Global Privacy Policy
How Quintech LLC collects, uses, and protects your personal information globally
Last updated: April 2026
Who We Are
Quintech LLC operates as a provider of Educational Entertainment and research.
By accessing or using the Service, you indicate your acceptance of this Policy. If you do not accept these terms, please cease use of the Service immediately.
Definitions
| Term | Definition |
|---|---|
| Personal Information | Any information that directly or indirectly identifies or could be used to identify a natural person. |
| Usage Data | Encoded, anonymised, or aggregated data about features, services, or users that does not contain personally identifying information. |
| AI Services | Any feature, workflow, or capability within the Service that uses large language models (LLMs), machine learning, or other AI techniques to process data or generate outputs. |
| Platform | The quin-tech.ai web application, APIs, Software Factory modules, and managed services infrastructure operated by Quintech LLC. |
| Subprocessor | A third-party provider engaged by Quintech to process personal data on Quintech's behalf. See the Subprocessor Registry at quin-tech.ai/legal/subprocessors. |
| Data Controller | The entity that determines the purposes and means of processing personal data. Quintech acts as controller for platform visitor and user data. |
| Data Processor | The entity that processes personal data on behalf of a controller. Quintech acts as processor when handling personal data on behalf of enterprise clients. |
Information We Collect
3.1 Information You Provide Directly: Identity and contact data (name, job title, employer, email address, phone number, business address); Account credentials (username, hashed password, access role); Professional context (experience level, use case descriptions, professional goals); User-generated content (files, documents, prompts, content uploaded to the Platform); Communications (messages, support tickets, correspondence); Financial data (billing contact and subscription records -- payment card data is handled directly by our payment processors and is not stored by Quintech).
3.2 Information Collected Automatically: IP address, browser type, language, time zone, and screen resolution; Device type, operating system, and referrer URL; Session duration, feature usage patterns, navigation paths, and interaction logs; Performance telemetry and error logs generated by the Platform.
3.3 Information Processed Through AI Services: Where you use AI-powered features within the Platform, we may process prompts, documents, and data inputs submitted to AI pipelines or agents, and outputs generated by AI features. Quintech's Software Factory applies PII obfuscation at the LLM gateway layer before any data is transmitted to a third-party model provider. See Section 6 for full details of our AI data practices.
3.4 Information Received from Third Parties: We may receive Personal Information from identity providers, enterprise directory services, or integration partners where you have authorised such sharing -- including authentication credentials, organizational role data, and SSO profile information.
How We Use Your Information
| Purpose | Description |
|---|---|
| Service delivery | To operate, maintain, and improve the Platform and to fulfil our managed services obligations, including incident response, platform monitoring, and feature delivery. |
| Authentication & access control | To verify identity, manage role-based and purpose-based access, and enforce permissions across the Platform and AI Services. |
| Client communication | To communicate about accounts, service updates, incident notifications, SLA reporting, and contractual matters. |
| AI governance & audit | To maintain explainable decision logs, human-in-the-loop audit trails, and compliance evidence required under applicable law and certification frameworks. |
| Security & fraud prevention | To detect, investigate, and prevent unauthorised access, abuse, or fraudulent use of the Platform. |
| Analytics & improvement | To analyse Usage Data and improve the reliability, performance, and features of the Platform. |
| Legal compliance | To comply with applicable laws, regulatory requirements, and contractual obligations. |
| Marketing (opt-in only) | To send relevant updates, case studies, and event invitations where you have opted in. You may opt out at any time via the unsubscribe link or by emailing quin@quin-tech.ai. |
AI-Specific Data Practices
PII obfuscation at gateway: Personally identifiable information is automatically detected and redacted before data reaches any LLM provider. This applies to all AI feature usage regardless of which model provider is configured.
Purpose-based access control: Every AI agent and automated workflow is constrained to operate only within its declared purpose. Agents cannot access data or take actions outside their defined scope.
Human-in-the-loop controls: High-stakes decisions require human approval before execution. Thresholds are configurable per workflow based on risk level and organizational policy.
Content moderation at gateway: All inputs to and outputs from LLM features pass through automated content detection before processing or delivery.
Explainable decision logging: AI agent decisions are logged with full context, model invocation details, and actions taken -- creating a complete and auditable trail.
No training on your data: Quintech does not use your User Content or AI interaction data to train AI models. LLM providers used by Quintech are contractually bound to equivalent restrictions under our data processing agreements.
