Privacy, Information Security & AI Governance Policy
Last updated: June 29, 2026
Quickfox Consulting Pvt. Ltd. is committed to protecting the privacy, confidentiality, integrity, and availability of information entrusted to us by our clients, partners, employees, and website visitors.
Introduction
Quickfox Consulting Pvt. Ltd. (“Quickfox”, “Quickfox Consulting”, “we”, “our”, or “us”) is committed to protecting the privacy, confidentiality, integrity, and availability of information entrusted to us by our clients, partners, employees, and website visitors.
Scope
This Policy applies to:
- Visitors to our website
- Prospective and existing customers
- Business partners and vendors
- Users of Quickfox Studio and related products
- Individuals interacting with our services and support teams
Information We Collect
Personal Information
We may collect:
- Name
- Email address
- Phone number
- Company name
- Job title
- Business address
- Contact information
- Communication records
- Information voluntarily submitted through forms or inquiries
Technical Information
We may automatically collect:
- IP address
- Device information
- Browser information
- Operating system details
- Website activity and usage data
- Cookies and tracking information
Customer Data
When providing services, customers may provide business data, documents, workflow information, system access credentials, transaction records, and operational data necessary for delivering contracted services. Customers retain ownership of their data at all times.
How We Use Information
We use information to:
- Deliver products and services
- Respond to inquiries and support requests
- Implement automation and AI solutions
- Improve product performance and user experience
- Monitor service quality and security
- Conduct analytics and reporting
- Comply with legal and regulatory obligations
- Communicate business updates and service notifications
- Prevent fraud, misuse, and unauthorized activities
We process information only for legitimate business purposes and in accordance with applicable laws.
Information Security Commitment
Quickfox is committed to maintaining an Information Security Management System (ISMS) designed to protect information assets from unauthorized access, disclosure, alteration, destruction, or loss.
Our security objectives include:
- Protecting the confidentiality of customer and company information
- Maintaining the integrity and accuracy of data
- Ensuring availability of critical systems and services
- Managing information security risks proactively
- Supporting business continuity and operational resilience
- Meeting contractual, legal, and regulatory obligations
Information Security Controls
We implement appropriate administrative, technical, and organizational safeguards, including:
Access Control
- Role-based access management
- Least-privilege principles
- Multi-factor authentication where appropriate
- User account monitoring and review
Data Protection
- Secure transmission of data
- Encryption where appropriate
- Secure storage mechanisms
- Data backup and recovery procedures
Infrastructure Security
- Network security controls
- Endpoint protection
- System monitoring and logging
- Vulnerability assessment and remediation
Employee Security
- Security awareness training
- Confidentiality obligations
- Defined security responsibilities
- Access restrictions based on business need
AI and Automation Governance
Quickfox develops and deploys AI-powered solutions, automation platforms, and intelligent agents.
Responsible AI Use
We strive to ensure AI systems are:
- Transparent and accountable
- Used for legitimate business purposes
- Subject to human oversight where appropriate
- Monitored for performance and reliability
Customer Data Protection
Customer data used within AI and automation solutions:
- Remains the property of the customer
- Is processed solely for agreed business purposes
- Is not sold or shared without authorization
- Is protected through applicable security controls
AI Service Providers
Where third-party AI services or large language models are utilized:
- Appropriate safeguards are implemented
- Providers are evaluated for security and privacy considerations
- Customer data is handled in accordance with contractual obligations
Data Sharing and Third Parties
We do not sell personal information.
Information may be shared with:
- Authorized employees and contractors
- Cloud hosting providers
- Technology vendors
- Professional advisors
- Business partners involved in service delivery
- Government or regulatory authorities when legally required
All service providers are expected to maintain appropriate security and confidentiality standards.
International Data Transfers
As Quickfox serves clients globally, information may be processed or stored in jurisdictions outside the country where it was originally collected. Where such transfers occur, we implement reasonable safeguards to protect information and maintain compliance with applicable legal requirements.
Data Retention
Information is retained only for as long as necessary to:
- Deliver contracted services
- Fulfill legal and regulatory obligations
- Resolve disputes
- Enforce contractual commitments
- Support legitimate business operations
When retention is no longer required, information is securely deleted, anonymized, or destroyed.
Incident Management
Quickfox maintains procedures for identifying, assessing, responding to, and recovering from information security incidents. These procedures include:
- Incident reporting and escalation
- Investigation and containment
- Corrective actions
- Recovery and service restoration
- Notification obligations where legally required
Business Continuity and Disaster Recovery
We maintain business continuity and disaster recovery measures designed to:
- Protect critical business services
- Preserve customer information
- Restore operations following disruptions
- Minimize downtime and operational impact
Regular backups and recovery procedures are implemented where appropriate.
Supplier and Vendor Security
Quickfox evaluates third-party providers based on applicable security, privacy, and operational considerations. Where appropriate, vendors may be required to:
- Maintain security controls
- Sign confidentiality agreements
- Comply with contractual data protection requirements
- Support security assessments and audits
Monitoring and Audit
To protect systems and information assets, we may conduct:
- Security monitoring
- Log analysis
- System audits
- Risk assessments
- Compliance reviews
- Internal security evaluations
These activities support the ongoing effectiveness of our security program.
Your Privacy Rights
Subject to applicable laws, individuals may have the right to:
- Access personal information
- Correct inaccurate information
- Request deletion of personal information
- Restrict or object to processing
- Withdraw consent where applicable
- Request information about how data is processed
Requests may be submitted using the contact details below.
Compliance and Regulatory Commitment
Quickfox is committed to complying with applicable:
- Data protection and privacy laws
- Contractual security obligations
- Industry standards and best practices
- Regulatory requirements applicable to our operations
We continuously review and improve our policies, procedures, and controls to strengthen our security and privacy posture.
Changes to This Policy
We may update this Policy from time to time to reflect legal, regulatory, technological, or operational changes. Updated versions will be posted on this page with a revised effective date.
Contact Information
For questions regarding this Policy, privacy matters, security concerns, or data protection requests, please contact:
Quickfox Consulting Pvt. Ltd.
Email: hr@quickfoxconsulting.com
Website: www.quickfoxconsulting.com
Address: Kupondole, Lalitpur, Nepal
For security or privacy inquiries, please include “Privacy & Security Request” in the subject line.
Questions about this policy?
Reach out to our team — we're happy to clarify how we handle your data and your rights.