Last updated: 14 August 2026
This policy explains how we handle personal data on the piomanage.com website and in the Desk Portal service. It is written to be read, not to be survived — if anything here is unclear, ask us and we will explain it plainly.
See also our terms of service.
1.Who we are
Desk Portal is operated by TechPio (“we”, “us”), registered at F-88, Phase 8B, Industrial Area, Mohali, Punjab 160055, India. For anything in this policy, write to proapps@techpio.com.
This policy covers the piomanage.com website and the Desk Portal service. Where a customer hosts Desk Portal on their own infrastructure, they are the controller of the data inside it and their own privacy notice governs it; this policy then covers only our website and any support we provide.
2.What we collect
We collect only what a specific purpose requires.
- Enquiries. When you use the contact or booking form: your name, email address, and optionally company, phone number, the times you suggested, the page you sent it from, and whatever you wrote in the message.
- Account details. If you have a portal account: your name, email address, and the identifier your identity provider issues. Sign-in itself is handled by that provider — we never see or store your password.
- Service data. For customers using the product: tickets, messages, attachments and time entries synchronised with your PSA. Your PSA remains the system of record; the portal mirrors it.
- Technical records. Web server logs (IP address, browser user agent, page requested, timestamp) and an audit log of administrative actions taken inside the product.
4.Why we use it
- To answer your enquiry or arrange the meeting you asked for.
- To provide the service: showing you your tickets, and synchronising them with your PSA.
- To keep the service secure and accountable — the audit log records who changed what.
- To meet legal or accounting obligations where they apply.
6.Where it is held
Our website and its data are hosted in the United States. Customers who run Desk Portal themselves choose where their own instance lives; the product is designed to be self-hosted precisely so that client data need not sit with a vendor.
7.How long we keep it
- Enquiries: 24 months from when you sent them, then deleted automatically. Ask us sooner and we will delete yours straight away.
- Web server logs: 14 days, after which they are rotated away automatically.
- Audit records: kept for the life of the account. These are append-only and cannot be edited, which is the point of them.
- Account and service data: for as long as the account is active, and then as set out in your contract with us.
8.How we protect it
- Traffic is encrypted in transit with TLS.
- PSA API credentials are held in a secrets vault, never in the application database, and are never displayed again after being entered.
- Each client company is isolated at the database level, so one customer cannot query another’s data.
- Access inside the product is governed by role, and administrative actions are written to an append-only audit log.
- Sign-in is delegated to an identity provider, so password policy and multi-factor are enforced centrally.
9.Your rights
Depending on where you live, you may have the right to ask for a copy of the personal data we hold about you, to have it corrected or deleted, to object to or restrict how we use it, and to receive it in a portable form. You may also complain to your local data protection authority.
To exercise any of these, email proapps@techpio.com. We will respond within 30 days.
10.Changes to this policy
If we change this policy we will update the date at the top of this page. Where a change materially affects how we use your data, we will tell affected customers directly rather than relying on you to notice.