The Bit Sprout · Tiatt Digital Solutions Private Limited
Privacy Policy
This policy explains how The Bit Sprout handles information when businesses visit our website, request a preview, become customers, submit leads, or use our managed services.
Last updated: 31 August 2026
1. Who we are
The Bit Sprout is a brand of Tiatt Digital Solutions Private Limited. For privacy questions or rights requests, contact privacy@thebitsprout.com.
2. Information we collect
- Account and contact information such as name, business name, email address, and role.
- Business information such as services, service areas, hours, credentials, public business details, website URLs, and brand materials.
- Website, device, diagnostic, security, and usage information needed to operate and improve the Services.
- Lead and form information submitted through customer websites where we provide lead-management functionality.
- Billing, transaction, and settlement references from payment providers; we do not intentionally store full payment-card details when a payment processor handles them.
- Support communications, approvals, revision requests, and other records of the business relationship.
3. How we use information
- Provide previews, websites, reports, dashboards, lead handling, support, and managed services.
- Verify business facts, prevent unsupported claims, and keep customer-facing information accurate.
- Authenticate users, secure accounts, detect misuse, investigate incidents, and maintain audit records.
- Process payments, administer subscriptions, maintain accounting records, and respond to billing questions.
- Measure website and service performance and improve product quality.
- Communicate about requested services, operational changes, security, support, and lawful business marketing.
- Comply with legal, regulatory, tax, and recordkeeping obligations.
4. Business Truth and AI-assisted processing
We may use automation and AI-assisted systems to analyze websites, organize evidence, prepare drafts, generate design concepts, and recommend actions. Material business facts such as licences, guarantees, prices, years in business, certifications, service areas, and similar claims are not intentionally promoted from generated or unknown status into published facts without verification or customer confirmation.
5. Legal bases and business context
Depending on location and context, processing may rely on performance of a contract, steps requested before entering a contract, legitimate business interests, consent where required, compliance with law, or other lawful grounds. The Services are designed primarily for business and professional customers rather than consumer-only use.
6. Service providers and subprocessors
We use service providers for hosting, database infrastructure, email, analytics, payments, security, customer support, and other operational functions. They receive only the information reasonably necessary for their function and are governed by their own contractual and security obligations. Our production subprocessor schedule will be updated as the final provider set is frozen.
7. International processing
Our customers, users, providers, and infrastructure may be located in different countries. Where information is processed across borders, we use commercially reasonable contractual, technical, and organizational safeguards appropriate to the service and applicable law.
8. Retention
We retain information only for as long as reasonably necessary for the service, security, dispute handling, backup recovery, accounting, tax, legal, and legitimate business purposes. Different categories have different retention needs. Production retention periods will be documented and enforced as the platform data architecture is finalized.
9. Security
We use measures such as access controls, tenant scoping, managed hosting protections, encryption provided by our infrastructure providers, least-privilege practices, auditability for sensitive actions, backups, and incident-response procedures. No internet service can promise absolute security.
10. Your choices and rights
Depending on applicable law, you may have rights to request access, correction, deletion, withdrawal of consent, restriction, objection, grievance handling, or portability of certain information. Business customers can also request supported exports of their business data, media, and leads. Send requests to privacy@thebitsprout.com and provide enough information for us to verify the request safely.
11. Cookies and analytics
Our public website uses Google Analytics only after a visitor chooses to allow optional analytics. Until consent is granted, the Google Analytics tag is not loaded. We store the visitor's analytics preference locally in the browser so the choice can be respected on later visits. Analytics is used to understand aggregate site usage and conversion touchpoints such as preview-request or contact actions; we do not use this launch-stage implementation for advertising personalization.
12. Marketing and opt-out
Business marketing communications will include a practical way to opt out. We maintain suppression records so an opt-out is not silently reintroduced into a later campaign. Service, security, billing, and transactional communications may still be necessary while a customer relationship remains active.
13. Children
The Services are not designed for children and we do not knowingly offer the business platform to children. If you believe a child has provided personal information through our own service, contact privacy@thebitsprout.com.
14. Changes to this policy
We may update this policy as the Services, providers, or legal requirements change. Material updates will be reflected by the date above and communicated where appropriate.