Privacy Policy
Introduction
AHMEDMEDIAGROUP LTD (registered in England and Wales) operates Infyntra, a cloud infrastructure design and management platform. This Privacy Policy explains how we collect, use, process, and protect your personal data when you use our website (infyntra.io) and platform (app.infyntra.io), and any related services we provide.
We are committed to protecting your privacy and ensuring transparency about how we handle your information. This policy is compliant with the UK General Data Protection Regulation (GDPR), the Data Protection Act 2018, and other applicable privacy laws.
Company Website: https://ahmedmediagroup.com
Data Controller
AHMEDMEDIAGROUP LTD is the data controller responsible for your personal data. This means we determine how and why your data is processed.
Contact Details:
- Email: hello@ahmedmediagroup.com
- Website: https://ahmedmediagroup.com
If you have any questions about this Privacy Policy or our privacy practices, please contact us using the details above.
Information We Collect
We collect various types of information to provide and improve our services:
Account Information
When you register for an Infyntra account, we collect:
- Full name
- Email address
- Company name and details
- Account preferences and settings
Usage Data
We automatically collect information about how you interact with Infyntra, including:
- Features used and frequency of use
- Pages visited and time spent
- Interaction patterns and user behavior
- Search queries and filters applied
Infrastructure Data
When you use Infyntra to design and document your infrastructure, you provide:
- Network designs and diagrams
- IP allocations and configurations
- Naming conventions and resource labels
- Infrastructure-as-Code (IaC) scripts and templates
- Tickets, comments, and documentation
This is user-generated content that you choose to store in Infyntra. You retain full ownership of this data.
Payment Information
Payment processing is handled entirely by Paddle, our Merchant of Record. We do not collect, store, or have access to your payment card details. Paddle processes your payment information according to their privacy practices. See their privacy policy for details on how payment data is handled.
Technical Data
When you access our website and platform, we automatically collect:
- IP address
- Browser type and version
- Device type and operating system
- Referring URL and pages visited
- Approximate location (country/region level)
- Cookies and similar tracking technologies
How We Use Your Data
We use the information we collect for the following purposes:
Providing and Maintaining the Service
We use your account and technical information to:
- Create and manage your account
- Deliver Infyntra's features and functionality
- Store and retrieve your infrastructure designs and data
- Process and execute your requests
Payment Processing
We use payment information to process subscriptions and billing through Paddle. This includes:
- Verifying your subscription status
- Sending billing invoices and receipts
- Managing refunds and disputes
Service Communications
We send you emails related to your account and service, including:
- Account creation and verification
- Password reset requests
- Service updates and maintenance notices
- Security alerts and important account notifications
- Support responses to your inquiries
Platform Improvement
We use aggregated, anonymized usage data to:
- Understand how users interact with Infyntra
- Identify and fix bugs and performance issues
- Develop new features and improvements
- Conduct research and analytics
This analysis is performed on aggregated data that cannot identify you personally.
Context-Aware Features
The IaC Assistant feature uses your infrastructure data (project context, existing configurations, naming patterns) to generate relevant and contextual code suggestions. When you use the IaC Assistant:
- Your project data is sent to Anthropic's API for processing
- Anthropic processes the data to generate code suggestions
- Anthropic does not store your prompts or project data beyond the processing request
- You can opt out of using IaC Assistant if you prefer not to share this data
Legal Compliance
We use your data to comply with legal obligations, including:
- Tax and regulatory requirements
- Legal requests from authorities
- Fraud prevention and security measures
Legal Basis for Processing (GDPR)
Under GDPR, we process your data based on the following legal bases:
Contract Performance
We process your account and payment information to perform our contract with you — providing access to and maintaining the Infyntra platform.
Legitimate Interests
We process usage and technical data to protect our platform, improve security, develop new features, and better understand user needs. These interests are balanced against your rights.
Consent
For non-essential communications such as marketing emails, we rely on your explicit consent. You can withdraw consent at any time by unsubscribing or contacting us.
Legal Obligation
We process data to comply with applicable laws, regulations, and legal requests from authorities.
Data Sharing
We do not sell your personal data. We only share your information with the following categories of recipients:
Payment Processing — Paddle
Paddle is our Merchant of Record and payment processor. We share billing and account information with Paddle to process your subscription and payments. Paddle is certified under the Privacy Shield and processes data according to GDPR standards.
AI Processing — Anthropic
If you use the IaC Assistant feature, your infrastructure data and prompts are sent to Anthropic's API for processing. Anthropic:
- Uses the data solely to generate code suggestions based on your prompts
- Does not retain your prompts or project data after processing
- Does not use your data for training Anthropic's models
- Processes data subject to Anthropic's privacy and data processing terms
Cloud Hosting Providers
We host Infyntra's infrastructure with cloud providers who process your data as data processors. These providers implement appropriate security measures and are contractually bound to protect your data.
Data We Do Not Share
We do not share your infrastructure data (network designs, IaC code, tickets, etc.) with any third parties, except as necessary to deliver the features you actively use (such as the IaC Assistant). We do not sell, rent, or trade your information to marketing companies, advertisers, or data brokers.
