Comprehensive enterprise data protection frameworks, API resource usage terms, statutory compliance policies, and our official Vulnerability Disclosure Program.
BharatFundAxis Capital Management ("BharatFundAxis", "We", "Our") respects the privacy and confidentiality of enterprises, founders, and institutional partners using our consulting platform. This Policy applies to all services, web portals, advisory desks, and digital endpoints operated under the BharatFundAxis platform.
We commit to maintaining sovereign data privacy standards in compliance with the Digital Personal Data Protection (DPDP) Act, 2023 and the Information Technology Act, 2000 of India.
To evaluate scheme eligibility, prepare bankable Techno-Economic Viability (TEV) reports, and map non-dilutive credit lines, we collect the following categories of information:
Zero Commercial Data Selling Policy: We do not sell, license, rent, or trade applicant contact information, financial metrics, or enterprise data to third-party marketing brokers or advertising networks under any circumstances.
We are building an institutional-grade platform. Right now, it might look light, but our enterprise Web Application Firewalls (WAF) and real-time behavioral anomaly detectors are fully awake and highly caffeinated. We have a zero-tolerance policy for lazy, noisy infrastructural abuse. You want to test us? Be elegant about it.
Scraping a static site? Congratulations on downloading our HTML. But seriously, deploying aggressive crawlers, botnets, or automated scripts to hunt for hidden endpoints or harvest data will just get your IP permanently walled off.
Trying to brute-force /admin panels that don't even exist yet? Bold strategy. Any attempts to execute credential stuffing or manipulate session tokens will trigger our tarpits. We will slow your requests down to a crawl before dropping them completely.
Any attempt to spam our contact endpoints, flood submission forms, or consume system resources via Layer 4/Layer 7 volumetric attacks is strictly prohibited. Sending a million requests a second doesn't make you a hacker; it makes you a nuisance to our society. Our automated systems track request velocity meticulously. Offending IP ranges won't just be banned—we actively bundle the logs and hand them over to CERT-In (Computer Emergency Response Team - India).
Welcome to the game. Right now, BharatFundAxis is mostly a highly-optimized static fortress. Your only real playground is our contact forms and their direct APIs. Looks too easy? Don't get comfortable. We are scaling fast. Soon, we'll be shipping complex architectures, heavier endpoints, and massive institutional features. The attack surface is going to explode, and the competition between our engineers and your payloads is just getting started. Consider this the warm-up round.
We hate analyzing anonymous scanner traffic. If you're going to poke around our house, ring the doorbell. You must include this custom HTTP header in all your testing requests. If our WAF catches you throwing payloads without this header, it assumes you're a mindless bot and autobans your IP before you can even say "Burp Suite". Don't let a simple regex ruin your day.
"Yeah, it's tight right now. But keep monitoring our DNS. We deploy new code often. More code = more bugs. Stay hungry."
*.bharatfundaxis.com/* (All current and future subdomains & direct endpoints)Show us your best moves. Since we are mostly static right now, get creative with our forms and mailing architecture:
Please, for the love of root, don't send us Nessus or Nuclei automated HTML reports:
All corporate records, grant evaluation archives, and advisory communications are stored on secure servers located within the Republic of India. Data is retained strictly for the duration necessary to fulfill advisory mandates or to satisfy statutory record-keeping obligations under Indian law.
Under applicable Indian statutory provisions, applicants maintain rights to access, rectify, or request deletion of their submitted advisory records, subject to ongoing statutory audit mandates.
Legal Jurisdiction: This Privacy Policy and all associated data governance disputes are governed exclusively by the laws of India, with exclusive jurisdiction vested in the competent courts of Jaipur, Rajasthan, India.