Privacy Policy

Last Updated: May 10, 2026

Privacy Policy — CYBER COPS India
Last Updated: May 10, 2026

Privacy Policy — At a Glance

A plain-English visual summary of how CYBER COPS India handles your data. The full legal policy follows below.

CYBER COPS India
cybercops.in · Privacy Policy · DPDPA 2023 Aligned
We never sell your data We never rent your data We never trade your data MSSP Monitored 24/7 DPDPA 2023 Compliant Grievance Officer Appointed
12Policy Sections
5Your Rights (DPDPA)
30Days Response Time
6Security Verifications
Data flow map — CYBER COPS India Privacy Policy What data is collected, how it is used, and the promise of no third-party sharing What We Collect Browser type & language IP addresses (logged-in) Comment IP addresses Contact form data Facebook page interactions Cookies & preferences Date/time of visits Non-PII & limited PII How We Use It Improve website content Maintain site security Respond to your queries Legal compliance Understand usage patterns Your data stays with us Who We Share With ✗ No third parties except when legally required by court order Hosting & security providers only Under confidentiality DATA FLOW
Policy at a Glance — All 12 Sections
01
Introduction
Who we are, what this policy covers, and which channels it applies to — cybercops.in and our Facebook Page.
02
Information We Collect
Browser data, IP addresses, contact form submissions, and Facebook page interactions — no more.
03
How We Use Your Info
To improve the site, respond to queries, maintain security, and comply with legal obligations.
04
Disclosure of Information
We never publicly disclose PII. Only shared if legally required or with confidentiality-bound service providers.
05
Cookies & Tracking
Essential, analytics, and preference cookies. You can refuse cookies via your browser settings.
06
Third-Party Services
Links to external sites are not our responsibility. Third-party tools (analytics, security) have their own policies.
07
Data Retention
We keep data only as long as needed. Comment IPs retained while the comment exists. Periodic deletion reviews.
08
Data Security
MSSP monitoring 24/7. Commercially reasonable technical and organisational security measures in place.
09
Children’s Privacy
Not directed at under-18s. We do not knowingly collect data from minors. Contact us to request deletion.
10
Your Rights (DPDPA 2023)
Access, correct, delete, withdraw consent, and raise a grievance. Full details in Section 10.
11
Policy Changes
We update the “Last Updated” date when changes are made. Continued use = acceptance of updated policy.
12
Contact & Grievance
privacy[at]cybercops[dot]in · Grievance Officer: Neelabh Rai · Response within 30 days.
What Data We Collect
Non-Personally Identifying
Browser type, language, referring site, date and time of visits. Automatically collected by most websites — used only to understand how the site is used and improve our content. Not linked to you personally.
Potentially Identifying (IP Address)
IP addresses collected from logged-in users and comment authors. Treated with care as potentially personally identifying information. Retained as long as the associated comment remains live.
Facebook Page Interactions
If you interact with our Facebook Page, your profile details may be visible to us as Page administrators. We do not control what Facebook collects — review Facebook’s own Privacy Policy for full details.
Voluntarily Provided
Name, email address, and message content when you contact us via email or a contact form. Only collected when you choose to reach out — never without your action.
Types of Cookies We Use
Your Rights Under DPDPA 2023
Access
Request the personal data we hold about you
Correct
Fix inaccurate or incomplete data
Delete
Request deletion, subject to legal obligations
Withdraw
Withdraw consent where processing is consent-based
Grievance
Raise a complaint about our data practices
✓   What We Absolutely Do Not Do
✓
Sell your personal information to any third party
✓
Rent your personal information to any third party
✓
Trade your personal information to any third party
✓
Publicly disclose personally identifying information
✓
Collect data from children under the age of 18
✓
Retain data longer than legally or operationally required

CYBER COPS India is MSSP-monitored 24/7. You can independently verify our website’s security and safety status using any of the trusted tools below:

Contact for Privacy Queries
CYBER COPS India — Researching Bits & Bytes
privacy[at]cybercops[dot]in
For any questions, concerns, or complaints about this Privacy Policy or our data handling practices.
✓   We respond to all requests within 30 days
Grievance Officer
Neelabh Rai
Founder, CYBER COPS India
ISO 27001:2022 Lead Auditor · CCCI
Diploma in Indian Cyber Law, GLC Mumbai
11+ Years GRC · Fellow IETE
CYBER COPS India · Privacy Policy
Last Updated: May 10, 2026
CYBER COPS India Privacy Policy Effective Date: May 10, 2026  |  Version 2.0  |  Jurisdiction: India
Amendment Notice — Version 2.0 This policy has been revised on 24 March 2026 to align with India’s Digital Personal Data Protection Act, 2023 (DPDPA). Additions include: Lawful Basis for Processing (§3), Consent Mechanism (§4), Data Breach Notification (§10), Cross-Border Data Transfers (§11), updated Cookie Consent (§6), enhanced Data Retention periods (§8), and strengthened Data Principal Rights (§12). All changes are marked in context below.

1. Introduction

CYBER COPS India (“CCI”, “we”, “us”, or “our”) operates the website https://cybercops.in. We are committed to protecting the privacy and personal data of our visitors in accordance with India’s Digital Personal Data Protection Act, 2023 (DPDPA) and all applicable Indian laws.

This Privacy Policy explains what personal data we collect, the lawful basis on which we process it, how we use and share it, and what rights you have as a Data Principal under the DPDPA.

This policy applies to information collected through https://cybercops.in and our associated Facebook Page (https://www.facebook.com/cybercopsindia.neelabhrai/). It does not govern information collected from other sources.

2. Information We Collect

(a) Non-Personally Identifying Information

Like most websites, we automatically collect non-personal technical data that web browsers and servers make available, including browser type, language preference, referring site, and the date and time of each visitor request. This helps us understand how our website is used and improve our content.

(b) Potentially Personally Identifying Information

We collect Internet Protocol (IP) addresses from logged-in users and from users who leave comments on our blog posts. IP addresses are treated as potentially personally identifying data and are handled accordingly.

(c) Information from Facebook

If you interact with our Facebook Page, certain personal information (such as your Facebook profile details) may become visible to us as Page administrators. We do not control what Facebook collects. Please review Facebook’s Privacy Policy for their data practices. We do not use Facebook Pixel or Facebook Custom Audiences on this website. If this changes, this policy will be updated and a revised consent notice will be displayed.

(d) Information You Voluntarily Provide

If you contact us directly (e.g., via email or a contact form), we may receive your name, email address, and the content of your message.

3. Lawful Basis for Processing  [NEW — DPDPA §4]

We process personal data only where a lawful basis under the DPDPA applies. The applicable bases are:

Lawful BasisActivityData Involved
Consent (DPDPA §6)Placing non-essential analytics cookies; processing voluntarily submitted commentsIP addresses, comment content, analytics identifiers
Legitimate Interest (DPDPA §4)Website security monitoring, MSSP threat detection, fraud preventionIP addresses, access logs
Legal Obligation (DPDPA §4)Responding to lawful orders from courts or law enforcementAny data as required by court order
Contractual NecessityResponding to queries submitted via contact formName, email, message content

4. Consent Mechanism  [NEW — DPDPA §6]

Where we rely on consent as the lawful basis for processing, we obtain that consent as follows:

  • Cookie consent: A cookie consent banner is displayed on your first visit to the website. Non-essential cookies (including analytics cookies) are not placed until you provide explicit consent by clicking ‘Accept’. You may also access granular cookie preferences via the ‘Manage Preferences’ option in the banner.
  • Comment submissions: When you submit a comment on a blog post, a clear notice is displayed at the point of submission explaining that your IP address will be recorded and retained. Submission of the comment constitutes informed consent for this specific processing.
  • Withdrawal: You may withdraw consent at any time by:
    1. changing your cookie preferences via the consent banner (accessible via the cookie icon in the footer), or
    2. submitting a data deletion request to privacy[at]cybercops[dot]in.
  • Withdrawal of consent does not affect the lawfulness of processing carried out before withdrawal.

