HackerHub8 LLP is committed to responsible data management and cybersecurity best practices. This Data Retention Policy explains how long we retain personal data, operational data, and security logs collected through our systems, services, and platforms.
Our retention practices are designed to ensure that data is stored only for as long as necessary to fulfill operational, legal, and security purposes.
Scope of this Policy
This policy applies to all data collected through HackerHub8 LLP systems and services, including:
Official HackerHub8 websites and online platforms
Internship, training, and certification portals
Cybersecurity monitoring and security tools
Client cybersecurity services and consulting engagements
Communication systems and support channels
Types of Data Retained
HackerHub8 LLP retains different types of data depending on operational requirements:
Contact, demo request, and event registration records
Job, internship, and freelance application records (including resumes)
Certificate and verification records
Newsletter subscriber records
Client engagement records (VAPT/MDR/GRC reports and findings)
System activity logs and cybersecurity monitoring data
Technical information such as IP addresses and device details
Communication records with support or operations teams
Retention Periods
The retention period for data varies depending on the type of information and the purpose for which it was collected:
Contact & demo request inquiries: Up to 24 months from your last interaction, or until you ask us to delete it.
Event registrations: Retained for the duration of the event plus 12 months for attendance/reporting records.
Job, internship & freelance applications (including resumes): Up to 12 months if not selected; retained for the duration of engagement plus applicable statutory record-keeping periods if selected.
Certificates: Retained indefinitely in active status to support lifelong verification, unless you request deletion and no legal/verification need requires retention.
Newsletter subscribers: Retained until you unsubscribe.
Client engagement data (VAPT/MDR/GRC findings, reports): Retained per the terms of the signed engagement agreement, typically for the engagement duration plus a defined period for audit/compliance purposes as agreed with the client.
Security & system logs: Typically retained for 6–12 months to support incident investigation, unless a longer period is required by law or an active investigation.
Financial, invoicing & GST records: Retained for a minimum of 8 years as required under Indian tax and company law.
Data Deletion and Anonymization
Once data is no longer required for operational, legal, or security purposes, HackerHub8 LLP will securely delete, anonymize, or archive the information according to internal data management procedures.
Secure deletion of personal data from active systems
Removal of outdated security logs
Anonymization of analytical data where applicable
Archiving of records required for compliance or certification verification
Security of Retained Data
All retained data is protected using appropriate technical and organizational security controls.
Access control and authentication systems
Secure infrastructure and server protection
Monitoring and logging of system access
Regular security reviews and audits
User Requests
Users may request information regarding how their data is stored or retained. In certain circumstances, users may also request deletion of personal information where legally permitted.
Policy Updates
HackerHub8 LLP may update this Data Retention Policy periodically to reflect operational changes, cybersecurity best practices, or regulatory requirements.
Contact Information
If you have questions regarding data retention or privacy practices, please contact: