Esyton Insights LLP
V.I.P.E.R Vault for Income, Profit & Equity Records
VV.I.P.E.R
Client tracker
TT.I.M.O
Timesheet tracker
CComputax
Tax portal
RRefund Status
Client tracker
SFile Tracker
Client self-service
← Esyton Home

Hello Team. Greetings of the day!!!

Please enter your login details. You will be directed to your designated page.
Secure Login




Pending Requests

Completion requests from users appear here for admin approval.
0 Pending

Client Entry

All fields are mandatory. HAL clients require a PB No. Non-HAL clients receive an auto-generated ESY ID.
Workspace
🔒 This form collects Sensitive Personal Data (PAN, mobile, financial information) covered under the IT Act, 2000 and DPDP Act, 2023. Ensure the client's written consent has been obtained before entry. Data is stored securely on Firebase and accessible only to authorised Esyton Insights LLP personnel.

Client Dashboard

Search, filter, export, review, edit, and update client progress across multiple views.
Dashboard
Total Clients
0
Visible after current filters
Pending Clients
0
Not yet completed
Completed Clients
0
Marked as completed
Completion Rate
0%
Based on visible clients
Pending Clients
0 clients 0%
Completed Clients
0 clients 0%

Esyton Insights LLP

V.I.P.E.R is an internal client management platform for authorised team members of Esyton Insights LLP. Unauthorised access is strictly prohibited under the Information Technology Act, 2000.

Grievance Officer

Tanooj
Esyton Insights LLP
📞 +91 90100 43298
✉ connect@esyton.com

Response within 24 hrs · Resolution within 15 days

Compliance

This platform operates in compliance with the Information Technology Act, 2000, IT (Amendment) Act 2008, SPDI Rules 2011, IT Intermediary Guidelines 2021, and the Digital Personal Data Protection Act, 2023.

Client data is processed only with prior written consent.

© 2025 Esyton Insights LLP. All rights reserved. Unauthorised access or misuse of data is a punishable offence under Section 43, 66 & 72A of the IT Act, 2000.
⏱ Session Expiring
Your session will automatically log out in 5:00 minutes due to inactivity. This protects client data under IT Act security requirements.

Privacy Policy

Effective Date: 1 January 2025  |  Last Reviewed: June 2025  |  Governed by: IT Act, 2000 · SPDI Rules, 2011 · DPDP Act, 2023

1. About This Policy

This Privacy Policy governs the collection, storage, use, and protection of personal data processed through the V.I.P.E.R (Vault for Income, Profit & Equity Records) platform operated by Esyton Insights LLP ("we", "us", "our"). This policy is issued in compliance with the Information Technology Act, 2000, the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 (SPDI Rules), and the Digital Personal Data Protection Act, 2023 (DPDP Act).

2. Data We Collect

V.I.P.E.R processes the following categories of client data entered by authorised Esyton Insights LLP personnel on behalf of clients who have provided written consent:

  • Identification Data: Full name, PAN (Permanent Account Number), HAL Employee / ESY ID
  • Contact Data: Mobile number, email address
  • Financial Data: Type of Income Tax Return (ITR-1/2/3/4), professional fee charged, payment mode
  • Workflow Data: Filing stage, timestamps of creation and completion, assigned staff member

We do not collect passwords, Aadhaar numbers, bank account details, or any biometric data through this platform.

3. Lawful Basis for Processing

All client data in V.I.P.E.R is entered only after obtaining the client's prior written consent through Esyton Insights LLP's physical client engagement / onboarding form. This satisfies the consent requirement under Section 7 of the DPDP Act, 2023 and Clause 5 of the SPDI Rules, 2011. No client data is entered into this system without such consent on record.

4. Purpose of Data Processing

Data collected is used solely for the following purposes:

  • Tracking the progress of Income Tax Return filings on behalf of clients
  • Internal workflow management and team coordination
  • Generating reports for internal review and quality assurance
  • Communication with clients regarding their filing status

Data is not used for advertising, profiling, sale to third parties, or any purpose outside the above.

5. Data Storage & Security

All data is stored on Google Firebase (Firestore), a cloud database service operated by Google LLC, which maintains ISO 27001 and SOC 2 Type II certifications. We implement the following security controls consistent with the SPDI Rules and Section 43A of the IT Act:

  • Role-based access control — only authenticated, authorised team members can access data
  • Secure HTTPS (TLS) for all data in transit
  • Firebase security rules restricting read/write to authenticated sessions only
  • Automatic session timeout after 30 minutes of inactivity
  • Access logs maintained at the Firebase console level

6. Data Sharing & Third Parties

We do not sell, rent, or trade client personal data. Data may be shared only in the following limited circumstances:

  • Google Firebase / Google LLC — as the cloud infrastructure provider, subject to Google's Data Processing Addendum and GDPR-aligned terms
  • EmailJS — used solely to send automated registration notifications; no sensitive data is transmitted
  • Regulatory / Legal Obligation — if required by law, court order, or a government authority under applicable Indian law

7. Data Retention

Client data is retained for a period of 7 years from the date of completion of the filing, consistent with requirements under the Income Tax Act, 1961. After this period, data will be securely deleted. Clients may request earlier deletion subject to legal retention obligations.

8. Client Rights

Under the DPDP Act, 2023, clients whose data is processed have the following rights:

  • Right to Access: Request a copy of their personal data held by us
  • Right to Correction: Request correction of inaccurate or incomplete data
  • Right to Erasure: Request deletion of data where no legal retention obligation applies
  • Right to Grievance Redressal: Raise complaints regarding data processing

To exercise any of these rights, contact our Grievance Officer (details below).

9. Data Breach Protocol

In the event of a personal data breach, Esyton Insights LLP will: (a) contain and assess the breach immediately; (b) notify affected clients without undue delay; and (c) report to the Data Protection Board of India as required under the DPDP Act, 2023. A breach register is maintained internally.

10. Changes to This Policy

This policy may be updated periodically to reflect changes in law or our practices. The effective date at the top of this document will be updated accordingly. Continued use of V.I.P.E.R by team members constitutes acknowledgement of the updated policy.

11. Grievance Officer & Contact

Designated Grievance Officer — IT Act & DPDP Act

Name: Tanooj
Organisation: Esyton Insights LLP
Phone: +91 90100 43298
Email: connect@esyton.com

Complaints will be acknowledged within 24 hours and resolved within 15 working days as required under Rule 3(11) of the IT Intermediary Guidelines, 2021.

⚖️ Grievance Redressal

As mandated under Rule 3(11) of the IT (Intermediary Guidelines & Digital Media Ethics Code) Rules, 2021 and Section 14 of the DPDP Act, 2023, Esyton Insights LLP has appointed a Grievance Officer for redressal of any concerns related to data handling, privacy, or platform use.

Tanooj
Designated Grievance Officer · Esyton Insights LLP
📞 +91 90100 43298
✉ connect@esyton.com
🏢 Esyton Insights LLP, India
24 hrs
Acknowledgement of complaint
15 days
Resolution of complaint

What You Can Raise a Grievance About

  • Unauthorised access or misuse of your personal data
  • Incorrect data recorded in the system
  • Request to access, correct, or delete your personal data
  • Suspected data breach or security incident
  • Any violation of the Privacy Policy
  • Concerns about how your consent was obtained or used

How to File a Grievance

Contact the Grievance Officer via phone or email with the following details:

  • Your full name and contact information
  • Nature of the grievance with relevant details
  • Any supporting information or documents

If your grievance is not resolved to your satisfaction within the specified timeframe, you may escalate to the Data Protection Board of India once it is constituted under the DPDP Act, 2023.

Legal Framework

This grievance mechanism is established under:

  • Information Technology Act, 2000 — Section 43, 43A, 72A
  • IT (Intermediary Guidelines) Rules, 2021 — Rule 3(11)
  • Digital Personal Data Protection Act, 2023 — Section 14
  • SPDI Rules, 2011 — Clause 11

Terms of Use

Effective Date: 1 January 2025  |  Applies to: All authorised users of V.I.P.E.R

1. Acceptance

By logging into and using V.I.P.E.R, you confirm that you are an authorised employee or partner of Esyton Insights LLP and agree to be bound by these Terms of Use and the Privacy Policy. Unauthorised access is a criminal offence under Section 66 of the IT Act, 2000.

2. Authorised Use Only

V.I.P.E.R is an internal business tool. You may use it only to perform your designated work functions. You must not:

  • Access client data for purposes other than your assigned duties
  • Share your login credentials with any other person
  • Export, copy, or transmit client data outside authorised channels
  • Attempt to bypass, tamper with, or circumvent security controls
  • Use the platform from unsecured or public networks without VPN

3. Confidentiality Obligation

All data accessed through V.I.P.E.R is confidential. Disclosure of client information to any unauthorised person is punishable under Section 72A of the IT Act, 2000 (up to 3 years imprisonment and/or ₹5 lakh fine) and may constitute breach of your employment / partnership agreement.

4. Data Entry Responsibility

You are responsible for the accuracy of data you enter. You must ensure that client written consent has been obtained before entering their data. Entering data without consent violates the DPDP Act, 2023 and this organisation's compliance obligations.

5. Session Security

Sessions automatically expire after 30 minutes of inactivity to protect client data. Always log out when leaving your workstation. Do not access V.I.P.E.R on shared or public computers.

6. Export Controls

Excel and PDF exports contain sensitive personal data. These must be stored securely, not emailed to personal accounts, and deleted once the purpose is served. Exports are subject to the same confidentiality obligations as the platform itself.

7. Monitoring

Esyton Insights LLP may monitor access logs and system activity on V.I.P.E.R to ensure security and compliance. By using the platform, you consent to such monitoring.

8. Governing Law

These Terms are governed by the laws of India, including the Information Technology Act, 2000, DPDP Act, 2023, and applicable rules thereunder. Disputes shall be subject to the jurisdiction of courts in Hyderabad, Telangana.

9. Contact

For any questions about these Terms, contact:

Tanooj | Esyton Insights LLP
+91 90100 43298  |  connect@esyton.com