We do not use consent as a condition of accessing any content on this website.

5. How We Use Your Information

We use the information we collect for the following purposes:

  • To understand and improve how visitors use our website
  • To maintain the security and integrity of our website
  • To respond to your queries or comments
  • To comply with legal obligations, including responding to lawful orders from courts or law enforcement authorities

We do not sell, rent, or trade your personal data to any third party.

6. Cookies and Tracking Technologies  [ENHANCED — DPDPA §6]

We use cookies and similar technologies to enhance your browsing experience, track site usage, and store preferences. A cookie is a small text file stored on your device by your browser.

Types of cookies we use:

CategoryConsent RequiredExamplesPurpose
EssentialNo (exempt)WordPress session cookiesRequired for website to function; cannot be disabled
AnalyticsYes — explicit opt-in requiredGoogle AnalyticsUnderstand visitor behaviour; set only after consent
PreferenceYes — explicit opt-in requiredLanguage, theme settingsRemember your settings across visits

Your choices: You may manage your cookie preferences at any time via the consent banner on this website. You may also configure your browser to refuse all cookies. Note that disabling essential cookies will affect website functionality.

7. Disclosure of Information  [ENHANCED — Processor Details]

We do not disclose personally identifying information publicly. Disclosure occurs only in the following circumstances:

  1. Legal requirement: If compelled by a valid court order, summons, or other lawful legal process under Indian law.
  2. Data Processors: To trusted third-party service providers (data processors) under written Data Processing Agreements (DPAs) that restrict their use of your data to the services provided. Current processors include:
ProcessorPurposeData SharedDPA in Place
Website Hosting ProviderWeb hosting and infrastructureServer logs, IP addressesYes
Google Analytics (opt-in only)Visitor analyticsAnonymised usage dataYes (Google Data Processing Terms)
MSSP / SiteLockSecurity scanning and threat monitoringAccess logs, IP addressesYes
  • Aggregated, anonymised data: We may share aggregated, non-identifying statistics about visitor behaviour publicly or with partners.

8. Data Retention  [ENHANCED — Specific Periods]

We retain personal data only as long as necessary for the purposes described in this policy or as required by applicable law. Specific retention periods by data category are as follows:

Data CategoryRetention PeriodRationale
IP addresses (server logs)12 monthsSecurity monitoring and incident response
IP addresses (blog comments)Duration of comment + 12 months post-deletionLinked to content moderation and legal compliance
Contact form submissions24 months from last interactionTo respond to queries and maintain correspondence records
Analytics data (aggregate)26 months (Google Analytics default)Trend analysis; anonymised after 12 months
Consent records (cookie)3 years from consent dateEvidence of lawful processing under DPDPA §6

We conduct periodic reviews (at least annually) and delete data that is no longer needed. Upon a valid deletion request (see §12), data will be erased within 30 days unless retention is required by law.

9. Data Security

We take the security of your personal data seriously. We employ technically and organisationally appropriate measures to protect your data, including round-the-clock MSSP monitoring of our website infrastructure.

However, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security and encourage you to exercise caution when sharing information online.

You may independently verify our website’s security posture via: Google Safe Browsing, Norton SafeWeb, VirusTotal, and URLVoid.

10. Personal Data Breach Notification  [NEW — DPDPA §8(6)]

In the event of a personal data breach, CYBER COPS India will:

  • Notify the Data Protection Board of India: We will report any breach to the Data Protection Board in the form and manner prescribed under the DPDPA, without undue delay and in any case within the timeline specified by the Board.
  • Notify affected Data Principals: Where a breach is likely to result in harm to the rights or interests of affected individuals, we will inform those individuals in a clear and plain manner, describing the nature of the breach, the data affected, the likely consequences, and the remedial steps we are taking.
  • Maintain a breach register: We maintain an internal log of all data breaches, including near-misses, as required for accountability under DPDPA §8.
  • Remediation: We will promptly take all reasonable steps to contain the breach, prevent recurrence, and cooperate fully with the Data Protection Board during any investigation.

