Last Updated: 9 August 2026
At iFortis Worldwide Private Limited (“iFortis Worldwide”, “iFortis”, “we”, “us” or “our”), intelligence is built to transform enterprises, not to compromise the people, information and trust behind them.
This Privacy Notice explains how we collect, use, disclose, protect and otherwise process personal information when you visit our websites, interact with our digital experiences, use our AI platforms or digital products, communicate with us, or engage with us as an enterprise customer, partner, supplier or other business contact.
We operate globally and may process personal information across jurisdictions. Depending on where you are located and how you interact with us, additional rights and requirements may apply under local data-protection laws.
This Notice should be read together with our Terms of Use, applicable product terms, enterprise agreements, data-processing agreements and other notices presented at the point of collection.
1. Who We Are
iFortis Worldwide Private Limited
Level 3, Commercial Development, Manhattan Street
6 Worldmark, Asset, LP-1B-03, Aerocity
New Delhi, Delhi 110037
India
iFortis Worldwide is an AI Native enterprise transformation company delivering AI platforms, digital products, intelligent software, transformation services and technology solutions to organisations and users globally.
For privacy-related questions, requests or concerns, contact:
Privacy & Data Protection Team
Email: business@ifortisworldwide.org
2. Scope of This Notice
This Privacy Notice applies to personal information processed through or in connection with:
- iFortis Worldwide websites and web properties;
- AI platforms and intelligent digital products;
- enterprise software and transformation platforms;
- customer and partner portals;
- online forms and enquiry channels;
- demonstrations, workshops and discovery sessions;
- communications with our teams;
- events, webinars and digital programmes;
- marketing and business-development activities;
- enterprise implementation and support services; and
- other digital products, services or experiences that expressly reference this Notice.
For enterprise customers, personal information processed through a customer's own environment, systems or datasets may be governed by the applicable enterprise agreement and data-processing terms.
Where iFortis processes personal information on behalf of an enterprise customer, that customer may determine the purposes and means of processing. In those circumstances, iFortis may act as a processor or service provider rather than as the primary controller or data fiduciary, depending on the applicable law and contractual arrangement.
3. Information We May Collect
The information we collect depends on how you interact with iFortis.
3.1 Information You Provide
This may include:
- name;
- professional title and role;
- organisation and department;
- business email address;
- telephone number;
- country and business location;
- account credentials;
- professional profile information;
- information submitted through forms;
- meeting and enquiry details;
- project requirements;
- support requests;
- communications with our teams;
- information provided during demonstrations or consultations;
- transaction and billing information where applicable;
- preferences and communication choices; and
- other information you voluntarily provide.
We encourage users and enterprise customers not to submit highly sensitive personal information through general enquiry forms unless specifically requested through an authorised and secure channel.
3.2 Information Collected Automatically
When you access our websites or digital products, certain technical information may be collected automatically, including:
- IP address;
- browser type and version;
- device type;
- operating system;
- language preferences;
- approximate location derived from technical information;
- referring and exit pages;
- pages or features accessed;
- session information;
- timestamps;
- interaction and usage information;
- diagnostic information;
- security and authentication logs; and
- information relating to cookies and similar technologies.
We use this information to operate, secure, analyse and improve our digital experiences.
4. Information Generated Through AI Platforms
Our AI platforms and digital products may process information submitted by users or enterprise customers to provide requested functionality.
Depending on the product, this may include:
- prompts;
- instructions;
- uploaded documents;
- structured business data;
- files and records;
- workflow information;
- configuration information;
- generated outputs;
- feedback;
- interaction history;
- system logs; and
- metadata associated with platform usage.
The precise categories of information processed depend on the product, configuration and contractual arrangement.
Enterprise Data
For enterprise deployments, customer-controlled information may remain within the customer's designated environment, infrastructure or approved hosting arrangement, where contractually agreed.
The applicable enterprise agreement, data-processing agreement and technical architecture documentation govern the handling of enterprise data where those documents provide more specific requirements.
