Our Privacy and Cookie Policy: what we collect, why, how we protect it, and the rights you have over it.
This Privacy & Cookie Policy explains how RXSTOX PRIVATE LIMITED, operating under the brand ABINEXA (“ABINEXA”, “we”, “us” or “our”), collects, uses, stores, discloses and protects information when you visit our website or use our platform and related services (collectively, the “Services”).
Our registered office is:
B2-502B, Boomerang Equity Business Park,
Chandivali Farm Road, Mumbai, Maharashtra, India - 400072
For privacy-related questions, contact us at info@abinexa.com.
By accessing or using the Services, you acknowledge that you have reviewed this Policy. Where applicable law requires your consent for a particular processing activity, we will obtain such consent in accordance with applicable requirements.
This Policy should be read together with the ABINEXA Terms of Use & Acceptable Use Policy, the AI & Customer Data Commitment and any other contractual terms applicable to your use of the Services.
This Policy applies to information collected through:
Where ABINEXA processes personal information on behalf of an enterprise customer, that processing may additionally be governed by the customer’s agreement with ABINEXA and, where applicable, a Data Processing Addendum.
For purposes of applicable data-protection laws, ABINEXA may act as a data controller, data fiduciary, processor or equivalent role depending on the nature of the information being processed and the Services being provided. Where ABINEXA processes personal information on behalf of an organisational customer, that customer may determine the purposes and means of processing and may therefore have primary responsibility for that processing.
This Policy does not apply to third-party websites, applications or services that operate independently from ABINEXA, even where they are linked to or accessible through the Services.
Depending on how you interact with ABINEXA, we may collect:
Such as your name, business email address, telephone number, company, job title, country and business location, username, authentication credentials, account preferences, subscription information, user roles and permissions and other account details.
We do not intend to collect passwords in readable form and use appropriate authentication and security mechanisms for account access.
Information you provide in connection with enquiries, demonstrations, subscriptions, commercial discussions or use of the Services.
Where you subscribe to paid Services, payment information may be processed directly by third-party payment service providers. We may receive information such as transaction references, payment status, billing details and subscription information without necessarily receiving or storing complete payment-card details.
Such as IP address, browser type, device information, operating system, device identifiers, language and regional settings, approximate location derived from technical information, referring and exit pages, access dates and times, session information, error and diagnostic information and similar technical information.
We may also collect usage information such as features accessed, searches and interactions, pages viewed, frequency and duration of use, navigation patterns, account activity and preferences. We use such information primarily to operate, secure, analyse and improve the Services.
Information contained in communications with ABINEXA, including support requests and business enquiries.
Customers may upload or provide financial models, spreadsheets, presentations, reports, datasets, research materials, documents, prompts, instructions and other information through the Services.
Such information is referred to as “Customer Data”.
Customer Data may contain confidential business information, proprietary information and personal information.
We may receive information about you from lawful third-party sources, including technology and service providers, analytics providers, marketing and communications providers, business partners, publicly available professional or corporate sources, customer organisations, identity and authentication providers and third-party services that you voluntarily connect to ABINEXA. Such information will be handled in accordance with this Policy and applicable law.
We may use information to:
Customer Data is used only as described in Section 4 (Customer Data and Confidential Information).
We recognize that Customer Data may contain confidential and commercially sensitive information.
We process Customer Data to provide the Services requested by the customer and in accordance with applicable contractual arrangements.
In particular, we process Customer Data only to the extent reasonably necessary to:
ABINEXA does not use customer-uploaded financial models, documents, Customer Data, prompts or other confidential customer information to train any AI or machine-learning models, including general-purpose or foundation models.
This restriction does not prevent ABINEXA from using aggregated or appropriately anonymised information that cannot reasonably be linked to an individual customer or identifiable Customer Data for legitimate purposes such as service analytics, security, performance monitoring and product improvement. Aggregated or anonymised information derived from Customer Data will not be used to train AI or machine-learning models.
Where third-party AI or technology providers are used to provide specific functionality, ABINEXA implements appropriate contractual and technical restrictions concerning the use of Customer Data, including restrictions on using such information to train their own models.
Such providers may process Customer Data solely as necessary to provide the relevant service and subject to appropriate contractual and security controls, and ABINEXA will take reasonable contractual and technical measures to ensure that they do not use Customer Data for their own unrelated purposes or to train their own models.
ABINEXA will treat Customer Data as confidential. The customer retains ownership of its Customer Data, subject to the rights expressly granted to ABINEXA to provide the Services. Nothing in this Policy transfers ownership of Customer Data to ABINEXA.
You are responsible for ensuring that you have the necessary rights, permissions and authority to upload Customer Data, that doing so does not violate any confidentiality obligation, that you have an appropriate legal basis for providing any personal information contained in it, and that it does not unlawfully contain information belonging to third parties.
