The Archival Privacy Ledger &
Data Governance Covenant.
Agencies by SHRI operates under an uncompromising principle of digital sovereignty. We collect only what prospective partners deliberately share, persist zero marketing telemetry, deploy no behavioral tracking scripts, and treat every project intake brief as a strictly confidential strategic artifact.
Entity Architecture & Studio Directorate
This Data Governance Ledger governs all digital transmissions and user interactions conducted through the web domain agencies.shri.org.in and its associated web endpoints. The practice operates under the trade and institutional banner of Agencies by SHRI, an autonomous strategic creative studio and digital growth division within the broader SHRI Organization ecosystem.
The studio’s executive direction, strategic advisory protocols, and engineering governance are led directly by Anay Raj Tiwari. Unlike high-volume consumer platforms, Agencies by SHRI is an intentional, boutique advisory practice working with a limited cohort of category architects. We do not operate mass-market tracking architectures or behavioral data pools.
Data Collected via Direct Intake Submissions
We collect personal and corporate information only when you explicitly submit it to us via our dedicated intake terminal (/api/contact) or through direct bilateral correspondence. The intake data fields are strictly delimited to:
Full Legal or Representative Name
Provided to identify the founder, principal, or executive sponsor submitting the dossier.
Company or Entity Name
Identifies the corporate brand, venture, or institution seeking strategic creative engagement.
Official Email Address
Used solely for bilateral consultative dispatch, candidate qualification, and invitation scheduling.
Project Brief & Strategic Objectives
The qualitative brief, scope outlines, target timeline, or deck link required to evaluate cohort fit.
Ephemeral Server Telemetry & Threat Defense
To preserve system uptime and protect against automated denial-of-service (DDoS) attempts, malicious crawling, and automated spam, our application implements an ephemeral, in-memory rate limiting defense within the edge runtime:
In-Memory IP Rate Limiting (15-Minute Sliding Window)
When a submission is sent to /api/contact, the server inspects the connecting IP address via the standard x-forwarded-for header. A maximum of five (5) dispatches per IP address is permitted within a 15-minute sliding window.
✓ Absolute Non-Persistence: This check is conducted purely in transient RAM (Map<string, number[]>). No IP address is ever committed to a database, persisted to disk, or transferred to third-party logging providers. Once the sliding window expires, all associated timestamps are immediately garbage-collected and destroyed.
Invisible Honeypot Bot Trap
Our forms incorporate hidden trap fields inaccessible to human visitors. Automated web crawlers and scrapers that populate this hidden field are silently absorbed by the server. Their payload is rejected without SMTP transmission and without polluting operational systems.
Secure Dispatch via TLS-Encrypted SMTP
Conventional agencies frequently channel prospective client briefs through third-party marketing CRMs, unvetted form aggregators, or cloud webhook middlewares that sell or ingest proprietary briefs into AI models. Agencies by SHRI maintains a direct, air-gapped intake architecture:
Upon submission, the intake payload is packaged in memory and transferred over a TLS-encrypted SMTP socket directly to our primary executive mailbox (agenciesbyshri@gmail.com). No intermediate SaaS CRM or relational store maintains an unencrypted record of your transmission.
Zero Tracking Pixels & Zero Sale of Client Data
We believe executive decision-makers and high-conviction founders deserve complete digital dignity. Our digital presence operates under an immutable guarantee:
Zero Surveillance Pixels
No Meta / Facebook Pixels, Google Tag Manager beacons, TikTok tags, or LinkedIn insight trackers are injected into this manuscript.
Zero Advertising Cookies
We deploy zero cross-site profiling cookies, zero third-party advertising cookies, and zero behavioral session tracking scripts.
Zero Sale of Information
We categorically do not sell, rent, lease, monetize, or trade your contact info or project dossiers to any commercial data brokers.
Data Retention & Sovereign Right to Erasure
We do not warehouse stale records. Intake dossiers are retained in our secure email records solely for the active duration of our evaluation cycle or during the lifetime of an executed client Statement of Work (SOW). If an inquiry does not materialize into a mutual partnership, the records are archived and routinely purged.
How to Execute Your Right to Immediate Erasure (Purging)
You retain complete sovereign authority over your submissions. At any point, you may instruct us to permanently delete and purge all copies of your brief, company dossiers, and email threads from our leadership records.
Purge requests are acknowledged and permanently fulfilled within 72 business hours under direct leadership supervision.
Governing Law & Legal Jurisdiction
This Data Governance Ledger, our digital practices, and all matters arising from or relating to your interaction with this platform shall be governed by, interpreted, and construed in accordance with the substantive laws of the Republic of India, including the Digital Personal Data Protection Act (DPDPA), the Information Technology Act, 2000, and the rules framed thereunder.
Any legal proceeding, controversy, or dispute arising out of or regarding this policy shall be brought exclusively before the courts of competent jurisdiction located in India.
Ratified under the executive seal of Agencies by SHRI (SHRI Organization). For formal legal notices, data protection inquiries, or consultative clarification, reach our direct desk.