GDPR Compliance Statement
Astaqc Consulting OPC Private Limited

Last Updated: March 2026

Astaqc Consulting OPC Private Limited (“Astaqc”, “we”, “our”, “us”) is committed to protecting personal data and complying with applicable data protection and privacy regulations, including the General Data Protection Regulation (EU) 2016/679 (“GDPR”).

This statement summarizes the data protection principles and safeguards implemented by Astaqc in relation to the services we provide.

Company Information

Astaqc Consulting OPC Private Limited
D-62, Sanjay Colony, Sector-23
Faridabad, Haryana – 121002
India

Website: https://www.astaqc.com
Privacy Contact: privacy@astaqc.com

Role Under GDPR

Depending on the nature of the engagement, Astaqc may act as:

Data Processor
When providing services to clients that involve processing personal data on their behalf.

Data Controller
For limited business operations such as website inquiries, communications, and contractual relationships.

Nature of Services

Astaqc provides professional technology services including:

  • Software Development
  • Software Testing and Quality Assurance
  • Test Automation
  • IT Consulting
  • Security Testing
  • Accessibility and Performance Audits

Client Data Handling

Astaqc follows a data-minimization approach when delivering services.

In most cases:

  • Client production data remains within client-controlled systems
  • Astaqc accesses systems only as authorized by the client
  • Only test data or project artifacts may be temporarily stored where required

Where possible, synthetic or anonymized test data is used.

Technical and Organisational Safeguards

Astaqc implements appropriate safeguards including:

  • Role-based access control
  • Least-privilege access principles
  • Secure authentication and account management
  • Secure development and testing environments
  • Use of trusted cloud providers such as Microsoft services
  • Endpoint security and system protections

Subprocessors

Astaqc may use trusted third-party providers to support service delivery, including services within the Microsoft ecosystem (e.g., Microsoft Azure DevOps and Microsoft 365).

Such providers maintain appropriate privacy and security safeguards.

Data Subject Rights

Where applicable under GDPR, individuals may exercise rights including:

  • Access to personal data
  • Rectification of inaccurate data
  • Erasure of data
  • Restriction of processing
  • Data portability
  • Objection to processing

Requests may be submitted to:

privacy@astaqc.com

Data Protection Contact

For privacy or data protection inquiries:

📧 dpo@astaqc.com

Additional Information

Further information about Astaqc’s privacy practices is available at:

GDPR Compliance
https://www.astaqc.com/gdpr-compliance

Privacy Policy
https://www.astaqc.com/privacy-policy

Cookie Policy
https://www.astaqc.com/cookie-policy

copilot