If you believe your data held by us may have been compromised, please contact us immediately at privacy[at]cybercops[dot]in.

11. Cross-Border Data Transfers  [NEW — DPDPA §16]

As an Indian-based website, some of your personal data may be transferred to and processed in countries outside India, including the United States, where our third-party service providers operate.

Service / RecipientCountryTransfer MechanismData Transferred
Automattic / WordPress.comUSAStandard Contractual Clauses (SCCs)Server logs, IP addresses
Google LLC (Analytics)USAGoogle Data Processing Terms (SCCs)Anonymised analytics (with consent)
Meta Platforms (Facebook)USAMeta Data Transfer AgreementsPage interaction data (as Page admin)

All cross-border transfers are made under appropriate safeguards — currently Standard Contractual Clauses or equivalent transfer mechanisms approved under applicable law. We will update this section if the Government of India issues country adequacy decisions or revised transfer mechanisms under DPDPA §16.

12. Children’s Privacy

Our website is not directed at children under the age of 18. We do not knowingly collect personal data from minors. If you believe a child has provided us with personal data, please contact us at privacy[at]cybercops[dot]in and we will take steps to delete it promptly.

13. Your Rights as a Data Principal  [ENHANCED — DPDPA §§11–14]

Under India’s Digital Personal Data Protection Act, 2023, you have the following rights:

RightDescriptionHow to Exercise
Right to Access (§11)Obtain a summary of your personal data we hold and details of processing.Email request to privacy[at]cybercops[dot]in
Right to Correction (§12)Correct inaccurate or incomplete personal data.Email request with corrected information
Right to Erasure (§12)Request deletion of your personal data, subject to legal obligations.Email request; we will respond within 30 days
Right to Grievance Redressal (§13)Raise a complaint about our data practices. We will respond within 30 days.Contact Grievance Officer (see §15)
Right to Nominate (§14)Nominate another person to exercise your rights in the event of your death or incapacity.Written nomination via email to Grievance Officer
Right to Withdraw ConsentWithdraw consent for consent-based processing at any time.Cookie preference centre or email request

Identity verification: Before acting on a rights request, we may verify your identity by asking you to confirm details associated with your prior interactions with us (e.g., the email address from which you contacted us, or the content of a submitted comment).

Response timeline: We will acknowledge all requests within 7 days and provide a substantive response within 30 days. Complex requests may take up to 60 days; in such cases, we will notify you of the extension.

Escalation: If your request is not resolved to your satisfaction, you may escalate your complaint to the Data Protection Board of India once the Board is operationally established under the DPDPA.

14. Changes to This Privacy Policy  [ENHANCED]

We may update this Privacy Policy from time to time. When we do, we will update the ‘Last Updated’ date at the top of this page. The nature of notice depends on the significance of the change:

  1. Minor changes: Administrative or clarifying edits — updated date only; no active notification.
  2. Material changes: Changes that affect the legal basis, types of data collected, or your rights — notified via a prominent website banner for a minimum of 30 days.
  3. Changes affecting consent-based processing: Where a change affects processing for which we relied on your consent, we will seek fresh consent before commencing the updated processing.

Note: Continued use of the website after a material policy change is posted does not constitute consent to the new terms where the processing is consent-based. Fresh consent will be obtained in such cases.

15. Contact & Grievance Officer  [ENHANCED — DPDPA §13]

Grievance Officer

Name: Neelabh Rai, Founder, CYBER COPS India

Website: https://cybercops.in

Email: [email protected]

Response Commitment: All legitimate requests acknowledged within 7 days; resolved within 30 days per DPDPA §13.

Escalation: Unresolved complaints may be raised to the Data Protection Board of India (once operationally established) at https://dpboard.gov.in.
CYBER COPS India — Researching Bits & Bytes Privacy Policy v2.0  |  Last Updated: March 24, 2026  |  Governing Law: India (DPDPA 2023)