ABINEXA may use analytics technologies, including Google Analytics and similar services, to understand how visitors use our website and Services.
These technologies may collect information such as device information, browser information, pages viewed, approximate location, session information and interaction data.
Analytics information helps us understand website performance, improve user experience and identify areas for improvement.
The use of Google Analytics does not mean that ABINEXA receives all information collected by Google or that ABINEXA controls Google’s independent processing activities. You may be able to control the collection of certain analytics information through browser settings, available consent tools or controls provided by Google, and should review Google’s applicable privacy and data-processing information for more details.
We may also use marketing and communications technologies, including tools provided by third-party providers, for purposes such as measuring marketing campaigns, managing communications, understanding engagement, lead generation, customer relationship management and delivering relevant promotional communications where permitted.
Third-party analytics and marketing providers may process information in accordance with their own privacy policies and contractual arrangements with ABINEXA.
Where required by applicable law, we will seek appropriate consent before placing non-essential analytics cookies.
Cookies are small text files placed on your computer, mobile device or other internet-connected device when you visit a website. They allow websites to recognise a device, remember preferences, maintain sessions and understand how visitors use the website.
We and our service providers may use cookies and similar technologies, including pixels, web beacons, local storage, software development kits (“SDKs”) and scripts. For convenience, we refer to all of these technologies collectively as “Cookies” in this Policy.
We may use these technologies for:
These are required for core website or platform functionality, such as authentication, account access, security, session management, load balancing and fraud prevention. Because they are necessary to provide requested Services, they generally cannot be disabled through our cookie-management tools.
These help remember choices and preferences, such as language, regional settings, interface preferences and previously selected options, and improve functionality.
These help us understand website traffic and usage patterns and may collect information such as pages visited, features used, session duration, referral sources, approximate geographic information, browser and device information and technical performance information.
Where permitted by applicable law, these may be provided by marketing, advertising or customer-engagement platforms and help measure campaigns, understand engagement, manage communications or provide more relevant promotional content. Where applicable law requires consent for these technologies, we will request consent before activating them.
These remember choices relating to cookie preferences and consent so that we do not repeatedly ask you to make the same selection.
Some Cookies may be placed by third-party service providers, including providers of analytics, website performance monitoring, customer relationship management, marketing, communications, security, payment processing and other technical services.
Third parties may process information collected through their technologies in accordance with their own privacy policies and applicable contractual arrangements. Where required by law, we will seek appropriate consent before allowing non-essential third-party Cookies to operate.
You may control Cookies through your browser settings and, where available, our cookie-consent mechanism.
Depending on your location and applicable law, ABINEXA may display a Cookie banner, preference centre or similar consent mechanism through which you may be able to:
Most modern browsers also allow you to block Cookies, delete existing Cookies, receive notifications before Cookies are stored or configure different Cookie preferences. The method differs between browsers and devices.
Blocking certain Cookies may affect the functionality of portions of the website or platform, particularly features requiring authentication or session management. Your consent choices will be respected to the extent required by applicable law.
Some browsers and devices provide “Do Not Track” or similar signals. Because there is currently no universally consistent technical standard for interpreting all such signals, ABINEXA may not respond to every Do-Not-Track configuration in the same manner. Where applicable law requires us to recognise a particular privacy preference signal, we will do so in accordance with that law.
A session Cookie generally expires when you close your browser, while a persistent Cookie remains on your device until it expires or is deleted. Retention periods may vary depending on the provider, purpose and applicable configuration.
Depending on the applicable jurisdiction, we may process personal information based on:
Legitimate interests may include operating and improving ABINEXA, maintaining security, preventing fraud, communicating with customers, developing products, understanding service usage and managing our business. Other lawful bases may include protection of vital interests, public interest or the establishment and defence of legal claims, where permitted or required under applicable law.
We may share information with:
Service providers may access or process information only to the extent reasonably necessary to provide their services to ABINEXA.
We do not sell personal information or Customer Data.
ABINEXA is intended for users globally, and personal information and Customer Data may be processed, stored or accessed in India and/or other jurisdictions in which ABINEXA, its affiliates, infrastructure providers or service providers operate.
ABINEXA may use service providers and infrastructure located in countries other than your country of residence.
Where required, we will implement appropriate safeguards for international transfers in accordance with applicable data-protection law.
Depending on the jurisdiction involved, appropriate safeguards may include contractual data-protection provisions, standard contractual clauses, adequacy mechanisms, consent or other legally recognised transfer mechanisms. Users located in jurisdictions with specific cross-border data-transfer requirements may have additional rights under applicable law.
We retain information for as long as reasonably necessary for the purposes described in this Policy, including to provide Services, maintain business records, comply with legal obligations, resolve disputes and enforce agreements.
Retention periods may differ depending on the nature of the information, the purpose for which it was collected, the duration of the customer relationship, contractual requirements, legal and regulatory obligations, security and fraud-prevention requirements and legitimate business needs.