5. How We Use Information
We may process information for purposes including:
Providing Products and Services
- creating and managing accounts;
- delivering AI and digital products;
- executing enterprise engagements;
- providing requested functionality;
- responding to enquiries;
- delivering support;
- processing transactions; and
- maintaining customer relationships.
Improving Our Technology
We may use appropriate information to:
- improve product functionality;
- analyse performance;
- troubleshoot issues;
- improve reliability;
- develop new capabilities;
- understand product usage;
- improve user experience; and
- maintain quality and security.
Where information is used for product improvement, we seek to apply appropriate controls and contractual restrictions, particularly for enterprise data.
Security and Fraud Prevention
We may process information to:
- authenticate users;
- detect suspicious activity;
- prevent fraud;
- investigate security incidents;
- protect systems and infrastructure;
- enforce access controls; and
- maintain platform integrity.
Business Communications
We may use business contact information to:
- respond to enquiries;
- provide service communications;
- schedule meetings;
- communicate product updates;
- deliver relevant business information; and
- send marketing communications where permitted.
You may opt out of promotional communications at any time.
Legal and Regulatory Purposes
We may process information where reasonably necessary to:
- comply with applicable law;
- respond to lawful requests;
- establish or defend legal claims;
- enforce contractual terms;
- protect rights and property; or
- protect the safety and security of individuals and systems.
6. AI, Automated Processing and Human Oversight
iFortis develops and deploys AI systems designed to support human decision-making, enterprise workflows and operational outcomes.
AI-generated outputs may be probabilistic and may contain errors, omissions or inaccuracies.
Unless expressly stated otherwise for a particular product, AI output should not be treated as an authoritative determination of:
- legal rights;
- medical diagnosis;
- financial suitability;
- employment decisions;
- safety-critical decisions;
- regulatory compliance; or
- other high-impact decisions.
Users and enterprise customers remain responsible for applying appropriate human review, validation and governance to AI-generated outputs.
Where applicable law provides individuals with rights relating to automated decision-making or profiling, iFortis will provide applicable information and mechanisms required by that law.
7. Legal Bases and Permitted Grounds for Processing
Depending on the applicable jurisdiction and circumstances, we may process personal information based on:
- your consent;
- performance of a contract;
- steps taken at your request before entering into a contract;
- legitimate business interests where permitted;
- compliance with legal obligations;
- protection of rights and security; and
- other lawful grounds recognised by applicable law.
Where a particular jurisdiction requires a specific legal basis, notice, consent or other mechanism, we will seek to apply the requirements applicable to that processing activity.
8. Cookies and Similar Technologies
We use cookies and similar technologies to:
- operate our websites;
- remember preferences;
- maintain security;
- understand website usage;
- measure performance;
- improve user experience; and
- support relevant communications and analytics.
Where required by applicable law, we will request consent before placing or using non-essential cookies.
You can manage available preferences through our Cookie Preferences interface.
9. How We Share Information
We do not sell personal information as a business model.
We may disclose information to:
Service Providers
Third parties that provide services such as:
- cloud infrastructure;
- hosting;
- security;
- analytics;
- communications;
- customer support;
- payment processing;
- authentication;
- professional services; and
- technology infrastructure.
These providers may process information only as permitted by applicable contractual arrangements and law.
Enterprise Customers
Where an enterprise customer provides or controls information processed through an iFortis product, information may be processed in accordance with the customer's instructions and applicable enterprise agreements.
Professional Advisers
Information may be shared with legal, accounting, audit, insurance or other professional advisers where reasonably necessary.
Corporate Transactions
Information may be transferred as part of a merger, acquisition, restructuring, financing, sale of assets or similar corporate transaction, subject to applicable law.
Legal and Security Purposes
We may disclose information where reasonably necessary to comply with law, protect rights, investigate security incidents, prevent fraud or respond to lawful government requests.
10. International Data Transfers
Because iFortis operates globally, personal information may be processed in countries other than the country where it was collected.
Where applicable law restricts international transfers, we will implement appropriate safeguards or rely on another lawful transfer mechanism recognised by the relevant jurisdiction.
Where required, additional contractual or organisational safeguards may be implemented for international data transfers.
