info@middcom.com | +91 95133 15527

1. Introduction

Welcome to Middcom Systems ("we," "us," or "our"). We are committed to safeguarding the privacy and security of your personal and corporate data. This Privacy Policy details how we collect, process, and secure information when you visit our website, purchase our digital security products, or engage with our services.

By accessing our website or utilizing our identity and access management products, you acknowledge the terms outlined in this Policy. We operate in full compliance with the Information Technology Act, 2000 of India, as well as relevant global trade and logistics data standards.

2. Information We Collect

To serve our corporate clients, partners, and individual purchasers effectively, we collect the following categories of information:

  • Identity and Contact Data: Full name, corporate email address, telephone number, job title, and company name.
  • Financial and Transaction Data: Billing address, capital procurement details, purchase logs, and advance-payment transactional records.
  • Verification Data (for DSC issuance): Government-issued identifiers (such as PAN, Aadhaar, or organization registration documents), verification videos, and identity proofs required by authorized Certifying Authorities (CAs) in accordance with the Controller of Certifying Authorities (CCA) regulations.
  • Technical and Usage Data: IP address, browser type, operating system version, and analytical patterns during site visits.
Note regarding Biometrics: We distribute HID biometric scanners and access control hardware. We do not store, upload, or process any raw biometric finger/face templates on our web servers. Biometric template processing happens locally on your secure client machines or local enterprise servers.

3. How We Use Your Data

We process collected information to fulfill contractual, operational, and regulatory obligations:

  • Product Allocation and Delivery: Coordinating capital procurement with OEM supply chains for scheduled shipment deliveries.
  • DSC Verification: Submitting verification documents securely to licensed CAs for rapid certificate issuance.
  • Customer Support: Troubleshooting hardware drivers, firmware, API integration, and handling technical SLAs.
  • Business Communication: Securing payments, issuing monthly billing forecasts, and following up on partner channel inquiries.
  • Security Updates: Notifying you of critical security bulletins, product releases, or service upgrades (where you have opt-in consent).

4. Data Security & Storage

We employ premium, industry-standard administrative, physical, and technological security controls to guard your data against unauthorized access, alterations, disclosure, or destruction:

  • All transaction-related data transfers are encrypted using Secure Socket Layer (SSL/TLS) technology.
  • We limit corporate access to sensitive client identity documents strictly to verified personnel who require access for CA registration.
  • Web-based quote and contact forms feature sanitized input processors to prevent SQL injection and cross-site scripting (XSS) threats.

While we execute modern, rigorous security protocols, no storage medium or transmission method over the internet is completely infallible. We encourage clients to handle their USB Crypto Tokens (e.g., ePass2003, ProxKey) securely and change default PINs immediately upon delivery.

5. Third-Party Sharing

We do not sell, rent, or trade your personal data to external marketing companies. We share information only with trusted third parties under strict confidentiality and operational guidelines:

  • Licensed Certifying Authorities (CAs): For the explicit validation and setup of Digital Signature Certificates.
  • Logistics and Courier Partners: Standardizing address details to assure timely dispatches of tokens, readers, and hardware.
  • OEM Partners (such as HID Global): For product warranty registration, licensing compliance, and partner program alignments.
  • Legal Requirements: Disclosing information when legally mandated by government regulators, law enforcement agencies, or CCA audit guidelines.

6. Cookies & Tracking

Our website uses cookies and similar tracking identifiers to optimize your browsing experience. Cookies help us recall your session preferences, understand traffic volumes, and track form submission status.

You can customize cookie permissions via your browser controls. Disabling functional cookies may restrict parts of our interactive features, such as pre-filling product selection headers or submitting inquiry contact forms.

7. Data Retention & Your Rights

Data Retention: We store client identity information for as long as necessary to complete product deliveries, provide warranty support, and comply with legally mandated record retention times (such as CCA audits requiring CA logs to be maintained for specified years).

Your Rights: You hold the right to request access to the personal data we hold, demand updates/corrections to outdated records, or ask for the deletion of personal information where no overriding legal or operational retention mandate exists. To trigger these requests, email our data team at the address below.

8. Contact Information

If you have any questions about this Privacy Policy, our data storage practices, or wish to invoke your data rights, please contact our privacy compliance officer:

  • Middcom Systems
  • APOORVA Complex, Dinnur Road, Rt Nagar, Bangalore-560032, Karnataka, India
  • info@middcom.com