A Product By IBS Group
Privacy Policy
Effective Date: January 1st, 2026 · Last updated: July 2026
At Interest Bud Solutions Pvt. Ltd., our subsidiaries and affiliated companies ("we", "us", "our", "the Company", "IBS", "HRMione", "Service", "Site", "Product"), we collect and process personal information ("Personal Data", "Information"). We are committed to protecting your privacy. This Privacy Policy sets forth our policy concerning the Personal Data and other information that is collected from visitors ("you", "your", "visitor") to the Site.
Please note that your use of the Site and any of our Services is subject to our Terms of Service. Our Privacy Policy and Terms are integral to your use of our Site. Your continued use of the Site constitutes your acceptance of both.
1. Scope of the Privacy Policy
This Privacy Policy applies to individuals or entities who are not "Customers" of HRMione (i.e. have not subscribed to our services and agreed to the applicable Subscription Terms) and from whom we have collected information. It applies to all information you provide to us through the Site. From a GDPR (General Data Protection Regulation) perspective, we act as the Controller of this data — we collect the data and decide how and why it is processed.
If you are a Customer of HRMione, or an employee of a Customer of HRMione, this Privacy Policy does not apply to you — please review the privacy notice available inside the workspace you use. For Customer employee data processed inside the HRMione platform under a subscription, we act as a Processor on behalf of the employing organisation (the Controller); those obligations are governed by our Data Processing Addendum.
If you have submitted information to any third party through our Site (for example, an integration partner in the Unite marketplace), the privacy policies of those third parties will govern how your data is used.
2. Information We Collect
2.1 Information you provide to us. We collect two broad categories of information — personally identifiable information ("PII") and non-personally identifiable information ("Non-PII") — when you contact us with inquiries, respond to a survey, register for access to the Site, register for a webinar, refer a contact to us, comment on our blogs, or use certain HRMione Services. This may include:
- Contact details — first and last name, work email, phone number, company name, country, team size, job title, and any information you include in demo requests, contact forms, newsletter subscriptions, webinar registrations, chat messages and support tickets.
- Company registration data — legal entity name, registered address, tax identifiers (e.g. GSTIN, VAT, EIN), company type, industry and administrator contact — when you submit a company signup request.
- Account & authentication data — email address, hashed password, single sign-on identifiers and multi-factor authentication metadata.
- Candidate / applicant data — if you apply for a role at IBS by uploading a résumé or completing an application form, we collect your name, email, mailing address, phone number, links to social profiles and any information contained in the résumé you submit.
- Referral data — if you refer a colleague, we ask for that person's name, organisation, email and phone number so we can send them the material you requested.
- Communications — records of your correspondence with our sales, support and customer success teams (email, phone, WhatsApp, in-app messages).
You can choose at any time not to provide us this information. However, doing so may hamper all or part of the Services.
2.2 Information we collect automatically.
- Cookies — when you visit HRMione, we send one or more cookies to your computer or mobile device that uniquely identify your browser. We use cookies primarily for user authentication but also to improve service quality by storing preferences and tracking usage trends.
- Device & usage data — IP address, browser type and language, operating system, referring URLs, pages visited, session duration, clickstream, device model, device identifier (UDID), query logs, product-usage logs and diagnostic logs. We use IP geolocation to help route your request to the right regional team.
- Analytics — we and our third-party partners use web beacons and similar technologies to administer the Site, analyse trends and gather demographic information. We may receive reports from these partners on both an individual and aggregated basis.
- Single Sign-On services — you may register for our Services using sign-in services such as Google, LinkedIn or Microsoft. Those services authenticate you and may share Personal Data such as your name and email with us; by connecting them you authorise us to access and store that information.
Most web browsers include a "Help" section that explains how to be notified of new cookies and how to disable them. Disabling cookies may affect your ability to use certain parts of the Services.
2.3 Information from third-party sources. We may obtain information about you from third parties, including marketing event organisers, partners and resellers — for example first and last name, company name, job title, work email, phone and address. We require that any third party providing us with such data has obtained it lawfully and secured the appropriate consent to share it with us. If we combine such data with information we already hold, we treat the combined set as Personal Data under this Policy.
3. How We Use Your Information
We take your privacy seriously. We will never sell, share or transfer your information to third parties without your permission, and will use Personal Data in a manner consistent with this Policy.
We use the information we collect to:
- Provide, maintain, secure and improve the Site and Services.
- Respond to inquiries, demo requests, quotes and support tickets.
- Process company signup requests, verify legitimacy and provision accounts.
- Send transactional messages (verification, invoices, service updates, security alerts).
- Send marketing, newsletters and product announcements where you have opted in — you can unsubscribe at any time using the link in each email or by writing to us.
- Evaluate your candidature if you have applied for a role — unless stated otherwise, candidate data may be retained in our database for up to five years.
- Contact referred prospects to (i) assess the needs of their business, (ii) send them marketing communications, and (iii) respond to questions.
- Personalise content, remember preferences and measure engagement.
