Privacy Policy
Effective Date: January 1, 2026 · Last Updated: September 2026
Our Core Privacy Principle: Zero Cloud Lock-In & Local Data Ownership
Unlike multi-tenant cloud SaaS systems that upload your business turnover, customer contacts, purchase costs, and financial ledgers to remote third-party servers, AstraERP is architected offline-first. Your company database is stored 100% locally on your own computer or private local network. BTSC Consulting Service LLP does not host, view, sync, monetize, or possess access to your commercial transactions.
1. Information We Collect
Depending on how you interact with our platform, we collect limited categories of information:
- Website Visitors & Demo Inquiries: When you request an executive demo or contact sales, we collect your business name, contact person, phone number (WhatsApp), city, email address, and vertical requirements.
- Channel Partner Portal: When you register as an authorized distributor or dealer, we collect full legal business name, GSTIN, registered address, territory codes, banking details for commission disbursements, and authorized representative credentials.
- Software Activation & Licensing: When generating or activating a perpetual license key, the system processes your unique hardware Machine ID (a cryptographic hash of local hardware components), partner allotment code, and client billing identifiers to issue an asymmetrically signed Ed25519 activation license. We do not inspect the contents of your local accounting ledgers.
- Customer Support & Technical Tickets: When you submit a support ticket via our portal or desktop client, we collect your contact information, ticket category, issue description, and optional diagnostic error logs you voluntarily choose to attach.
2. "Ask Astra" AI Copilot & Zero Data Leakage
AstraERP features an intelligent conversational assistant called Ask Astra. We guarantee strict data boundaries:
When operating in Offline Mode, all queries, inventory scans, and demand forecastings run completely locally on your hardware. Zero data bytes ever leave your premises.
If an administrator explicitly enters their own external API key (e.g. OpenAI or Google Gemini), only the specific prompt formulated is relayed directly to that provider over HTTPS. AstraERP servers never intercept or store your LLM API tokens.
3. How We Use Your Information
Information collected via the web portal is used strictly for:
- Fulfilling demo requests and connecting you with verified local channel partners in your pin code.
- Generating, verifying, and tracking validity of cryptographic license keys.
- Processing distributor commission invoices and territory protection.
- Providing technical assistance, GST statutory patch notifications, and warranty services.
- Preventing software counterfeiting and unauthorized key duplication.
4. Data Sharing & Non-Disclosure
We do not sell, rent, monetize, or trade your personal or business data to advertisers or third-party data brokers. Data is only shared under the following limited conditions:
- Authorized Local Channel Partners: If you request an on-site installation or hardware trial, your contact details are shared exclusively with the certified partner assigned to your district.
- Statutory Legal Compliance: Where required by applicable Indian or international law, court orders, or tax authorities under the Information Technology Act, 2000.
5. Data Security & Encryption Standards
We employ industry-standard technical measures including TLS 1.3 encryption in transit, bcrypt password hashing (cost factor 10), cryptographic Ed25519 digital signature keys, and strict role-based access control. All partner database records are housed in secured tier-4 hosting environments with automated backups and failover.
6. Your Rights & Regulatory Compliance
In accordance with the Digital Personal Data Protection Act (DPDPA), 2023 of India and international privacy regulations, you have the right to request access to your contact data, request corrections to erroneous entries, or request permanent deletion of your lead or partner portal account by contacting our Data Protection Officer.
7. Data Protection Officer & Contact Details
BTSC Consulting Service LLP
Attn: Privacy & Data Protection Office
Email: sumeet@gbtsconsulting.com / admin@astraerp.com
Telephone / WhatsApp: +91-9158845022
Registered Office: Pune, Maharashtra, India