service where available.

To exercise privacy rights or submit a request, contact us using the details in Section 14.

11. International transfers

Your information may be processed in countries other than your own. Where required, we use appropriate safeguards for cross-border data transfers.

12. Children's privacy

The Service is not directed to children under 16. We do not knowingly collect personal information from children. If you believe a child has provided us personal information, please contact us so we can take appropriate action.

13. Changes to this policy

We may update this Privacy Policy from time to time. We will post the revised version on this page and update the effective date above. Material changes may also be communicated through the Service or by other reasonable means.

Your continued use of the Service after changes become effective constitutes acceptance of the updated policy.

14. Contact us

For privacy questions or requests, contact Anvesh Technologies Pvt. Ltd.

Please include enough detail for us to verify your identity and respond to your request.