- Detect, prevent and investigate fraud, abuse and security incidents.
- Comply with legal, regulatory, tax, accounting and audit obligations.
Aggregated data. We may conduct research on visitor demographics, interests and behaviour based on the information provided to us. This research may be compiled and analysed on an aggregate basis and shared with our affiliates, agents and business partners to describe our services. Aggregated data does not identify you personally.
4. Legal Bases for Processing (EEA / UK)
5. Cookies & Tracking Technologies
6. Data Security
We apply industry-standard technical and organisational measures to protect information from unauthorised access, alteration, disclosure or destruction. Measures include:
- TLS 1.2+ protecting data in transit using both server authentication and data encryption.
- Advanced security based on dynamic data and encoded session identifiers.
- Hosting in secure server environments with firewalls and intrusion-prevention technology.
- AES-256 encryption at rest and encrypted backups.
- Role-based access control, least-privilege service accounts and mandatory MFA for privileged users.
- Configurable in-product security controls so customers can set the security posture they need.
- Audit logging, monitoring and periodic third-party penetration testing.
No online service can be guaranteed 100% secure. If we learn of a security breach, we may attempt to notify affected users electronically through the Site or by email so you can take appropriate protective steps, and we notify regulators of qualifying incidents as required by law.
7. Information Sharing
HRMione shares Personal Data with other companies or individuals outside IBS only in the limited circumstances below:
- Related entities — we may share information with our subsidiaries and affiliated companies for purposes consistent with this Policy.
- Sub-processors — trusted businesses that process information on our behalf for functions such as cloud hosting, transactional email/SMS, analytics, error monitoring, payment processing and customer support (e.g. AWS, Cloudflare, Supabase, Google Cloud, Stripe/Razorpay, transactional-email providers). We share only what they need, and require them to process it based on our instructions and in line with this Policy.
- Professional advisers — auditors, lawyers and insurers under a duty of confidentiality.
- Legal requirements — where we have a good-faith belief that access, use, preservation or disclosure is reasonably necessary to (a) comply with any applicable law, regulation, legal process or enforceable governmental request; (b) enforce the applicable Terms of Service, including investigation of potential violations; (c) detect, prevent or otherwise address fraud, security or technical issues; or (d) protect against imminent harm to the rights, property or safety of HRMione, its users or the public.
- Business transfers — if IBS becomes involved in a merger, acquisition or sale of some or all of its assets, Personal Data may become part of that transferred asset.
- Unrestricted information — any information you voluntarily include in a public area of the Service, or share with us through any other public means, will be considered "Unsolicited Information", will be available to any user or visitor with access to that content, and shall be deemed non-confidential; we may reproduce, use, disclose and distribute such Unsolicited Information without limitation or attribution.
8. Links to Third-Party Sites
9. International Data Transfers
10. Age Restriction & Children's Privacy
11. Retention of Data
12. Accessing & Updating Your Information — Your Rights
Depending on your jurisdiction, you may have the right to:
- Know what Personal Data we process about you, the purposes of processing, how long we intend to store it, and the recipients to whom it has been or will be disclosed.
- Access, correct, update or complete inaccurate or incomplete data.
- Request erasure ("right to be forgotten").
- Object to, or restrict, processing (including direct marketing).
- Withdraw consent at any time (without affecting past processing).
- Receive your data in a portable, machine-readable format.
- Be informed about any automated decision-making we may use.
- Lodge a complaint with your local data-protection authority.
To exercise any of these rights, email support@interestbudsolutions.com. We may ask you to verify your identity before acting on a request, and we respond to all valid requests within the timelines mandated by applicable law (typically within 30 days).
13. Data Privacy & Security with HReactive AI
When you use HReactive — our agentic AI assistant embedded across the HRMione platform — you may naturally wonder: "Is my company's sensitive data secure?" We built HReactive with privacy and security at its core. Our guiding principle is simple: your data is yours. HReactive operates exclusively within your HRMione workspace, respects your role-based permissions, and never uses your company's or employees' data to train AI models for anyone else.
Key principles of data privacy with HReactive
- Your data is never shared for training AI models outside your account.
- AI responses are grounded in your company's HRMione data and the requesting user's permissions.
- No public model dependency — your Personal Data is not sent to public consumer endpoints such as consumer ChatGPT or Gemini; we use enterprise-grade AI providers under contract that prohibit training on your data.
- Access control is preserved — HReactive only sees what the requesting user is authorised to see under RLS and role-based permissions.
HReactive uses only your own HRMione data (employees, leave, payroll, projects, tickets, etc.) plus the specific question you ask, to compose grounded answers personalised to your account. Your data is not used to train models used by other customers.
14. Workplace Monitoring & Webcam Snapshots
15. Changes to This Policy
16. Contact Us
- Email: support@interestbudsolutions.com
- Phone / WhatsApp: +91 80765 69119
- Address: Interest Bud Solutions Pvt. Ltd., B-158, Cozen Business Park, Sector 63, Noida, Uttar Pradesh, India.
