Privacy Policy
This Privacy Policy outlines how Dawnell Industries ("Dawnell", "we", "us", or "our") collects, uses, processes, stores, and protects personal data and proprietary CAD/technical design information across our website and business divisions.
As a Data Principal in India, you are entitled to clear, unambiguous, and itemized information regarding the personal data requested from you, the specific purpose for which it is processed, how you may exercise your statutory rights (such as access, correction, erasure, and nomination), and how to register a complaint with our Grievance Redressal Officer or the Data Protection Board of India.
1. Scope & Business Entities Covered
This policy applies to all visitors, clients, enterprise partners, and prospective students engaging with Dawnell Industries through this website and its operational units:
- LetsPrintIT: Custom on-demand 3D printing & additive manufacturing portal.
- Engineering Design: CAD modeling, product development & FEA consultation.
- Validation & Testing: 3D printer calibration, stress analysis & quality audit.
- Service & AMC: Industrial 3D printer maintenance & annual service contracts.
- Dawnell Academy: Technical additive manufacturing courses & workshops.
- Industrial Components: Engineering filaments, spares & consumables distribution.
2. Information We Collect
We collect only the minimum necessary information required to evaluate, quote, and deliver our engineering, educational, and manufacturing services:
A. Information Provided Voluntarily by You
- Contact Information: Full name, business email address, phone number, and company/organization name.
- Engineering & Project Details: Project descriptions, dimensional tolerances, functional requirements, material requests, and production timelines.
- Technical Design Files & Models: CAD geometry files (.stl, .step, .stp, .obj, .3mf, .iges, .igs, .sla, .ply, .dxf, .pdf, .zip) uploaded for manufacturing feasibility and quotation.
- Equipment Diagnostics: 3D printer make, model, firmware information, and fault descriptions for Service/AMC inquiries.
- Academic Preferences: Selected courses, training modules, or corporate workshop requirements for Dawnell Academy.
- Purchasing Inquiries: Product selections, spool quantities, and procurement requirements for filaments and components.
B. Automatically Collected Technical Metadata
- Device & Network Identifiers: IP address (collected via Cloudflare edge headers), browser type, and operating system.
- System Telemetry: Request timestamps, referrer URLs, and HTTP payload diagnostic status.
- Local Preferences: Storage of interface preferences (such as light/dark mode selection) within your browser's local storage. We do not use third-party behavioral profiling trackers.
3. Protection of Proprietary CAD & Engineering Files
Intellectual Property Non-Disclosure Guarantee
We recognize that CAD models, blueprints, and engineering files submitted to LetsPrintIT and our Engineering Design unit constitute confidential, proprietary intellectual property.
- Files are utilized exclusively to calculate manufacturing feasibility, material volume, print estimates, and fulfill orders.
- We do not sell, license, publish, share, or reverse-engineer client designs.
- Access to CAD files is restricted strictly to authorized engineering and production personnel under confidentiality obligations.
- Clients may request immediate deletion of their CAD assets upon quotation completion or order delivery.
4. Purpose & Legal Grounds for Processing
Under the Digital Personal Data Protection Act, 2023 (DPDPA), we process personal data under the following legitimate grounds:
Consent (Section 6, DPDPA)
When you submit a quote request, service inquiry, or enrollment form, you provide consent for us to contact you regarding that specific request.
Certain Legitimate Uses (Section 7(a), DPDPA)
Processing data voluntarily furnished by you for the specific purpose of preparing technical proposals, servicing machinery, or executing contracts.
Pre-Contractual & Service Delivery
To communicate quotations, confirm machine compatibility, deliver manufactured parts, or conduct scheduled training programs.
Statutory & Legal Compliance
Maintaining business records, tax filings (GST), and complying with directives issued by law enforcement or government authorities under Indian law.
5. Data Sharing, Storage & Processors
We do not sell, rent, or trade your personal data. In order to provide rapid, high-reliability digital services, we engage trusted technical service providers (acting as Data Processors under DPDPA) bound by data confidentiality agreements:
6. Cross-Border Data Transfers
Our technical infrastructure relies on global cloud service providers (Cloudflare, Google Cloud). Data is transferred and processed across secure global data centers in compliance with Section 16 of the Digital Personal Data Protection Act, 2023, ensuring that transfers are not made to countries restricted by the Central Government of India and that reasonable security safeguards are consistently enforced.
7. Data Retention & Erasure Schedule
| Data Category | Retention Period | Reason for Retention |
|---|---|---|
| General Inquiries & Quotes | 24 Months from last interaction | Service follow-up, pricing continuity, and customer service. |
| CAD & 3D Model Files | 90 Days post-completion or immediate upon request | Manufacturing reprints, quality inspections, or warranty resolution. |
| Commercial Invoices & Orders | 8 Years | Mandatory statutory compliance under Indian tax (GST) and accounting laws. |
| Server & API Logs | 30 to 90 Days | Security monitoring, rate-limiting, and fraud prevention. |
8. Statutory Rights of Data Principals
Under Chapter III of the Digital Personal Data Protection Act, 2023, you have enforceable legal rights regarding your personal data:
Obtain a summary of personal data held about you, processing activities, and identities of data fiduciaries/processors with whom it has been shared.
Request correction of misleading or outdated data, completion of incomplete data, or erasure of personal data that is no longer required.
Access our dedicated Grievance Redressal Officer to resolve privacy concerns before escalating to the Data Protection Board of India.
Designate another individual to exercise your rights under the Act in the event of death or incapacity.
To exercise any of these rights, email our Grievance Redressal Officer at privacy@dawnellindustries.com. We respond to all verified statutory requests within the statutory timeframe (maximum 30 business days).
9. Duties of Data Principals
Under Section 15 of the DPDPA 2023, individuals exercising their rights or submitting information have a legal duty to:
- Comply with provisions of all applicable laws when exercising data rights.
- Ensure not to impersonate another person while submitting personal data for inquiries or training enrollments.
- Ensure not to suppress any material information while furnishing personal details for official documentation.
- Refrain from registering false or frivolous grievances or complaints.
10. Children's Privacy & Minors
In accordance with Section 9 of the DPDPA 2023, individuals under the age of 18 years are defined as children. Dawnell Industries does not knowingly collect personal data from or direct commercial advertising toward children without verifiable consent from their parent or lawful guardian. If a student under 18 years wishes to participate in Dawnell Academy programs, registration must be executed with parental or institutional authorization.
11. Technical & Reasonable Security Practices
Pursuant to Section 8(5) of the DPDPA 2023 and the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, Dawnell maintains comprehensive technical and managerial safeguards:
- Transport Security: Strict HTTPS/TLS 1.3 encryption across all website interactions and file upload endpoints.
- Sanitization & File Validation: Automatic validation of file extensions and sanitization of file names to prevent code injection and unauthorized directory access.
- Restricted Access Controls: Lead notifications and customer records are restricted to authenticated personnel through multi-factor authentication (MFA).
- Periodic Auditing: Regular review of API webhook secrets, environment variables, and third-party access tokens.
12. Statutory Grievance Redressal Mechanism
In accordance with the Digital Personal Data Protection Act, 2023 and the Information Technology Act, 2000, the details of our designated Grievance Redressal Officer are published below:
Grievance Redressal Officer (GRO)
Designated Officer under DPDPA 2023 & IT Rules
13. Policy Updates
We may periodically revise this Privacy Policy to reflect modifications in our manufacturing services, cloud architecture, or statutory regulations under Indian law. When changes are made, the revised policy will be posted with an updated "Effective Date". We encourage you to review this page periodically.