inlynk logo

Privacy Policy

Last updated: 17th Dec 2025

inLynk Privacy Policy

inLynk is a product owned and operated by InstaVC (“InstaVC,” “we,” “our,” or “us”). This Privacy Policy explains how we collect, receive, use, process, store, disclose, transfer, and protect personal data when individuals visit our website, access or use the inLynk platform, applications, features, integrations, or otherwise interact with us (collectively, the “Services”). By accessing or using the Services, you acknowledge that you have read, understood, and agreed to the practices described in this Privacy Policy, subject to applicable law.

This Privacy Policy applies to website visitors, prospective customers, users, administrators, partners, employees of customer organizations, and any other individuals whose personal data is processed in connection with the Services. Where inLynk is used by an organization, that organization acts as the data controller for personal data processed within its workspace, and inLynk acts as a data processor or service provider on its behalf. In such cases, the organization’s internal policies and instructions govern the use of personal data, and designated administrators may access, manage, export, restrict, or delete data in accordance with organizational controls. InstaVC is not responsible for the internal data practices of customer organizations.

Information We Collect

We collect personal data only to the extent necessary to provide, operate, secure, and improve the Services, comply with legal obligations, and pursue legitimate business interests. The nature of the data collected depends on how the Services are accessed and used.

Personal data you provide directly may include your name, business email address, phone number, company name, job role, login credentials, profile information, workspace and organizational details, communications exchanged through the platform including chats and messages, files and documents uploaded or shared, meeting and collaboration data, support requests, feedback, and any other information you choose to submit. You represent and warrant that you have the legal authority to provide such data and that providing it does not infringe the rights of any third party.

We automatically collect certain technical, usage, and diagnostic data when you visit our website or use the platform. This may include IP address, device identifiers, browser type, operating system, approximate location derived from IP address, session metadata, pages viewed, actions taken, timestamps, referring URLs, error logs, crash reports, performance metrics, and analytics related to platform usage. This data is collected through cookies, pixels, SDKs, server logs, and similar technologies and is necessary to operate the Services, maintain security, prevent fraud and abuse, and improve reliability and performance.

If you choose to connect third-party services or integrations, such as identity providers, single sign-on tools, calendar services, file storage platforms, or collaboration tools, we may receive limited information from those services based on the permissions you grant. Such data is processed solely to enable the requested functionality and is not used for advertising or sold to third parties.

How We Use Personal Data

We process personal data for lawful purposes including creating and managing accounts, authenticating users, delivering the Services and platform features, enabling collaboration and communication, sending service-related notifications, providing customer support, administering billing and payments, conducting analytics and research, improving functionality and user experience, monitoring system performance, detecting and preventing security incidents, complying with legal and regulatory requirements, enforcing contractual terms, and protecting the rights, safety, and property of InstaVC, inLynk, and our users.

Processing is based on one or more lawful grounds depending on context, including contractual necessity, compliance with legal obligations, consent where required, and legitimate business interests such as operating a secure, efficient, and scalable enterprise platform.

Marketing and Advertising Communications

By visiting the inLynk website, submitting contact information, requesting a demo, downloading content, registering for events, creating an account, or otherwise interacting with the Services, you expressly consent to InstaVC and inLynk collecting, storing, and using your provided contact information, including name, email address, phone number, company name, and role, for business communications, marketing, advertising, promotional outreach, and sales-related activities, to the extent permitted by applicable law.

Marketing communications may include product updates, feature announcements, newsletters, educational content, event invitations, promotional offers, surveys, and information relating to inLynk or other InstaVC products and services. Where required by law, such communications will be sent only with explicit opt-in consent. You may withdraw consent or opt out of non-essential marketing communications at any time using the unsubscribe links provided or by contacting us directly. Service-related or transactional communications may continue where legally permitted, even if marketing communications are opted out.

We rely on consent, contractual necessity, and legitimate business interests as lawful bases for marketing and advertising activities, as applicable under the GDPR, the India Digital Personal Data Protection Act (DPDP Act), U.S. state privacy laws, and other relevant regulations.

Cookie Policy (Embedded)

inLynk uses cookies and similar tracking technologies to operate the website and Services, ensure security, analyze performance, store preferences, and measure marketing effectiveness. Cookies may be session-based or persistent and may be placed by us or by trusted third-party service providers.

Essential cookies are required for core functionality such as authentication, session management, security, and load balancing. Analytics and performance cookies help us understand how users interact with the Services and improve stability and usability. Preference cookies store user settings and language selections. Marketing and measurement cookies may be used to assess campaign effectiveness and traffic sources but do not involve selling personal data.

Where required by law, visitors are presented with a cookie consent banner and may manage or withdraw cookie preferences at any time through browser settings or available consent tools. Disabling cookies may limit certain functionality.

