Independently assessed by Scrut Automation · GDPR (EU) 2016/679

Your Data Is

Safe With Us

TLM Inside Sales has been independently assessed against the General
Data Protection Regulation — 55 controls tested, zero failures.

55
CONTROLS TESTED
53
COMPLIANT
2
NOT APPLICABLE
0
FAILURES

53 Controls.

Zero Gaps.

Every domain independently tested. Here's what we protect and how.
Notice & Consent
Published privacy notice, cookie consent banner, and robust consent records. Data subjects can withdraw consent at any time.
7 Controls
Data Management
Full ROPA inventory, purpose limitation, data minimisation, defined retention timelines, and data anonymisation practices.
5 Controls
Data Subject Rights
Access, rectify, delete, restrict, or port your data. All 8 GDPR rights honoured and accessible via direct DPO contact.
3 Controls
Accountability
Documented roles, data protection policy, employee training, DPIAs, prior consultation, and regular compliance reviews.
7 Controls
Security
Encryption, WAF, access controls, audit logging, backups, VAPT, breach notification within 48 hours — all verified.
14 Controls
Privacy in SDLC
Change management approvals, risk mitigation, segregated environments, no production data in testing.
7 Controls
DPO & Disclosures
Appointed, independent Data Protection Officer with expert credentials and direct accessibility for all data subjects.
3 Controls
International Transfers
EU data transfers protected via standard contractual clauses, adequacy decisions, and approved codes of conduct.
4 Controls

The Six Pillars

We're Built On.

Every data processing activity at TLM is governed by the core principles of the regulation.

01

Lawfulness, Fairness & Transparency

We process personal data only with a valid legal basis — primarily consent — and maintain a fully transparent privacy notice accessible to all.

02

Purpose Limitation

Data is collected for specific, explicit purposes defined by the data controller and never repurposed beyond the stated objective.

03

Data Minimisation

We collect strictly what is necessary. PII fields are fully customisable by the data controller to prevent any over-collection.

04

Accuracy

Data subjects can contact our DPO at any time to update, correct, or rectify personal data held within our systems.

05

Storage Limitation

Data is retained only as long as contractually required. Deletion is triggered automatically at contract end or on client request.

06

Integrity & Confidentiality

End-to-end encryption, role-based access controls, audit logs, and a Web Application Firewall protect all personal data we process.

Every Right
Fully Honoured.

Exercise any right by writing to our DPO:
pratik.shende@tlminsidesales.com
Art. 12–13
Right to be Informed

Know exactly what data we hold about you, why we have it, and how it is used.

Art. 15
Right of Access

Request a full copy of the personal data we hold and verify how it is being processed.

Art. 16
Right to Rectification

Have inaccurate or incomplete personal data corrected without undue delay.

Art. 17
Right to Erasure

Request deletion of your personal data — the "right to be forgotten" — under applicable conditions.

Art. 18
Right to Restrict Processing

Limit how we use your data while any dispute or query is being resolved.

Art. 20
Right to Data Portability

Receive your personal data in a structured, machine-readable format to transfer to another controller.

Art. 21
Right to Object

Object to the processing of your personal data for direct marketing or other specific purposes.

Art. 22
Automated Desicion Rights

Not be subject to decisions made solely by automated processing that significantly affects you.

Security That

Meets GDPR Art. 32.

State-of-the-art technical and organizational measures protecting every
byte of personal data we process.
Encryption at Rest
Encryption in Transit (TLS/SSL)
Web Application Firewall
Role-Based Access Controls
Full Audit Logging
Periodic Data Backups
Vulnerability Assessment & VAPT
Secure API Integrations
Breach Notification ≤ 48 Hours
Data Subject Breach Notification
Segregated Dev / Test / Production
Privacy by Design & Default

Questions About Your Data ?

Our Data Protection Officer is directly accessible to all data subjects and
supervisory authorities at any time.