Who we are
EvenSurge is the trading name of Digital SEO Land, a partnership firm registered in India, West Bengal. In this Privacy Policy, “EvenSurge”, “we”, “us” and “our” refer to that business.
This policy explains how we handle personal information when you visit https://evensurge.com/ (the “Website”), contact us, request a proposal, receive our communications or work with us. Personal information means information that identifies you or can reasonably be linked to you.
Where the same legal business continues to hold information collected under the Digital SEO Land brand, this policy explains its ongoing use. A brand change does not, by itself, change your marketing choices.
Scope of this policy
We are responsible for deciding how personal information is used for our own enquiries, business administration and marketing. Where relevant law uses these terms, we act as the controller or data fiduciary for that information.
When we handle personal information only on a client’s instructions, the client’s privacy notice and our agreement with that client govern that processing. The section Information handled for clients explains this distinction.
This policy is a notice about our practices. Where consent is required, we request it separately. Visiting the Website does not, by itself, provide consent for every use described here.
Information we collect
The information involved depends on your interaction with us. It may include:
- Contact and enquiry information: your name, work email, phone number, company, role, website, requested services, project budget, industry and messages you send us. These are the fields collected by the enquiry and quote forms on our Website.
- Business records: correspondence, proposals, client contact details, invoices, billing information and records needed to manage a service relationship.
- Website information: IP address, browser and device details, approximate location, pages visited, referring pages, timestamps and cookie or similar identifiers, where collected by the tools described below.
- Information you choose to provide through bookings, downloads, surveys, support requests, WhatsApp messages or job applications. Where a meeting is recorded or transcribed, we give notice and obtain consent when required.
Information can come directly from you, from your authorised colleagues or from the website technologies you interact with. We do not obtain personal information from any other source: we do not buy, licence or enrich contact data from external providers.
Please avoid sending passwords, full payment-card details, identity documents or sensitive personal information through general enquiry forms. If a particular service requires such information, we will explain the purpose and provide an appropriate way to supply it.
You can choose not to provide optional information. If information is needed to answer a request, prepare a proposal or deliver a service, we may be unable to do that without it. Required fields are identified when information is requested.
How we use information
We use information for the purposes connected with your interaction with EvenSurge, including:
- Answering enquiries, understanding your requirements, arranging meetings and preparing proposals.
- Delivering and supporting agreed services, managing client relationships, billing and maintaining business records.
- Operating, securing and improving the Website, investigating misuse and measuring website or campaign performance through the tools and choices described in this policy.
- Sending relevant business communications or marketing where permitted, managing communication preferences and considering applications submitted to us.
We may also use information to comply with legal duties, respond to lawful requests and establish, exercise or defend legal claims. If we propose a materially different purpose, we will provide the information and obtain any permission required before beginning that use.
Legal grounds for processing
Where the EU GDPR or UK GDPR applies, the legal grounds depend on the purpose. We rely on consent where required, a contract or steps you request before entering one where the contract is with you, and legal obligations for required records or disclosures.
Where permitted, we rely on legitimate interests in responding to business enquiries, managing relationships with contacts at client organisations, maintaining website security and conducting proportionate business marketing. We consider the effect on your rights before relying on these interests. Legitimate interests do not replace consent where consent is required.
For other jurisdictions, we use the grounds permitted by the applicable law. The availability of a legal ground or privacy right depends on that law and the provisions in force.
Marketing communications and advertising
We contact you about your enquiry or services you have requested. Where permitted by law, we may also send relevant updates about our services and resources. Submitting an enquiry does not automatically subscribe you to every marketing channel.
You can stop marketing emails using the unsubscribe link in the message or by contacting growth@evensurge.com. For other marketing channels, use the opt-out instructions provided or contact us. We may continue sending messages necessary to administer an active service relationship.
We do not run advertising on this Website. We do not use remarketing, visitor identification, contact enrichment or advertising audiences, and no advertising tags are present on the Website.
AI-assisted tools and automation
We do not use AI-enabled tools that receive personal information. No personal information is submitted to an AI provider, so no provider retention or model-training setting applies to your information.
