Legal Architecture/Doc Ref: CNX-SEC-PRIV-2026

Privacy Policy.

How Canonix Labs safeguards client intelligence, user data, and system telemetry across our AI architectures, software engineering engagements, and digital platforms.

Effective DateOctober 01, 2026
JurisdictionBengaluru, Karnataka, India
Compliance FrameworkDPDP Act 2023 · GDPR · CCPA
Foundational Commitment // Zero-Training Guarantee

We never train public AI models on your proprietary code or private data.

When Canonix Labs develops AI workflows, custom algorithms, or digital architectures for your business, all client intellectual property, repository code, and user datasets remain compartmentalized and private. We execute non-retention enterprise SLAs across all underlying computational endpoints.

SECTION 01

Overview & Scope

This Privacy Policy describes the policies and practices of Canonix Labs (referred to as "Canonix," "we," "us," or "our") regarding the collection, use, storage, and disclosure of personal data and technical telemetry when you interact with:

  • Our website located at https://canonix.in and associated subdomains.
  • Our custom software development, AI systems engineering, and technology consulting deliverables.
  • Our experimental prototypes, R&D whitepapers, and developer labs.
  • Direct communications, discovery consultations, feedback forms, and project proposals.

Our registered engineering headquarters is located at:
Canonix Labs, Bayalubasaveshwara Nagar 2nd Stage, Kommaghatta, Bengaluru, Karnataka 560060, India.

SECTION 02

Information We Collect

We adhere strictly to the principle of data minimization. We only gather information that is practically required to render our high-performance web experiences or execute client engagements:

2.1Directly Provided Data

Names, corporate email addresses, phone numbers, project briefs, and technical specifications provided through our contact forms, interactive feedback modal, or direct correspondence at hello@canonix.in.

2.2Technical Telemetry

Anonymized technical markers including browser type, viewport resolution, WebGL / GPU capability flags (necessary for fluid 3D globe and canvas rendering), and aggregate latency metrics.

Note: We do not process sensitive personal information (such as financial biometric credentials, health data, or religious affiliations) on our public website.

SECTION 03

AI Systems & Client Data Isolation

As an engineering lab specializing in artificial intelligence and automation architectures, we uphold rigorous safeguards to ensure your proprietary intelligence remains untainted:

Ephemeral LLM Context:Any API calls made during algorithmic testing or client prototyping leverage isolated, zero-data-retention instances where inputs are processed solely in volatile memory and purged immediately post-inference.
Source Code Partitioning:Client source code, database credentials, and algorithmic designs are stored in private, two-factor authenticated, role-restricted repositories with mandatory encryption keys.
No Cross-Client Sharing:Models trained or fine-tuned for a specific client organization are never repurposed or exposed to other client accounts without explicit, mutual written authorization.
SECTION 04

Purpose of Processing & Legal Grounds

Under the Digital Personal Data Protection Act (DPDP Act 2023) in India and the European Union General Data Protection Regulation (GDPR), we process data only under established lawful bases:

  • Performance of a Contract: To assess feasibility, prepare statements of work (SOW), execute development sprints, deliver production code, and fulfill engineering warranties.
  • Legitimate Interests: To ensure system uptime, defend against denial-of-service (DDoS) attacks, optimize spatial 3D WebGL performance across mobile devices, and improve our digital interfaces.
  • Consent: When you voluntarily opt in to receive communications, submit feedback via our interactive prompt, or initiate contact inquiries.
  • Legal Compliance: Meeting statutory accounting, tax (GST), and audit obligations under Indian company law and electronic record requirements.
SECTION 05

Cookies, Local Storage & Session State

Canonix Labs does not deploy third-party advertising cookies, invasive tracking pixels, or cross-domain fingerprinting scripts.

We utilize standard browser LocalStorage solely to preserve client-side session states:

Storage KeyPurpose
theme-selectionPreserves user interface palette (Lavender, Navy, Red Velvet)
vibe-playlist-trackRemembers active track index in curated YouTube audio modal

You can purge LocalStorage at any time via your browser settings without affecting the core readability of our website.

SECTION 06

Third-Party Infrastructure & Processors

We rely on industry-standard infrastructure providers that maintain SOC2 Type II, ISO 27001, and GDPR compliance certifications:

Vercel Inc.Global Edge Content Delivery Network (CDN) and secure serverless hosting.
YouTube (Google LLC)No-cookie embedded iframe (youtube-nocookie.com) for our curated audio vibe player.
FormSubmit / Mail RelayEncrypted dispatch of feedback and inquiry submissions to our corporate inboxes.
GitHub EnterprisePrivate code repositories protected with hardware security keys and signed commits.
SECTION 07

Security & Encryption Standards

Security is not an afterthought at Canonix Labs; it is built into our core engineering workflow:

Canonix Cryptographic Checklist
  • • Transit Encryption: All HTTP connections are strictly forced over TLS 1.3 with HSTS enabled.
  • • Resting Encryption: Client project artifacts, database backups, and environment secrets are encrypted with AES-256-GCM.
  • • Access Governance: Zero-trust least privilege access model with multi-factor biometric authentication required for all engineers.
SECTION 08

Data Retention & Disposal

We retain personal data only for as long as necessary to fulfill the purposes outlined in this policy:

  • Inquiry & Feedback Records: Retained for a maximum of 180 days after project resolution, unless a continuous commercial engagement ensues.
  • Commercial & Contractual Records: Invoices, signed SOWs, and accounting records are retained for statutory retention periods prescribed under Indian tax and corporate law (7 years).
  • Client Code Repositories: Transferred in full to client ownership at sprint conclusion, after which temporary staging replicas are scrubbed within 30 days.
SECTION 09

Your Statutory Rights

Regardless of geography, we provide comprehensive rights to our users and prospective clients:

Right of Access:Request a copy of personal information we maintain about you.
Right to Rectification:Correct inaccurate, obsolete, or incomplete information.
Right to Erasure:Request complete deletion of your records ("Right to be Forgotten").
Right to Withdraw Consent:Revoke consent for communications or processing at any time.

To exercise any of these rights, email us directly at hello@canonix.in. We respond to all verified requests within 30 days without fee.

SECTION 10

Grievance Redressal & Data Officer

In accordance with the Information Technology Act 2000, rules made thereunder, and the Digital Personal Data Protection Act 2023, our designated Grievance Officer details are:

DesignationGrievance & Data Protection Officer
EntityCanonix Labs (India)
Physical AddressBayalubasaveshwara Nagar 2nd Stage, Kommaghatta, Bengaluru, Karnataka 560060, India
Email Addresshello@canonix.in
Direct Phone+91 91870 42409

We review and update this policy periodically to align with emerging global privacy laws. Material updates will be denoted with a revised revision date at the head of this document.

like what you see? help us improve.

We are building this with you. Every click, suggestion, and idea helps shape what comes next. Join us in refining every detail so together we can craft something truly award worthy.

play our canonix vibe

Enter the world of creative bangers. From iconic classics to fresh new sounds, feel the energy, the rhythm, and the attitude that move us.