Customer Data may be retained for the period required to provide the relevant Services and thereafter for a reasonable period necessary for legitimate operational, legal, security or contractual purposes, subject to the applicable customer agreement and, where applicable, the Data Processing Addendum.
Where information is no longer required, we may delete, anonymise or securely dispose of it, subject to applicable law.
We use reasonable technical and organisational measures designed to protect information against unauthorised access, disclosure, alteration, loss or destruction.
Security measures may include access controls, authentication mechanisms, encryption where appropriate, system monitoring, secure infrastructure, role-based permissions, logging and audit mechanisms and incident-response procedures.
No internet-based service can be guaranteed to be completely secure.
You are responsible for maintaining the security of your login credentials, devices and accounts and should notify us promptly if you suspect unauthorised access.
ABINEXA maintains procedures intended to detect, assess and respond to security incidents. If a security incident involving personal information occurs, ABINEXA will take reasonable steps to investigate, contain and remediate the incident and will make any notifications to affected individuals, customers or regulators required by applicable law.
If you become aware of a suspected security vulnerability or unauthorised access involving ABINEXA, please contact info@abinexa.com.
ABINEXA may create aggregated, statistical or anonymised information from information relating to use of the Services. Where information has been sufficiently anonymised so that it cannot reasonably be used to identify an individual or customer, ABINEXA may use it for purposes including platform analytics, product development, service improvement, benchmarking, performance analysis, security monitoring and business planning.
Such use does not permit ABINEXA to disclose confidential Customer Data in an identifiable form.
Certain ABINEXA features may use artificial intelligence, machine learning, natural language processing or other automated technologies to analyse information and generate outputs. Such technologies may process information submitted through the Services solely to provide the relevant functionality.
Automated processing may produce inaccurate, incomplete or unexpected results. Users should independently review outputs before relying upon them for material financial, investment, commercial, legal or other decisions. Further detail is set out in the ABINEXA AI & Customer Data Commitment.
Depending on your jurisdiction, you may have rights relating to your personal information, including rights to:
These rights are not absolute and may be subject to applicable legal exceptions.
Requests may be submitted to info@abinexa.com.
We may request information necessary to verify your identity before processing a request. Where ABINEXA processes personal information on behalf of a customer organisation, you may need to direct your request to that organisation, depending on the applicable contractual and legal arrangement.
If you are located in the European Economic Area (“EEA”), the United Kingdom (“UK”) or another jurisdiction that provides enhanced data-protection rights, you may have additional rights under applicable local law. Where applicable, ABINEXA will process personal information in accordance with the relevant legal requirements governing transparency, lawful processing, data-subject rights, international transfers, data security, data retention and breach notification.
Where ABINEXA acts as a processor on behalf of an organisational customer, the relevant customer may be the controller responsible for determining the purposes and means of processing.
Where permitted by law, ABINEXA may send you information concerning product updates, new features, research and insights, events, demonstrations, promotional offers and other information relevant to your professional interests.
You may opt out of promotional communications at any time by using the unsubscribe mechanism included in the communication or by contacting info@abinexa.com. You will continue to receive essential communications relating to your account, subscription, security, transactions or the operation of the Services where necessary.
The Services are intended primarily for business and professional users and are not directed towards children.
We do not knowingly collect personal information from children where prohibited by applicable law.
If you believe that a child has provided personal information to ABINEXA in circumstances where such collection was not permitted, please contact us at info@abinexa.com, and we will take appropriate action where required by applicable law.
Our website and Services may contain links, integrations or references to third-party websites or services.
Their privacy practices are governed by their own policies, and ABINEXA is not responsible for those practices.
We encourage you to review the applicable privacy policies before providing information to third-party services.
We may update this Policy from time to time to reflect changes to ABINEXA, new technologies, changes to our service providers, changes in our business practices or changes in applicable law or regulation.
The updated version will be posted on our website with a revised “Last Updated” date.
Where we make material changes, we may notify users through the Services, website, email or another appropriate method. The revised Policy will become effective on the date indicated at the beginning of the updated version.
This Policy is intended to operate in conjunction with applicable privacy and data-protection laws in the jurisdictions in which ABINEXA operates and its users are located. Nothing in this Policy is intended to limit any mandatory rights or protections available to an individual under applicable law.
Where the law of the jurisdiction in which you are located provides additional or stronger privacy rights than those described in this Policy, those mandatory legal rights will apply to the extent required by law.
For questions, requests or concerns relating to privacy or cookies:
RXSTOX PRIVATE LIMITED
B2-502B, Boomerang Equity Business Park,
Chandivali Farm Road, Mumbai, Maharashtra, India - 400072
Email: info@abinexa.com
Related: Privacy and cookies Terms of use Disclaimer AI and data commitment