11. Data Retention
We retain personal information only for as long as reasonably necessary for the purposes for which it was collected, including:
- providing services;
- maintaining business records;
- meeting contractual obligations;
- resolving disputes;
- enforcing agreements;
- maintaining security;
- complying with legal requirements; and
- establishing or defending legal claims.
Retention periods may vary depending on the category of information, the relationship with iFortis, contractual requirements and applicable law.
When information is no longer required, we may delete, anonymise or securely dispose of it, subject to applicable legal and operational requirements.
Enterprise retention periods may be defined by the applicable contract or data-processing agreement.
12. Security
We use reasonable technical, organisational and administrative safeguards designed to protect information against:
- unauthorised access;
- accidental loss;
- misuse;
- alteration;
- disclosure;
- destruction; and
- other security threats.
Depending on the product and environment, safeguards may include:
- access controls;
- authentication;
- encryption;
- logging and monitoring;
- network protections;
- secure development practices;
- vulnerability management;
- backup and recovery procedures; and
- incident-response processes.
No internet-based system can be guaranteed to be completely secure.
13. Data Breaches and Security Incidents
If we identify a security incident involving personal information, we will assess and respond according to our internal incident-response procedures and applicable legal, contractual and regulatory obligations.
Where notification is legally required, we will notify relevant authorities, customers or affected individuals in accordance with applicable requirements.
14. Your Privacy Rights
Depending on your location and applicable law, you may have rights including:
- the right to know whether your information is being processed;
- access to personal information;
- correction of inaccurate information;
- deletion or erasure;
- restriction of processing;
- objection to certain processing;
- withdrawal of consent;
- data portability;
- information regarding automated decision-making;
- the right to lodge a complaint with an applicable data-protection authority; and
- other rights available under applicable law.
The scope of these rights varies by jurisdiction.
15. How to Exercise Your Rights
To submit a privacy request, contact:
Privacy & Data Protection Team
business@ifortisworldwide.org
Please include:
- your name;
- contact details;
- organisation, if applicable;
- nature of your request;
- relevant product or service;
- sufficient information to help us identify your records; and
- any other information reasonably necessary to verify your identity.
We may need to verify your identity before processing certain requests.
We will respond within the period required by applicable law.
16. Enterprise Customers and Data Processing
When an enterprise customer uses an iFortis platform to process personal information relating to its employees, customers, suppliers, users or other individuals, the enterprise customer may determine the purposes and means of processing.
Depending on the applicable legal framework:
Enterprise Customer → Controller / Data Fiduciary
iFortis → Processor / Service Provider
The respective responsibilities will be governed by the applicable agreement and data-processing terms.
Enterprise customers are responsible for ensuring that they have the necessary rights, notices, permissions and lawful basis to provide personal information to iFortis for processing.
17. Children's Privacy
Our general business and enterprise products are not directed to children unless expressly stated otherwise.
We do not knowingly collect personal information from children in circumstances where applicable law requires parental or guardian authorisation without obtaining the required authorisation.
If you believe that a child has provided personal information to us improperly, please contact our Privacy & Data Protection Team.
18. Third-Party Websites and Services
Our websites or products may contain links to third-party websites, applications or services.
We are not responsible for the privacy practices, security or content of third parties.
We encourage users to review the privacy notices applicable to those services before providing personal information.
19. Changes to This Privacy Notice
We may update this Privacy Notice periodically to reflect changes in:
- our products;
- technology;
- business operations;
- applicable law;
- regulatory requirements; or
- privacy practices.
When material changes are made, we may provide additional notice where required.
The “Last Updated” date at the top of this Notice indicates when it was most recently revised.
20. Contact Us
iFortis Worldwide Private Limited
Level 3, Commercial Development, Manhattan Street
6 Worldmark, Asset, LP-1B-03, Aerocity
New Delhi, Delhi 110037, India
Privacy & Data Protection Team
business@ifortisworldwide.org
Privacy is not an afterthought at iFortis Worldwide. It is part of how intelligent systems are designed, governed and trusted.
Last Updated: 9 August 2026
Welcome to iFortis Worldwide.
