Device Health Diagnostics & Certification Software
Cirtyn is a hardware diagnostics and device health certification software developed and operated by Gadget Guruz Technologies Pvt Ltd ("Company", "we", "our", "us"), a company incorporated in India with operations serving customers in the United States. This Privacy Policy explains how we collect, use, disclose, and safeguard personal information when you visit cirtyn.com, install or use the Cirtyn application, access the Cirtyn enterprise dashboard, or otherwise interact with our services (collectively, the "Services").
By using our Services, you acknowledge that you have read and understood this Privacy Policy. If you do not agree, please discontinue use of our Services immediately.
This Policy applies to:
Cirtyn is a product of Gadget Guruz Technologies Pvt Ltd. For purposes of US privacy law, we act as the controller/business with respect to personal information collected through Cirtyn.
| Company | Gadget Guruz Technologies Pvt Ltd |
|---|---|
| Product | Cirtyn — Device Health Diagnostics & Certification |
| Website | cirtyn.com |
| Privacy Contact / DPO | [email protected] |
| General Support | [email protected] |
| Mailing Address | US Registered Agent / Principal Business Address |
| Response Time | Acknowledged within 10 business days; substantive response within 45 days (extendable by a further 45 days with notice). |
Cirtyn is built on a principle of data minimization. It is a hardware diagnostic tool — not a surveillance tool, monitoring platform, or data harvesting service. Its sole function is to assess the physical condition of a device's hardware and generate a standardized, verifiable health report.
Cirtyn does NOT access, read, copy, or transmit: personal files, documents, emails, photos, videos, messages, contact lists, browser history, passwords, financial credentials, keystrokes, screen content, or any user-generated content. It has no visibility into what you do on your device — only into how your device's hardware is performing.
Every system permission Cirtyn requests is used exclusively for hardware diagnostics. A complete list of permissions and the specific purpose of each is provided in Section 9.
| Data Point | Purpose |
|---|---|
| Full name | Account identification and license assignment |
| Company or organization name | Enterprise license management and reporting |
| Phone number | Account verification and customer support |
| Email address | License delivery, account notifications, communications, support |
| Password (one-way cryptographic hash — never plain text) | Secure account authentication |
| Purchase and billing details (not card data) | License issuance, billing reconciliation, support |
| IP address at registration | Security, fraud prevention, approximate geolocation for compliance |
When Cirtyn performs a diagnostic scan, it collects the following hardware-level data:
| Component | Data Collected | Purpose |
|---|---|---|
| CPU | Model, clock speed, core count, load under stress, stress scores, thermal throttling | Evaluate processing performance and stability |
| RAM / Memory | Total capacity, used vs. available, health indicators, error rate | Assess memory integrity and detect degradation |
| Storage (HDD/SSD) | SMART attributes: sector health, reallocated sectors, error rates, remaining life, temperature | Evaluate storage reliability and predict failure risk |
| Battery | Design vs. current capacity, cycle count, charge/discharge rate, health % | Determine battery health and remaining useful life |
| Thermal System | Temperature at idle and load, fan speed, throttling events | Assess cooling efficiency and stability |
| Display | Resolution, dead pixel test, backlight consistency | Identify display hardware defects |
| Network Interface | Adapter presence and connectivity status (not traffic or content) | Confirm network hardware is functional |
| Camera / Microphone | Hardware presence detection — not recording, not capturing | Verify hardware components are detectable |
| USB / Ports | Connected port types and port health status | Verify peripheral connectivity |
| System Identifier | Device model, manufacturer, OS version, firmware/BIOS, serial number | Associate diagnostics with the correct device for certificate generation |
This data is collected in aggregated or pseudonymized form wherever possible. It is used solely to improve Cirtyn's software reliability and diagnostic accuracy. It is never sold or used for advertising.
Enterprise asset data is visible only to authorized administrators within the customer organization and to Cirtyn support personnel as necessary to deliver the contracted service.
