WoWSQL Technologies Private Limited
Privacy Policy
This Policy describes how WoWSQL Technologies Private Limited collects and uses personal data when you use Versionly, a product of WoWSQL. It is written to meet our duties under the Digital Personal Data Protection Act, 2023 and related Indian information-technology rules.
- Effective
- 2 September 2026
- Product
- Versionly, a product of WoWSQL Technologies Private Limited
- Registered office
- 7/54 East Street, Kulaiayanakarisal, Thoothukudi, Tamil Nadu 628103, India
1. Who we are
This Privacy Policy is issued by WoWSQL Technologies Private Limited (“WoWSQL”, “we”, “us”, “our”), a company incorporated in India under the Companies Act, 2013, CIN U62013TN2025PTC186985, having its registered office at 7/54 East Street, Kulaiayanakarisal, Thoothukudi, Tamil Nadu 628103, India.
Versionly is a software product owned and operated by WoWSQL. References to Versionly in this Policy mean the Versionly website, dashboard, APIs, GitHub App, software development kits, emails, and related services (together, the “Service”).
For the Digital Personal Data Protection Act, 2023 (“DPDP Act”), WoWSQL is the Data Fiduciary for personal data we determine the means and purposes of processing. Where we process personal data solely on documented instructions of a customer organisation (for example, workspace member lists you upload), we act as a Data Processor to that organisation.
2. What this Policy covers
This Policy explains how we collect, use, store, disclose, and otherwise process personal data when you visit https://versionly.dev, create a Versionly account, install our GitHub App, contact us, or otherwise use the Service.
It does not apply to third-party websites, GitHub, payment processors, or vendor APIs you choose to track. Those parties have their own terms and privacy notices.
This Policy should be read with our Terms of Service and, where applicable, a written order form or data processing addendum.
3. Personal data we collect
We collect only what the Service needs to operate, bill, secure, and support.
- Account data: name, email address, password hash (we do not store your password in recoverable form), organisation or workspace name, role, and optional profile details you provide.
- Authentication data: session tokens in httpOnly cookies, email verification status, two-factor settings, and sign-in codes we send you.
- GitHub connection data: GitHub username or login, installation identifiers, the list of repositories you explicitly connect, repository metadata needed to scan and open pull requests, and webhook events GitHub sends for those installations.
- Repository content: source files, dependency manifests, and related metadata from connected repositories, processed to detect API usage and propose patches. We do not use unconnected repositories.
- Usage and device data: log data such as IP address, browser type, timestamps, pages or API routes requested, and diagnostic error reports.
- Billing data: plan selection, subscription status, invoices, and payment references from our payment processor. We do not store full card numbers on our servers.
- Communications: messages you send through the contact form, support email, or similar channels, including name, email, company (if given), and the content of your enquiry.
We do not require special category / sensitive personal data to use Versionly. Please do not submit government ID numbers, health data, or similar in tickets or code comments unless a separate written agreement requires it.
4. How we obtain data
- Directly from you, when you register, update a profile, or write to us.
- From GitHub, when you install the Versionly GitHub App and grant repository access.
- Automatically, through cookies, logs, and the Service itself.
- From our payment partner, limited to status needed to provision or suspend a plan.
5. Why we process personal data
We process personal data for the following purposes, and no others without a new notice or consent where the DPDP Act requires it:
- to create and administer accounts, workspaces, and access controls;
- to provide scans, detections, suggested patches, and pull requests;
- to send transactional mail (verification, sign-in codes, security notices);
- to process subscriptions, invoices, and plan limits;
- to secure the Service, prevent abuse, and investigate incidents;
- to respond to contact-form and support requests;
- to comply with Indian law, including tax, accounting, and lawful requests;
- to improve reliability of the Service using aggregated or de-identified metrics where reasonably possible.
We do not sell personal data. We do not use customer repository contents to train generalised public models for unrelated products. Product improvement that uses customer code, if any, is limited to operating and securing Versionly for that customer unless a separate written consent says otherwise.
6. Lawful basis under Indian law
Processing is carried out in accordance with the DPDP Act and the Information Technology Act, 2000, including the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, to the extent still applicable, and the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021.
Depending on the activity, processing is based on:
- your consent (for example, creating an account or installing the GitHub App);
- performance of a contract, including the Terms of Service and your selected plan;
- legitimate uses permitted under the DPDP Act, such as employment-related processing inside WoWSQL and compliance with law;
- a legal obligation (tax, court order, or regulator).