These Terms of Use (“Terms”) govern your access to and use of websites, digital experiences, AI platforms, software products and related services made available by iFortis Worldwide Private Limited (“iFortis Worldwide”, “iFortis”, “we”, “us” or “our”).
By accessing or using an iFortis website, product or service, you acknowledge that you have read, understood and agree to be bound by these Terms.
If you do not agree with these Terms, please do not use the applicable service.
Certain iFortis products and enterprise engagements may be governed by separate agreements. Where a signed enterprise agreement, order form, statement of work, service agreement or product-specific terms apply, those terms will govern to the extent of any inconsistency.
1. About iFortis
iFortis Worldwide Private Limited
Level 3, Commercial Development, Manhattan Street
6 Worldmark, Asset, LP-1B-03, Aerocity
New Delhi, Delhi 110037
India
iFortis Worldwide provides AI Native enterprise transformation, intelligent software, AI platforms, digital products, technology services and related solutions.
2. Eligibility
You may use our services only if:
- you have the legal capacity to enter into these Terms;
- your use is lawful;
- you comply with applicable laws and regulations; and
- you have authority to act on behalf of an organisation where you are using a service for business purposes.
If you access an iFortis service on behalf of an organisation, you represent that you are authorised to bind that organisation to the applicable terms.
3. Accounts and Access
Certain services may require an account.
You are responsible for:
- providing accurate registration information;
- maintaining the confidentiality of credentials;
- protecting authentication information;
- maintaining appropriate access controls;
- ensuring that authorised users use the account appropriately; and
- notifying us of suspected unauthorised access.
You are responsible for activity occurring through your account except where caused by our failure to maintain required security controls.
We may suspend or restrict access where reasonably necessary to protect the service, users, systems or legitimate business interests.
4. Use of AI Platforms
iFortis provides AI-enabled functionality designed to assist with tasks including analysis, generation, automation, decision support, workflow orchestration and enterprise transformation.
AI systems may produce:
- inaccurate information;
- incomplete information;
- outdated information;
- unexpected results;
- biased or inappropriate outputs; or
- outputs that require human interpretation.
Accordingly, you should independently evaluate outputs before relying upon them.
AI output does not constitute professional advice unless expressly stated in a written agreement governing a particular service.
You remain responsible for decisions made using AI-generated information.
5. Human Oversight
AI should augment human intelligence, not eliminate appropriate accountability.
You agree to maintain reasonable human oversight where the nature of your use requires it.
You must not use an iFortis AI system as the sole basis for decisions that could materially affect an individual's legal rights, employment, access to essential services, health, safety, financial position or other significant interests unless such use is expressly supported by the applicable product and permitted by law.
6. Acceptable Use
You must not use iFortis services to:
- violate applicable law;
- infringe intellectual-property rights;
- interfere with platform security;
- gain unauthorised access;
- circumvent access controls;
- introduce malware;
- conduct fraudulent activities;
- abuse or overload infrastructure;
- reverse engineer protected components except where legally permitted;
- scrape or systematically extract data without authorisation;
- impersonate another person or organisation;
- transmit unlawful or harmful material;
- generate content intended to facilitate unlawful activity;
- violate applicable sanctions or export restrictions; or
- otherwise misuse the services.
We may investigate suspected violations and take appropriate action.
7. Customer Inputs
You may provide information, documents, prompts, files, datasets, instructions or other content to an iFortis platform (“Customer Input”).
You are responsible for ensuring that you have the necessary rights, permissions and lawful authority to provide Customer Input and instruct us to process it.
You must not provide information that you are prohibited from sharing with a third party.
For enterprise customers, Customer Input may be subject to separate data-processing, security and confidentiality obligations.
8. AI Outputs
Content generated or returned by an iFortis system (“Output”) may be generated algorithmically and may not be unique.
You are responsible for reviewing Output before using it in business, operational, legal, financial, technical or other consequential contexts.
Unless otherwise stated in a product-specific agreement:
- iFortis does not guarantee that Output will be accurate;
- iFortis does not guarantee that Output will be complete;
- iFortis does not guarantee that Output will be suitable for a particular purpose; and
- Output should not automatically be treated as verified fact.