When you visit cirtyn.com, we automatically collect IP address, browser type and version, operating system, pages visited, time on site, referring URL, session duration, and cookie identifiers (see Section 8).
| Never Collected | Why Not Needed |
|---|---|
| Personal files, documents, spreadsheets, PDFs | Irrelevant to hardware diagnostics |
| Photos, videos, or audio recordings | Camera/mic tests are hardware presence checks only — no recording |
| Emails, messages, or chat history | Not relevant to hardware health assessment |
| Browser history or internet activity | Network tests check adapter functionality only — not traffic |
| Contact lists or address books | Not relevant to hardware health assessment |
| Passwords, PINs, or authentication credentials | Cirtyn does not interact with authentication systems |
| Full payment card numbers, CVV, or bank credentials | Payments processed by third-party processor — not Cirtyn |
| Precise real-time geolocation | Device location is irrelevant to hardware health |
| User activity, keystrokes, or screen content | Cirtyn is not a monitoring or surveillance tool |
| Sensitive personal information (race, religion, health, biometrics, etc.) | Not collected at any point |
| Personal information from children under 13 | Cirtyn is not directed at children — COPPA applies |
We do not sell personal information. We do not share personal information for cross-context behavioral advertising. We do not use sensitive personal information for purposes beyond those listed in this Policy.
We use personal information only for specific, disclosed, and legitimate business purposes:
We do not sell personal information and do not share it for cross-context behavioral advertising. We disclose personal information only in limited circumstances:
Cloud infrastructure and hosting providers, analytics platforms (anonymized), customer support software, and payment processors — all contractually prohibited from using information for any other purpose.
Device diagnostic data is shared with the authorized enterprise administrator(s), governed by the Enterprise License Agreement and a Data Processing Addendum (DPA).
Cirtyn may integrate with enterprise ITAM systems or repair workflow tools as contracted, disclosed at onboarding.
Scanning a certificate QR code returns a read-only summary of the device health report. No personally identifiable information about the device owner is included.
Transactions are processed by a third-party PCI-DSS compliant processor (e.g., Stripe). We do not receive or store your full card number, CVV, or bank credentials.
We may disclose information when required by law, court order, subpoena, or valid legal process, and will notify affected users where permitted by law.
In a merger, acquisition, or asset sale, information may be transferred, with notice to affected users and equivalent privacy obligations imposed on any successor.
We may share aggregated or anonymized information that cannot reasonably identify you. We do not attempt to re-identify de-identified data.
We use essential cookies (core functionality), performance/analytics cookies (with consent), functional cookies (preferences), and marketing cookies (opt-in only — never for cross-context behavioral advertising).
On your first visit you will see a cookie consent banner allowing you to accept or decline non-essential cookies by category. You may update preferences anytime via the Cookie Settings panel. We honor opt-out requests submitted via recognized universal opt-out mechanisms, including the Global Privacy Control (GPC) signal. You may opt out of Google Analytics via the official browser add-on at tools.google.com/dlpage/gaoptout.
A complete and transparent disclosure of every permission Cirtyn requires and why:
| Permission | What Cirtyn Accesses | What Cirtyn Does NOT Do |
|---|---|---|
| System hardware | CPU model, clock speed, performance under stress | Does not read files or user data |
| Memory (RAM) | Capacity, usage, health indicators, error rate | Does not read memory contents (open files, processes) |
| Storage health | SMART attributes: sector health, error rates, remaining life, temperature | Does not read, copy, scan, or transmit any file content |
| Battery & power | Capacity, cycle count, charge rate, health % | Does not control or modify charging behavior |
| Thermal sensors | Temperature, fan speed readings | Does not modify thermal or fan settings |
| Network interface | Adapter presence and connectivity status | Does not monitor traffic, content, or browsing history |
| Display diagnostics | Resolution, display hardware status | Does not capture screenshots or record screen content |
| Camera / Microphone check | Detects presence and functionality | Does not capture images, video, or audio; does not activate them |
| USB / Port status | Connected port types and health | Does not read data from connected devices |
| System identifier | Device model, OS, BIOS/firmware, serial number | Not used for cross-device tracking |
You can review and revoke permissions at any time in your operating system's application settings.
