AstraERP Logo
AstraERP
Autonomous Business ERP
Data Sovereignty & Privacy

Privacy Policy

Effective Date: January 1, 2026 · Last Updated: September 2026

Our Core Privacy Principle: Zero Cloud Lock-In & Local Data Ownership

Unlike multi-tenant cloud SaaS systems that upload your business turnover, customer contacts, purchase costs, and financial ledgers to remote third-party servers, AstraERP is architected offline-first. Your company database is stored 100% locally on your own computer or private local network. BTSC Consulting Service LLP does not host, view, sync, monetize, or possess access to your commercial transactions.

1. Information We Collect

Depending on how you interact with our platform, we collect limited categories of information:

  • Website Visitors & Demo Inquiries: When you request an executive demo or contact sales, we collect your business name, contact person, phone number (WhatsApp), city, email address, and vertical requirements.
  • Channel Partner Portal: When you register as an authorized distributor or dealer, we collect full legal business name, GSTIN, registered address, territory codes, banking details for commission disbursements, and authorized representative credentials.
  • Software Activation & Licensing: When generating or activating a perpetual license key, the system processes your unique hardware Machine ID (a cryptographic hash of local hardware components), partner allotment code, and client billing identifiers to issue an asymmetrically signed Ed25519 activation license. We do not inspect the contents of your local accounting ledgers.
  • Customer Support & Technical Tickets: When you submit a support ticket via our portal or desktop client, we collect your contact information, ticket category, issue description, and optional diagnostic error logs you voluntarily choose to attach.

2. "Ask Astra" AI Copilot & Zero Data Leakage

AstraERP features an intelligent conversational assistant called Ask Astra. We guarantee strict data boundaries:

Offline Mode (Default)

When operating in Offline Mode, all queries, inventory scans, and demand forecastings run completely locally on your hardware. Zero data bytes ever leave your premises.

Optional Cloud LLM Bridge

If an administrator explicitly enters their own external API key (e.g. OpenAI or Google Gemini), only the specific prompt formulated is relayed directly to that provider over HTTPS. AstraERP servers never intercept or store your LLM API tokens.

3. How We Use Your Information

Information collected via the web portal is used strictly for:

  • Fulfilling demo requests and connecting you with verified local channel partners in your pin code.
  • Generating, verifying, and tracking validity of cryptographic license keys.
  • Processing distributor commission invoices and territory protection.
  • Providing technical assistance, GST statutory patch notifications, and warranty services.
  • Preventing software counterfeiting and unauthorized key duplication.

4. Data Sharing & Non-Disclosure

We do not sell, rent, monetize, or trade your personal or business data to advertisers or third-party data brokers. Data is only shared under the following limited conditions:

  • Authorized Local Channel Partners: If you request an on-site installation or hardware trial, your contact details are shared exclusively with the certified partner assigned to your district.
  • Statutory Legal Compliance: Where required by applicable Indian or international law, court orders, or tax authorities under the Information Technology Act, 2000.

5. Data Security & Encryption Standards

We employ industry-standard technical measures including TLS 1.3 encryption in transit, bcrypt password hashing (cost factor 10), cryptographic Ed25519 digital signature keys, and strict role-based access control. All partner database records are housed in secured tier-4 hosting environments with automated backups and failover.

6. Your Rights & Regulatory Compliance

In accordance with the Digital Personal Data Protection Act (DPDPA), 2023 of India and international privacy regulations, you have the right to request access to your contact data, request corrections to erroneous entries, or request permanent deletion of your lead or partner portal account by contacting our Data Protection Officer.

7. Data Protection Officer & Contact Details

BTSC Consulting Service LLP

Attn: Privacy & Data Protection Office

Email: sumeet@gbtsconsulting.com / admin@astraerp.com

Telephone / WhatsApp: +91-9158845022

Registered Office: Pune, Maharashtra, India