9. Intellectual Property
The iFortis services, including their:
- software;
- source and object code;
- interfaces;
- designs;
- architectures;
- models;
- algorithms;
- workflows;
- documentation;
- trademarks;
- branding;
- methodologies;
- proprietary frameworks; and
- underlying technology
are owned by or licensed to iFortis and are protected by applicable intellectual-property laws.
Nothing in these Terms transfers ownership of iFortis intellectual property to you.
10. Customer Ownership
Subject to the rights of third parties and the applicable agreement, you retain ownership of Customer Input.
For enterprise engagements, ownership and licensing of deliverables, custom software, configurations, models, datasets and other work product will be determined by the applicable statement of work or enterprise agreement.
11. Feedback
If you provide suggestions, ideas, recommendations or other feedback relating to an iFortis product, you grant iFortis permission to use that feedback without restriction or obligation, provided that such use does not disclose your confidential information.
12. Confidentiality
Confidential information exchanged through an enterprise engagement will be governed by the applicable confidentiality agreement, NDA or enterprise contract.
Nothing in these Terms requires either party to disclose information that it is legally prohibited from disclosing.
13. Third-Party Services
iFortis products may integrate with or depend upon third-party services, including:
- cloud platforms;
- identity providers;
- enterprise systems;
- APIs;
- analytics providers;
- communication systems;
- payment providers; and
- other technology services.
Third-party services may be governed by their own terms.
iFortis is not responsible for changes, outages or failures caused solely by third-party services outside our reasonable control.
14. Availability and Changes
We continuously evolve our products.
We may:
- modify features;
- introduce new functionality;
- discontinue features;
- update interfaces;
- improve models;
- change infrastructure; or
- temporarily suspend functionality.
Where an enterprise agreement provides specific service levels or change-control obligations, those contractual provisions will apply.
15. Fees and Payments
Where a service is paid, pricing, billing cycles, payment terms, taxes, renewal terms and other commercial conditions will be stated in the applicable order form, subscription agreement or commercial proposal.
Unless otherwise agreed:
- fees are payable according to the applicable invoice;
- taxes may be charged where legally required;
- payment obligations are non-cancellable except where expressly provided otherwise; and
- late payments may result in suspension or other remedies permitted by contract.
Enterprise customers may be subject to separately negotiated commercial terms.
16. Warranties
To the maximum extent permitted by applicable law, services are provided on an “as available” and “as is” basis unless a written agreement expressly provides otherwise.
We do not warrant that:
- the service will always be uninterrupted;
- every output will be accurate;
- the service will satisfy every specific business requirement;
- all defects will be immediately corrected; or
- third-party systems will always remain available.
Nothing in these Terms excludes a warranty that cannot lawfully be excluded.
17. Limitation of Liability
To the maximum extent permitted by applicable law, iFortis will not be liable for indirect, incidental, special, consequential or punitive losses arising from use of the services.
Any contractual limitation of liability applicable to enterprise customers will be governed by the relevant agreement.
Nothing in these Terms limits liability to the extent such limitation is prohibited by applicable law.
18. Indemnification
Where permitted by applicable law, you agree to indemnify and hold iFortis harmless from claims, losses, liabilities and reasonable expenses arising from:
- unlawful use of the service;
- violation of these Terms;
- infringement resulting from Customer Input;
- unauthorised use of another person's information; or
- misuse of the service.
Enterprise customers may have separate indemnification obligations under their contracts.
19. Suspension and Termination
We may suspend or terminate access where reasonably necessary due to:
- material breach;
- security risks;
- unlawful activity;
- non-payment;
- abuse;
- fraud;
- regulatory requirements; or
- discontinuation of a service.
Upon termination, your right to use the relevant service ends.
Data handling following termination will be governed by applicable agreements, our Privacy Notice and applicable law.
20. Governing Law
These Terms are intended to be governed by the laws applicable to iFortis Worldwide Private Limited and its principal place of business in India, subject to mandatory laws applicable to users in their jurisdiction.
For enterprise customers, governing law, jurisdiction and dispute-resolution provisions will be determined by the applicable signed agreement.