This section applies to residents of California under Cal. Civ. Code §§ 1798.100–1798.199. Your rights include the Right to Know, Right to Delete, Right to Correct, Right to Opt-Out of Sale/Sharing, Right to Limit Use of Sensitive Personal Information (not applicable — we do not collect SPI), Right to Non-Discrimination, and Right to Data Portability.
To exercise your California rights, email [email protected] with the subject "California Privacy Request". We acknowledge requests within 10 business days and respond within 45 days (extendable by a further 45 days with notice). We will verify your identity before processing. You may designate an authorized agent.
Shine the Light (Cal. Civ. Code § 1798.83): We do not share personal information with third parties for their direct marketing purposes.
Residents of Virginia (VCDPA), Colorado (CPA), Connecticut (CTDPA), Texas (TDPSA), and other states with comprehensive privacy laws have rights to access, correct, delete, port their data, opt out of sale and targeted advertising, opt out of profiling, and appeal a denial. Exercise any of these by emailing [email protected]. We respond within the timeframes required by applicable state law (generally 45 days, with a possible 45-day extension).
Cirtyn is intended for professional and enterprise use and is not directed at children. We comply with COPPA as amended by the FTC's 2025 amendments. We do not knowingly collect personal information from children under 13. Users confirm they are 13 or older at registration. For users aged 13–17, we do not sell their personal information or share it for targeted advertising without affirmative opt-in consent. Parents or guardians may contact [email protected] to request review and deletion.
We implement appropriate technical and organizational security measures, including:
No method of transmission or storage is completely secure. Report any suspected unauthorized access to [email protected] immediately.
Cirtyn uses automated algorithms to calculate device health scores from diagnostic data — this is an inherent and disclosed function of the product. This processing does not produce legal effects on individuals without human review. As required by the CPPA's 2025 ADMT regulations, we provide notice, honor applicable opt-out requests, and conduct risk assessments where required.
| Data Type | Retention Period |
|---|---|
| Active account data | Duration of active account / license |
| Inactive individual accounts | 3 years from last login, then permanently deleted |
| Diagnostic reports — individual | Active license period; deleted within 90 days of account closure or upon request |
| Diagnostic reports — enterprise | License period + 1 year; deleted 30 days after contract termination unless agreed otherwise |
| Issued QC Certificates | 5 years from date of issue |
| Crash logs and error reports | 12 months on a rolling basis |
| Anonymized usage telemetry | 24 months on a rolling basis |
| Support and communication records | 3 years from resolution |
| Security incident / breach logs | 5 years from date of incident |
Upon account deletion, residual copies in secure backups are purged within 90 days.
Personal information collected from US users may be transferred to and processed in India and other countries where we or our service providers operate. We implement appropriate safeguards, including Standard Contractual Clauses (SCCs) and Data Processing Agreements (DPAs). Enterprise customers requiring US-only data residency may contact [email protected].
We identify commercial email as advertising, include our physical mailing address, honor opt-out requests within 10 business days, and never use deceptive subject lines. To unsubscribe, click the link in any marketing email or email [email protected]. Unsubscribing does not affect transactional account emails.
You may lodge a complaint with the relevant regulatory authority for your state, including the California Privacy Protection Agency (cppa.ca.gov), your State Attorney General, or the Federal Trade Commission (ftc.gov/complaint). We encourage you to contact us first at [email protected] so we can address your concern.
We may update this Policy periodically. For material changes we will post the updated Policy with a revised effective date, email registered users, and display in-app notifications. Where required by law, we will seek fresh consent for new or materially expanded processing.
| Privacy Requests & Data Rights | [email protected] |
|---|---|
| General Support | [email protected] |
| California Requests | [email protected] — Subject: "California Privacy Request" |
| COPPA / Children's Privacy | [email protected] — Subject: "COPPA Request" |