We do not make decisions about you by automated means alone that produce legal or similarly significant effects.
If this changes, we will update this policy to name the provider, the information involved and its purpose, and we will obtain any permission required before beginning that use.
Information handled for clients
Our services may involve access to a client’s website, analytics, advertising account, CRM or customer records. When we process personal information on that client’s behalf, we follow its lawful instructions and the relevant service or data-processing agreement.
If your request concerns information controlled by one of our clients, please contact that organisation first. If you contact us, we will provide appropriate assistance or direct the request to the relevant client, subject to our legal and contractual duties.
International processing
EvenSurge operates from India, and India is the only country from which our team accesses personal information. We do not run our own storage infrastructure: our website and email are hosted by Hostinger, and the other providers listed above hold the information involved in their own services.
Because several of those providers, including Google and Cloudflare, run global infrastructure, information handled through their services can be stored or processed outside India under their own terms.
We do not make international transfers that require a separate legal safeguard mechanism, so no transfer safeguards apply. You can contact growth@evensurge.com with any question about where information is handled.
How long we keep information
We keep personal information for the period needed for its stated purpose, taking account of the service relationship, legal record-keeping duties, disputes and security needs. Our usual retention periods or decision criteria are:
- Enquiries and prospect correspondence: kept indefinitely, so that we retain a record of our correspondence with you. You can ask us to delete them at any time — see Your rights and choices.
- Client, contract and financial records: kept for as long as the engagement continues, and afterwards for the period required by the tax and record-keeping law that applies to us.
- Website analytics and server logs: analytics data is kept for the retention period configured in our Google Analytics property, and server logs are held by our hosting provider under its own log-retention lifecycle.
When information is no longer needed, we delete it or make it no longer identifiable. Backup copies follow the applicable backup lifecycle and are protected from ordinary use until removed. We may keep a limited suppression record to respect an unsubscribe request, or retain records where the law or a legal claim requires it.
How we protect information
We use reasonable technical, organisational and administrative safeguards suited to the information and the risks involved. These are intended to reduce unauthorised access, disclosure, alteration and loss. Access is limited to people who need the information for authorised work.
No online service or storage system can promise complete security. If a personal-data incident occurs, we assess it, take appropriate action and provide notifications where required by applicable law.
Your rights and choices
Depending on the law that applies and any relevant exceptions, you may have rights to:
- Ask about the information we hold, receive an available copy, and request correction or deletion.
- Withdraw consent, object to certain processing, request restriction, or receive information in a portable format.
- Opt out of covered data sales, sharing or targeted advertising, and exercise applicable rights concerning sensitive information or automated decisions.
- Raise a complaint, appeal a decision where available, or nominate another person to exercise rights where the law provides for this.
Send requests to growth@evensurge.com. We may ask for proportionate information to verify identity or authority where appropriate. We do not require unnecessary verification for an opt-out request. We respond within the period required by the applicable law and explain any lawful limitation or refusal.
Withdrawing consent does not undo processing that was lawful before withdrawal. Exercising a privacy right will not result in unlawful discrimination. Some information may still be necessary to fulfil a service you request or meet a legal duty.
You may also complain to the privacy authority that has jurisdiction over your concern. We have no additional regional notice, representative or alternative request method to publish: every request should be sent to the email address above.
Children’s privacy
Our Website and agency services are intended for business users and adults. We do not knowingly collect children’s personal information for our own marketing. If you believe a child has supplied information through our Website, contact us so we can assess the situation and take the steps required by law.
External websites and services
The Website may link to other organisations or offer embedded services, including YouTube videos, a Google Maps embed, WhatsApp chat links and our Semrush agency listing. Those organisations have their own privacy notices. This policy covers our handling of information and does not replace their notices or remove any responsibility we have for our own disclosures to them.
Changes to this policy
We may update this policy as our practices or legal requirements change. The revised version will show a new “Last updated” date. Where required, we will give additional notice or seek fresh consent before a material change takes effect.