21. Dispute Resolution
Before initiating formal proceedings, the parties should attempt in good faith to resolve disputes through appropriate business and legal representatives.
Enterprise agreements may specify additional dispute-resolution mechanisms, including arbitration, mediation or specific courts.
22. Changes to These Terms
We may update these Terms periodically.
Material changes may be communicated through appropriate channels where required.
Your continued use of a service after updated Terms become effective constitutes acceptance of the revised Terms to the extent permitted by law.
23. Entire Agreement
These Terms, together with any incorporated policies and applicable product or enterprise agreements, constitute the applicable understanding between you and iFortis regarding use of the relevant service.
Where an executed enterprise agreement conflicts with these Terms, the executed agreement will control for the relevant services.
24. Contact
iFortis Worldwide Private Limited
Level 3, Commercial Development, Manhattan Street
6 Worldmark, Asset, LP-1B-03, Aerocity
New Delhi, Delhi 110037, India
Legal & General Enquiries
business@ifortisworldwide.org
Build boldly. Govern intelligently. Use responsibly.
iFortis Worldwide®
AI Native Enterprise Transformation
Service as Software™
Last Updated: 9 August 2026
Your experience. Your choice.
iFortis Worldwide uses cookies and similar technologies to make our digital experiences secure, functional, measurable and relevant.
Some technologies are necessary for our websites and digital products to operate. Others help us understand how our services are used, improve performance, remember preferences or support relevant communications.
You can choose which optional categories you allow.
Your choices may vary depending on your location and applicable law.
Manage Your Preferences
1. Essential Cookies
Always Active
These technologies are necessary to operate our websites and digital products.
They may support:
- authentication;
- security;
- session management;
- load balancing;
- fraud prevention;
- accessibility;
- network functionality; and
- essential platform operations.
Because these technologies are necessary for core functionality, they generally cannot be disabled through our preference centre.
Status: Always Active
2. Functional Cookies
Optional
These technologies allow our digital experiences to remember choices and provide enhanced functionality.
They may support:
- language preferences;
- interface preferences;
- saved settings;
- product experience enhancements; and
- other user-selected functionality.
Preference: On / Off
3. Analytics & Performance
Optional
These technologies help us understand how visitors interact with our websites and digital products.
They may help us understand:
- which pages are used;
- how visitors navigate our websites;
- performance issues;
- feature engagement;
- general usage patterns; and
- opportunities to improve our digital experiences.
Where required, we request consent before activating these technologies.
Preference: On / Off
4. Marketing & Communications
Optional
Where applicable, these technologies may help us understand engagement with communications and deliver more relevant information about iFortis products, events and services.
Preference: On / Off
Your Choices
You may:
Accept All
Allow all optional cookie categories.
Reject Optional
Allow only technologies necessary for the operation of our services.
Manage Preferences
Select individual categories according to your preferences.
You can change your choices at any time through the Cookie Preferences link available on our website.
What Are Cookies?
Cookies are small text files or similar technologies stored on or accessed from your device when you visit a website.
We may also use technologies such as:
- pixels;
- tags;
- SDKs;
- local storage;
- session technologies; and
- similar identifiers.
These technologies may perform functions similar to cookies.
Why We Use Cookies
Depending on the applicable category, cookies and similar technologies may help us:
Operate
Keep websites and services functioning.
Secure
Detect suspicious activity and protect systems.
Remember
Maintain preferences and settings.
Understand
Measure website and product performance.
Improve
Understand how users interact with our experiences.
Communicate
Where permitted, understand engagement with relevant communications.
Third-Party Technologies
Some technologies may be provided by third-party service providers that support:
- analytics;
- security;
- hosting;
- authentication;
- customer support;
- communications;
- performance monitoring; or
- other digital services.
Third-party technologies may be subject to the provider's own privacy practices and terms.
Browser Controls
Most browsers allow you to manage or block cookies through browser settings.
Blocking certain cookies may affect the functionality or availability of some features.
Your browser settings do not necessarily replace the consent controls provided through our website where applicable.
Do Not Track and Similar Signals
Some browsers and devices provide privacy preference signals or “Do Not Track” features.