Data Security
Quintech's security posture is aligned to SOC 2 Type II, ISO 27001, GDPR, and HIPAA requirements. Key measures include: TLS encryption for all data transmitted to or from the Platform; Encryption at rest for all stored Personal Information and sensitive platform data; Role-based and purpose-based access controls enforced at the platform layer; 24/7 infrastructure and application monitoring via Datadog, Zabbix, and PRTG with automated alerting; Automated weekly vulnerability scanning with critical patches deployed within 72 hours; Annual penetration testing and quarterly security reviews; Human-in-the-loop controls for high-risk operations involving personal data.
In the event of a personal data breach, we will notify affected parties and relevant supervisory authorities within the timeframes required by applicable law (72 hours under GDPR / UK GDPR where applicable). See our EU, EEA & UK Privacy Policy for breach notification details.
Data Retention
| Data Type | Retention Period |
|---|---|
| Active client account data | Duration of the engagement plus any mandatory legal retention period |
| Platform usage and access logs | 12 months from collection, unless retained longer for active security investigations or legal proceedings |
| AI audit and decision logs | Minimum 12 months to support governance, compliance, and audit functions |
| Marketing contact data | Until opt-out. Removed from active systems within 30 days of opt-out request |
| Closed account data | Deleted or anonymised within 90 days of account closure, subject to legal hold obligations |
| Data subject request records | 6 years from the date of the request to demonstrate compliance |
International Data Transfers
Quintech LLC is registered in Wyoming and operates with infrastructure and personnel across India, the United Kingdom, the United States, and Australia. Processing personal data of EU, EEA, and UK residents may involve transfers to countries outside those jurisdictions.
Where data is transferred outside the UK or EEA, we rely on Standard Contractual Clauses (SCCs), the UK International Data Transfer Agreement (IDTA), adequacy decisions, or equivalent safeguards. For enterprise clients with data residency requirements, Quintech offers deployment on UK sovereign cloud infrastructure where data does not leave UK jurisdiction.
Full details of our transfer mechanisms and safeguards, including Transfer Impact Assessments for transfers to India, are set out in our EU, EEA & UK Privacy Policy at quin-tech.ai/legal/eu-privacy.
Your Rights and Choices
Depending on your location, you may have rights including access, rectification, erasure, restriction, portability, and objection in relation to your Personal Information. To exercise any of these rights, contact us at quin@quin-tech.ai.
EU, EEA, UK, and Swiss residents have additional rights under the GDPR and equivalent legislation, including the right to lodge a complaint with a supervisory authority. These rights are set out in full in our EU, EEA & UK Privacy Policy at quin-tech.ai/legal/eu-privacy.
To opt out of marketing communications, use the unsubscribe link in our emails or contact quin@quin-tech.ai. To manage cookie preferences, visit quin-tech.ai/cookie-settings.
Subprocessors
Quintech uses carefully selected third-party subprocessors to deliver our services. These include cloud infrastructure providers, LLM API providers, payment processors, monitoring tools, and communications platforms. All subprocessors are bound by Data Processing Agreements and are subject to ongoing due diligence.
The full Subprocessor Registry -- with provider names, locations, purposes, data shared, and transfer mechanisms -- is published and maintained at quin-tech.ai/legal/subprocessors. We notify clients at least 14 days before adding or materially changing a subprocessor.
Brand and Intellectual Property
All trademarks, logos, brand assets, and intellectual property associated with Quintech LLC are the exclusive property of Quintech LLC. Use of Quintech's brand assets without prior written permission is prohibited.
Full details of permitted uses, prohibited uses, visual identity guidelines, and how to request permission are set out in our Trademark Policy at quin-tech.ai/legal/trademark-policy.
Children's Privacy
The Platform is not directed to individuals under the age of 18. We do not knowingly collect Personal Information from minors. If you believe a minor has provided Personal Information through the Platform, please contact quin@quin-tech.ai immediately and we will take commercially reasonable steps to delete that information.
Third-Party Links and Integrations
The Platform may contain links to third-party websites or support integration with third-party services. This Policy applies only to data processed through the Quintech Platform. We are not responsible for the privacy practices of third-party services. Please review their policies before connecting them to the Platform.
Changes to This Policy
We may update this Policy to reflect changes in our practices, technology, or legal requirements. Material changes will be communicated with at least 14 days' notice by email or prominent posting on the Platform. The version number and effective date at the top of this document indicate when it was last revised.
Your continued use of the Platform after the effective date of any revision constitutes acceptance. If you do not accept the updated Policy, you must cease using the Platform and may terminate in accordance with our Terms of Service.