Back to Zennoia

Last updated: May 26, 2026

Privacy Policy

This Privacy Policy explains how Zennoia Private Limited, a company registered in Mumbai, Maharashtra, India, collects, uses, shares, and protects personal data in connection with Zennoia's websites, applications, products, software, AI-assisted tools, and related services, including https://zennoia.com.

Introduction and Contact

"Zennoia", "we", "us", and "our" refer to Zennoia Private Limited. Zennoia is a B2B SaaS product for business and professional users. Our Services are not intended for personal, household, or consumer use.

For privacy questions, data requests, or grievance matters, contact us at admin@zennoia.com.

This contact is the person or team authorized by Zennoia to receive and coordinate responses to privacy and grievance communications. Unless Zennoia expressly states otherwise, this contact should not be interpreted as the appointment of a formal Data Protection Officer, EU/UK representative, or similar statutory privacy officer or representative.

1. How This Policy Applies

This Privacy Policy applies to personal data that Zennoia processes in connection with operating its business and providing the Services.

Privacy laws apply differently depending on the location of the individual, the location of the customer, the nature of the data, and Zennoia's role in the relevant processing activity. References to terms such as "controller", "processor", "Data Fiduciary", "Data Processor", "Data Principal", "business", or "service provider" describe Zennoia's role where those legal concepts apply, and do not mean that every listed law applies to every processing activity.

For account, billing, website, inquiry, security, support, and business contact data, Zennoia generally acts as an independent decision-maker. For personal data contained in Customer Content, Zennoia generally acts as a processor or service provider on behalf of the relevant Customer, and the Customer is generally responsible for deciding what data is uploaded, why it is processed, how long it is kept, and how it is used.

If your personal data appears in content uploaded by a Zennoia customer, you may need to contact that customer directly to exercise your privacy rights. We will reasonably assist the customer as required by applicable law and our agreements.

2. Personal Data We Collect

We may collect the following categories of personal data.

Account and business contact data. This may include name, business email address, phone number, job title, company name, team details, login credentials, account settings, and user role.

Customer Content. Customers and users may upload or submit documents, notes, files, prompts, investor materials, business records, contact information, third-party business information, and other workspace content. Customer Content may include personal data about users, customer personnel, investors, portfolio companies, founders, employees, advisers, business contacts, or other third parties.

Prompts, inputs, and outputs. When users interact with AI-assisted functionality, we may process prompts, uploaded materials, generated outputs, edits, and related context.

Usage and technical data. We may collect IP address, device information, browser information, operating system, log data, pages or features accessed, timestamps, session information, error logs, authentication events, security events, approximate location derived from IP address, and other diagnostic or operational information.

Communications, support, and commercial data. If you contact us, request a demo, participate in a pilot, respond to emails, or communicate with us, we may process your contact details, message content, attachments, billing contacts, subscription details, tax information, payment status, purchase history, and related records.

3. Sources of Personal Data

We collect personal data directly from users, administrators, Customers, inquiries, communications, and use of the Services. We may also receive personal data from customers when they upload, import, submit, or direct us to process Customer Content.

We do not currently operate a formal public-source or third-party enrichment pipeline as part of the Services. If we materially change our collection practices or introduce enrichment features, we will update this Privacy Policy and provide any notices, choices, consents, or contractual terms required by applicable law.

4. How We Use Personal Data

We use personal data to:

  1. provide, operate, maintain, secure, and improve the Services;
  2. create and manage accounts;
  3. authenticate users and maintain security;
  4. process Customer Content, prompts, and AI-assisted outputs;
  5. respond to inquiries, support requests, and communications;
  6. send operational, administrative, security, billing, and service-related communications;
  7. manage invoices, payments, tax records, and commercial relationships;
  8. monitor, debug, protect, and troubleshoot the Services;
  9. prevent fraud, abuse, unauthorized access, and misuse;
  10. analyze service performance, reliability, and usage at an aggregated or de-identified level;
  11. comply with legal, regulatory, tax, accounting, and corporate obligations;
  12. enforce our agreements and protect our rights; and
  13. carry out business transactions, such as financing, restructuring, merger, acquisition, or sale of assets.

5. AI Processing and Model Training

Zennoia may process Customer Content, prompts, outputs, and related metadata using external cloud, infrastructure, AI, and service providers as needed to provide, secure, monitor, troubleshoot, and support the Services, including limited retention for security, abuse prevention, debugging, reliability, or legal purposes in accordance with their agreements with Zennoia.

Zennoia does not use Customer Content to train or fine-tune general-purpose or foundation AI models, and does not permit its AI providers to use Customer Content, prompts, or outputs to train third-party foundation models, unless the Customer opts in or a signed agreement permits it. If Zennoia materially changes this practice, Zennoia will update its notices or terms and obtain any consent or agreement required by applicable law or contract.

6. Legal Bases for Processing

Depending on the applicable law and context, we may process personal data based on performance of a contract, legitimate interests, customer instructions, compliance with legal obligations, consent where required, or protection of rights, security, and legal interests.