You may withdraw consent where processing is consent-based, by closing your account or writing to privacy@wowsql.com. Withdrawal does not affect processing already completed, or processing we must continue under law or contract (for example, invoice retention).
7. GitHub access — important limits
Versionly is designed so that you choose which repositories are connected. We do not treat every repository accessible to a GitHub user or organisation as a Versionly project.
- Repository contents are processed to detect third-party API usage and to open suggested pull requests on those same repositories.
- Disconnecting a project in Versionly stops our watching of that repository from the product side. Uninstalling the GitHub App removes installation access at GitHub.
- GitHub remains a separate controller for data on github.com. Review GitHub’s terms and privacy statement as well.
9. Storage and cross-border processing
WoWSQL is established in India. Service infrastructure, email, and subprocessors may be located in India or other countries. Where personal data is processed outside India, we take steps intended to keep it protected in line with the DPDP Act and contractual safeguards with those providers.
If a government restriction on transfer applies to a category of data, we will comply with that restriction.
10. How long we keep data
We keep personal data only as long as needed for the purposes above:
- account and workspace data — for the life of the account, then a short wind-down;
- scan and pull-request records — while the project is connected, and for a limited archive after disconnect so you can reconstruct history;
- security logs — typically up to 12 months, unless an incident requires longer;
- billing and tax records — as required under Indian tax and company law, often 8 years;
- contact-form messages — as long as needed to handle the enquiry and for a reasonable complaints period.
When retention ends, we delete or irreversibly anonymise the data, except where a copy must be kept under law or in encrypted backups until those backups rotate.
11. Security
We implement reasonable security practices and procedures appropriate to a software-as-a-service product, including encrypted transport (HTTPS), hashed passwords, restricted staff access, and session cookies that are not readable by client-side scripts.
No method of transmission or storage is perfectly secure. You are responsible for keeping your password, email inbox, and GitHub organisation permissions under your control, and for reviewing pull requests before merge.
If we become aware of a personal-data breach likely to affect you, we will take steps required under the DPDP Act, including notifying the Data Protection Board of India and affected Data Principals where that law so requires.
12. Your rights (Data Principals)
Subject to the DPDP Act and any lawful exceptions, you may:
- obtain a summary of personal data we hold about you and the processing activities;
- request correction and erasure of inaccurate or outdated personal data;
- nominate a person to exercise rights in the event of death or incapacity, where the DPDP Act so provides;
- withdraw consent where processing is based on consent;
- have a grievance redressed through the officer named below.
Write to privacy@wowsql.com. We may need to verify that the request comes from you. We will respond within the timelines prescribed by law, or otherwise within a reasonable period.
If you use Versionly through an employer or client workspace, some requests must go to that organisation first. We will redirect you where that is the correct path.
13. Children
Versionly is a professional developer and operations product. It is not directed at children. We do not knowingly create accounts for persons under 18 years of age. If you believe a child has provided personal data, contact privacy@wowsql.com and we will delete it.
15. Automated processing
Scans and suggested patches are generated automatically from connected code and vendor API information. They are suggestions. No production change is made until a human with access to your GitHub repository reviews and merges a pull request. You should not treat a suggestion as legal, security, or architectural advice.
16. Grievance officer
In line with the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021, and the DPDP Act, you may lodge a complaint with:
Saravana Pradeep P, Director
WoWSQL Technologies Private Limited
7/54 East Street, Kulaiayanakarisal, Thoothukudi, Tamil Nadu 628103, India
Email: grievance@wowsql.com
We aim to acknowledge grievances promptly and to resolve them within the period required by applicable rules (including, where applicable, thirty-six hours for acknowledgement and fifteen days for disposal under the Intermediary Guidelines, or such other period as then in force).
You may also approach the Data Protection Board of India after exhausting this process, once that Board is exercising jurisdiction over the relevant complaint.
17. Changes to this Policy
We may update this Policy to reflect product, legal, or operational changes. The “Effective” date at the top will change. Material changes will be notified by email to the workspace owner or by a notice in the dashboard, where practicable. Continued use after the effective date constitutes acceptance of the updated Policy, except where law requires a fresh consent.
18. How to contact us
Privacy: privacy@wowsql.com
Legal: legal@wowsql.com
General: hello@wowsql.com
Parent site: https://wowsql.com
Postal correspondence: WoWSQL Technologies Private Limited, 7/54 East Street, Kulaiayanakarisal, Thoothukudi, Tamil Nadu 628103, India. GSTIN 33AAECW3118J1ZF. ROC: Registrar of Companies, Chennai. Incorporated 11 December 2025.