Sharing and Disclosure of Personal Data

We share personal data only when necessary to provide the Services, comply with legal obligations, or protect legitimate interests. This includes sharing with hosting and cloud infrastructure providers, analytics and monitoring vendors, communication and support tools, payment processors, security providers, professional advisors, and authorized workspace administrators. InstaVC may access data for operational support, maintenance, compliance, audits, and internal administration.

We may disclose personal data if required by applicable law, regulation, legal process, court order, subpoena, governmental request, or other lawful authority. Such disclosures may be made to law enforcement agencies, regulatory bodies, courts, government entities, or other competent authorities where we reasonably believe disclosure is necessary to comply with legal obligations, protect public safety or national security, enforce our agreements, investigate or prevent fraud or unlawful activity, or protect the rights, property, or safety of InstaVC, inLynk, our users, employees, or others. Where legally permitted, we may attempt to notify affected users or customers, unless notification is prohibited by law or could interfere with an investigation or pose a risk of harm.

Personal data may also be disclosed or transferred in connection with a merger, acquisition, reorganization, or sale of assets, subject to appropriate confidentiality and data protection safeguards.

We do not sell or rent personal data.

Data Retention

Personal data is retained only for as long as necessary to fulfill the purposes described in this Privacy Policy, comply with legal and regulatory obligations, resolve disputes, enforce agreements, and maintain legitimate business records. Account data is generally retained while an account remains active. Usage logs, analytics, and diagnostic data are retained for limited operational periods. Backup copies are retained temporarily in accordance with disaster recovery and business continuity practices. Once retention periods expire, data is securely deleted, anonymized, or aggregated.

Your Rights and Choices

Depending on your jurisdiction, you may have rights to access, correct, delete, restrict, or object to processing of your personal data, request data portability, withdraw consent, manage cookie preferences, and opt out of certain communications. Requests are subject to identity verification and may be limited or denied where permitted by law, including where fulfilling the request would compromise security, violate legal obligations, or infringe the rights of others.

International Data Transfers

Personal data may be processed or stored in countries other than your country of residence where InstaVC or its service providers operate. Where cross-border transfers occur, we implement appropriate safeguards consistent with applicable data protection laws, including contractual protections and recognized transfer mechanisms.

Security Practices and Compliance Alignment

We maintain a comprehensive information security program designed to protect personal data against unauthorized access, loss, misuse, alteration, or disclosure. Safeguards include encryption, access controls, network security measures, logging and monitoring, incident response procedures, employee training, vendor risk assessments, and periodic security reviews.

Our security controls are aligned with recognized industry standards, including the principles of SOC 2 (Trust Services Criteria) and ISO/IEC 27001, and are designed to support enterprise security, audit, and compliance requirements. While we continuously enhance our safeguards, no system can be guaranteed to be completely secure.

Children's Privacy

The Services are not intended for children under the age of sixteen, and we do not knowingly collect personal data from such individuals. If such data is identified, it will be deleted in accordance with applicable law.

Business Transfers

If inLynk or InstaVC is involved in a merger, acquisition, restructuring, or sale of assets, personal data may be transferred as part of the transaction, subject to appropriate data protection and confidentiality safeguards.

Updates to This Policy

We may update this Privacy Policy from time to time to reflect changes in the Services, legal requirements, or business practices. Updates will be posted with a revised “Last Updated” date. Continued use of the Services constitutes acceptance of the updated policy to the extent permitted by law.

Contact Information

For questions, concerns, or data protection requests, contact:

Email: privacy@instavc.com

Company: InstaVC

Product: inLynk

Data Processing Addendum (DPA)

This Data Processing Addendum forms part of the agreement between the customer organization acting as data controller and InstaVC acting as data processor or service provider. InstaVC processes personal data solely on documented instructions from the controller and only for the purpose of providing the Services.

The controller represents that it has a lawful basis for processing personal data and for providing such data to InstaVC. InstaVC implements appropriate technical and organizational measures to protect personal data and ensure confidentiality. Access to personal data is limited to authorized personnel subject to confidentiality obligations. InstaVC may engage sub-processors to provide the Services and ensures that such sub-processors are bound by equivalent data protection obligations.

InstaVC will assist controllers, to the extent required by applicable law, in responding to data subject requests, security incidents, and regulatory inquiries. Upon termination of the Services, personal data will be deleted or returned at the controller’s instruction, subject to legal retention requirements.

This DPA is intended to comply with the GDPR, the India Digital Personal Data Protection Act, and other applicable data protection laws and shall be interpreted accordingly.

Limitation of Responsibility

To the maximum extent permitted by law, InstaVC disclaims responsibility for personal data controlled by customer organizations, for inaccurate or unlawful data provided by users, or for misuse of the Services in violation of applicable laws or contractual terms. Nothing in this Privacy Policy expands InstaVC’s liability beyond what is expressly agreed in the applicable terms of service or customer agreement.