Where Zennoia processes Customer Content on behalf of a customer, the customer is generally responsible for identifying the lawful basis for that processing and providing any required notices or obtaining any required consents.

7. How We Share Personal Data

We may share personal data with Customer accounts and administrators, service providers and subprocessors, professional advisers, legal or regulatory recipients, parties involved in a financing or business transaction, and recipients that the customer, user, or authorized representative directs.

We do not sell Customer Content submitted through customer workspaces, use it to build third-party data products, or share personal data for targeted advertising. If we introduce materially different data products, enrichment features, advertising technologies, or sharing practices, we will update this Privacy Policy and provide notices, choices, consents, or contractual terms where required by law.

8. International Processing and Transfers

Zennoia is based in India. We and our service providers may process personal data in India and other countries where we or they operate. These countries may have privacy laws that differ from the laws of your location.

Where specific transfer safeguards are legally required for a Customer's use of the Services, those safeguards should be addressed in an applicable agreement, order, or data processing addendum. Customers should not upload data subject to data residency, localization, restricted-transfer, or similar requirements unless they have confirmed that the Services support those requirements.

9. Retention

We retain personal data for as long as reasonably necessary for the purposes described in this Privacy Policy, including to provide the Services, manage accounts, maintain business records, comply with legal obligations, resolve disputes, enforce agreements, maintain security, prevent abuse, and support business continuity.

Customer Content is generally retained while the relevant customer account or subscription is active and for a reasonable period afterward for export, backup, archival, legal, compliance, security, or dispute-resolution purposes, unless a signed agreement states otherwise. Aggregated or de-identified data may be retained and used without a fixed time limit, provided it does not identify the customer, users, individuals, or confidential Customer Content. Data will be treated as personal data where applicable law requires it to be treated as personal data.

10. Security and Breach Notices

We use commercially reasonable administrative, technical, and organizational safeguards designed to protect personal data against unauthorized access, loss, misuse, alteration, or disclosure. No method of transmission, storage, SaaS hosting, cloud processing, or AI processing is completely secure.

If Zennoia becomes aware of a personal data breach, we will take reasonable steps to investigate, mitigate, and address the incident. Where required by applicable law, we will provide notices to affected customers, individuals, regulators, data protection boards, or other authorities. For Customer Content processed on behalf of a customer, the customer generally remains responsible for regulatory or individual notifications except to the extent applicable law requires Zennoia to notify directly.

11. Cookies and Communications

Zennoia uses essential cookies and similar technologies for core functionality, authentication, session management, security, and service operation. We do not currently use targeted advertising, retargeting, or third-party advertising cookies.

We may use basic technical, hosting, security, diagnostic, and product-usage logs to operate, secure, troubleshoot, maintain, and improve the Services. If we introduce non-essential analytics, advertising technologies, or marketing automation in a way that requires notice, consent, or choices, we will update our notices and provide those controls where required.

We may send operational, administrative, security, account, billing, and service-related communications. These are generally necessary for the Services. If we send promotional emails, recipients may opt out using the instructions in the email or by contacting admin@zennoia.com.

12. Privacy Rights and Grievances

Depending on your location, applicable law, Zennoia's role, and the nature of the personal data, you may have rights to request access, information, correction, completion, updating, deletion or erasure, withdrawal of consent, objection, restriction, portability, or nomination of another person to exercise rights on your behalf.

You may submit requests to admin@zennoia.com. We may need to verify your identity and authority before responding. We will respond to privacy requests and grievances within the timeframe required by applicable law. Where a request relates to Customer Content controlled by a Zennoia customer, we may refer the request to that customer or ask you to contact the customer directly.

Where applicable, you may also have the right to complain to a privacy regulator, supervisory authority, or data protection board. Some laws may require you to first use the relevant grievance mechanism before approaching the regulator.

13. Customer-Controlled Data

Customers decide what Customer Content is uploaded to Zennoia and how it is used. Customer Content may include personal data about third parties. Customers are responsible for required rights, notices, consents, permissions, and lawful bases.

Customers must not intentionally upload children's data, sensitive data, special-category data, or highly regulated data unless Zennoia expressly agrees in writing. Incidental inclusion of such data in ordinary business records or investor materials is not prohibited if the customer has the required rights and is not using the Services specifically to process that sensitive or regulated data.

Zennoia's AI-assisted features are intended to support user review and analysis, not to make solely automated decisions about individuals that produce legal or similarly significant effects.

14. Changes and Contact

We may update this Privacy Policy from time to time. If we make material changes, we will use reasonable efforts to provide notice, such as by posting the updated policy, emailing account contacts, or providing in-product notice. The updated Privacy Policy will apply from the effective date stated in the updated version.

For privacy questions, data requests, or grievance matters, contact:

Zennoia Private Limited
Mumbai, Maharashtra, India
Email: admin@zennoia.com