Privacy Notice
What we collect. Why. How to exercise your choices.
Effective 2026-08-26. This notice covers the public Trishor website and Workflow Audit request.
Who is responsible
Trishor is the public brand of TRISHA AUTOMATIONS (OPC) PRIVATE LIMITED, CIN U62011WB2026OPC289252. The company determines why and how personal information is handled for this website and the Workflow Audit request.
Registered office: Flat4b, Mangolik Apartment, 255/59 Netaji Subhash Chandra Bose Road, Naktala ,Kolkata, West Bengal, Pin 700047
Privacy and grievance contact: Siddharth Shukla
Email: hello@trishor.in
Telephone: +917965853901Who this service is for
The website is India-first and business-to-business, while accepting inbound requests from other countries. The Workflow Audit form is intended only for people aged 18 or older who are authorized to act for a business. Do not submit information about a child.
Information you provide
The form collects your name, work email, optional company name, optional current tools or stack, and the workflow bottleneck you describe. It also records the version of the notice you acknowledged and the server time of that acknowledgement.
Do not submit passwords, access tokens, payment-card information, health or biometric information, government ID documents, or confidential or personal information that you are not authorized to share.
Technical and security information
Our web server processes network and request metadata such as IP address, timestamp, requested path, response status, referrer, and user agent. We use IP addresses for abuse prevention and rate limiting. Relevant security, access, authentication, application, and system logs are configured for at least 180 days on our India-hosted production system for cybersecurity and incident-response obligations. Ordinary rotation expires them after their applicable 180- to 190-day window unless preservation is required for an active incident or legal obligation.
Why we use the information
- To receive, assess, and respond to the workflow request you submitted.
- To deliver the request to our business inbox and retry temporary delivery failures.
- To prevent duplicate or abusive submissions and secure the service.
- To diagnose errors, measure aggregate site performance, and monitor availability.
- To maintain necessary business records and comply with legal, security, or dispute obligations.
We do not use an audit request for unrelated newsletters or promotional campaigns without a separate opt-in. Withdrawing your request does not affect processing already completed, and we may retain limited records where law, security, an active engagement, or a dispute requires it.
Service providers and processing locations
Hostinger hosts the application and database. Resend processes the full request as transactional email content. Cloudflare R2 stores client-side-encrypted backup objects. Cloudflare Web Analytics processes page and performance measurements without application cookies, local storage, session storage, or cross-site fingerprinting. Sentry processes error and performance telemetry with default PII collection and session replay disabled. Better Stack performs synthetic health checks and does not receive audit-form contents.
Some providers and their subprocessors may process information outside India. That processing is also subject to provider terms, subprocessor arrangements, security measures, and applicable transfer restrictions. We do not authorize providers to use audit requests for their own advertising.
Retention and deletion
Active audit requests in our application database are retained for no longer than reasonably needed and normally for up to 365 days, unless an engagement, withdrawal, dispute, security need, or legal obligation requires a different period. Ordinary local database backups rotate after 14 days. Encrypted off-site backups follow rotating daily, weekly, and monthly retention; a deleted request can remain in an isolated backup for approximately 24 months from collection before automatic expiry.
Backups are access-restricted and used only for recovery. Individual records cannot normally be edited inside an immutable backup. A restored database is subject to the current retention rules before ordinary use. Providers may retain limited records under their configured settings and legal obligations.
A transactional copy is also delivered to our restricted business inbox and may appear in Resend delivery records. Those copies have separate mailbox and provider retention and are reviewed for deletion when no longer needed. A verified deletion request is applied to those copies where reasonably possible, subject to security, dispute, and legal-preservation requirements.
Analytics, cookies, and advertising
We do not use advertising trackers for this workflow. Cloudflare Web Analytics is configured without client-side cookies or persistent browser storage. We do not sell your information, disclose it to data brokers or advertisers, or add you to a newsletter you did not request.
Security and incidents
We use access restrictions, scoped credentials, request limits, monitoring, encrypted transport where HTTPS is in use, and encrypted off-site backups. No system is completely secure. We investigate suspected incidents and make notifications required by applicable law.
Your choices and grievances
To request access, correction, completion, withdrawal, or deletion, or to raise a grievance, email hello@trishor.in from the address used for the request and identify the workflow request. We may ask for proportionate verification. We will explain if a request cannot be completed because information must be retained for law, security, an active engagement, or a dispute.
Contact Siddharth Shukla using the details above. We aim to resolve privacy grievances promptly, within one month where the SPDI Rules apply, and within any shorter mandatory period. Where applicable law provides a regulator or complaint route, you may use it after giving us a reasonable opportunity to address the grievance.
Changes to this notice
We may update this notice when our workflow, providers, or legal obligations change. The revised version will show a new effective date. Material changes will not be applied retroactively where applicable law requires a new notice or acknowledgement.