Legal Requests
We may disclose your information if required by law, regulation, or valid legal process (such as a court order or government request). We will notify you of such requests unless legally prohibited from doing so.
Data Retention
We retain your data for as long as necessary to provide our service and comply with legal obligations:
Active Account Data
While your account is active, we retain all your personal and infrastructure data to maintain the service.
Post-Deletion Retention
After you delete your account or downgrade your subscription, we retain your account and infrastructure data for 30 days. This grace period allows account recovery or data export. After 30 days, your data is deleted from our primary systems.
Payment and Legal Records
Payment records, invoices, and billing information are retained for as long as required by UK tax law and financial regulations (typically 6 years).
Anonymized Analytics
Aggregated, anonymized analytics data (which cannot be linked to individuals) may be retained indefinitely to improve the platform.
Backup and Recovery
Deleted data may remain in our backup systems for a limited period. These backups are retained for disaster recovery and are not accessible under normal circumstances.
Your Rights Under GDPR
You have the following rights regarding your personal data:
Right of Access
You have the right to request and receive a copy of all personal data we hold about you in a structured, commonly-used format.
Right to Rectification
You have the right to request correction of inaccurate or incomplete personal data.
Right to Erasure
You have the right to request deletion of your personal data, subject to certain exceptions (such as legal retention requirements).
Right to Restrict Processing
You have the right to request that we limit how we use your data while a dispute is resolved or under certain other circumstances.
Right to Data Portability
You have the right to receive your personal data in a machine-readable format and transmit it to another controller.
Right to Object
You have the right to object to processing of your data based on legitimate interests or for direct marketing purposes.
Right to Withdraw Consent
If processing is based on your consent, you can withdraw that consent at any time. This does not affect the lawfulness of processing before the withdrawal.
Exercising Your Rights
To exercise any of these rights, please send a written request to:
We will respond to your request within 30 days (or up to 90 days for complex requests) as required by law. We may ask for additional information to verify your identity before processing your request.
Data Security
We implement comprehensive security measures to protect your data from unauthorized access, alteration, disclosure, or destruction:
Encryption
- All data in transit is encrypted using industry-standard TLS/SSL protocols
- Sensitive data at rest is encrypted using strong encryption algorithms
Access Controls
- Access to personal data is restricted to authorized personnel only
- Strong authentication mechanisms protect account access
- User permissions and role-based access control limit data exposure
Regular Security Reviews
- We conduct regular security assessments and vulnerability testing
- Our systems are monitored for suspicious activity
- We maintain incident response procedures to address any security issues
Data Protection by Design
- Privacy and security are built into our platform architecture
- We apply data minimization principles (collect only necessary data)
- We implement privacy impact assessments for new features
Note: While we employ robust security measures, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security but take all reasonable precautions to protect your data.
International Data Transfers
Your data may be processed and stored on servers located outside the UK and EEA. When we transfer personal data internationally, we implement appropriate safeguards including:
- Standard contractual clauses approved by the UK and EU authorities
- Data Processing Agreements with all third-party processors
- Compliance with adequacy decisions where applicable
By using Infyntra, you consent to the transfer, storage, and processing of your personal data outside the UK and EEA as described in this policy.
Cookies and Tracking
We use cookies and similar tracking technologies to enhance your experience on Infyntra:
Essential Cookies
These cookies are necessary for the platform to function correctly. They enable core features such as:
- User authentication and session management
- Security and fraud prevention
- Basic site functionality and navigation
Essential cookies are set without prior consent as they are necessary for service delivery.
Analytics Cookies
We use analytics cookies to understand how users interact with Infyntra. These cookies help us:
- Analyze usage patterns and user behavior
- Identify technical issues and performance problems
- Measure the effectiveness of our platform
Analytics cookies are set only with your consent. You can manage your preferences in your account settings or cookie consent banner.
Third-Party Cookies
Paddle (our payment processor) may set cookies for payment processing and fraud detection. These cookies are governed by Paddle's privacy policy.
Managing Cookies
You can control cookie preferences through your browser settings or our cookie consent tool. Disabling non-essential cookies may limit certain features of the platform.
Children's Privacy
Infyntra is not intended for children under the age of 16. We do not knowingly collect personal data from children under 16. If we become aware that we have collected data from a child under 16 without parental consent, we will delete that information promptly.
If you believe we have collected data from a child under 16, please contact us immediately at hello@ahmedmediagroup.com.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of any material changes by:
- Posting the updated policy on this page with a new "Last updated" date
- Sending you an email notification if the changes significantly affect your rights
Your continued use of Infyntra after changes are posted constitutes your acceptance of the updated Privacy Policy. We encourage you to review this policy regularly to stay informed about how we protect your data.
Contact Us
If you have questions about this Privacy Policy, our privacy practices, or your personal data, please contact us:
Email: hello@ahmedmediagroup.com
Company: AHMEDMEDIAGROUP LTD
Website: https://ahmedmediagroup.com
We will respond to your inquiry within 30 days. If you are not satisfied with our response, you have the right to lodge a complaint with your local data protection authority.