The way such signals are interpreted may vary by technology, browser and applicable law. Where legally required, iFortis will take reasonable steps to honour applicable recognised privacy signals.
Privacy
Information collected through cookies and similar technologies may constitute personal information depending on the applicable law.
For more information about how iFortis processes personal information, please see our Privacy Notice.
Changes to Cookie Preferences
We may update the technologies used on our websites and digital products from time to time.
When required, we will request consent for newly introduced non-essential technologies.
You may revisit your choices at any time.
Questions
For questions about cookies, privacy or your preferences:
iFortis Worldwide Private Limited
Level 3, Commercial Development, Manhattan Street
6 Worldmark, Asset, LP-1B-03, Aerocity
New Delhi, Delhi 110037, India
Privacy & Cookie Enquiries
business@ifortisworldwide.org
Your data. Your choices. Your control.
iFortis Worldwide®
Last Updated: 9 August 2026
Technology should be accessible to everyone.
At iFortis Worldwide, we believe intelligent technology should expand access, not create barriers.
We are committed to making our websites, digital products and user experiences increasingly accessible to people with different abilities, technologies, environments and ways of interacting with digital systems.
Accessibility is part of how we think about product quality, experience and responsible technology.
Our Accessibility Commitment
We work to design digital experiences that can be:
- perceived;
- understood;
- navigated;
- operated; and
- used across a broad range of devices and assistive technologies.
Our accessibility approach considers recognised accessibility principles and standards, including the Web Content Accessibility Guidelines (WCAG), where applicable to the relevant product or digital experience.
Because our platforms evolve continuously, accessibility is treated as an ongoing engineering and design responsibility rather than a one-time exercise.
Designing for Different Ways of Using Technology
Keyboard Accessibility
We aim to make important interactive functionality usable without requiring a mouse or touch interface.
This includes consideration of:
- keyboard navigation;
- focus states;
- logical navigation order;
- interactive controls; and
- keyboard-accessible actions.
Screen Readers and Assistive Technologies
We work to provide appropriate:
- headings;
- labels;
- semantic structure;
- alternative text;
- form descriptions;
- navigation landmarks; and
- accessible names for interactive controls.
These practices are intended to support users who interact with digital experiences through screen readers or other assistive technologies.
Visual Accessibility
We aim to provide:
- readable typography;
- appropriate contrast;
- scalable content;
- meaningful visual hierarchy;
- clear focus indicators; and
- information that is not communicated through colour alone.
Motion and Animation
We aim to use motion intentionally.
Where appropriate, we seek to reduce unnecessary animation and avoid interactions that may create avoidable accessibility barriers.
Forms and Interactions
We work to make forms and interactive experiences understandable and navigable.
This includes consideration of:
- clear labels;
- instructions;
- error identification;
- error recovery;
- focus management;
- meaningful feedback; and
- predictable interactions.
Responsive Experiences
Our digital experiences are designed for different:
- screen sizes;
- devices;
- browsers;
- orientations; and
- interaction environments.
Multimedia
Where multimedia is provided, we seek to provide appropriate alternatives and accessibility features where applicable.
AI Accessibility
AI can create new opportunities for accessibility.
Our technology may support experiences such as:
- natural-language interaction;
- conversational interfaces;
- summarisation;
- content transformation;
- assisted navigation;
- intelligent search; and
- adaptive digital experiences.
However, AI-generated experiences can also introduce accessibility challenges.
AI outputs may vary in structure, language, accuracy and presentation.
We therefore consider accessibility alongside:
- usability;
- reliability;
- privacy;
- security;
- responsible AI; and
- human oversight.
Accessibility and Responsible Design
We believe accessibility should be considered from the beginning of the product lifecycle.
Our approach can include accessibility considerations across:
Research → Design → Architecture → Engineering → Testing → Release → Feedback → Improvement
Accessibility is not simply a compliance checkpoint. It is part of building better technology.
Known Limitations
Digital accessibility is a continuous process.
Some content, integrations, legacy components, third-party services or dynamically generated experiences may not yet provide an optimal accessible experience.
Where we identify limitations, we work to understand, prioritise and address them.
Third-party products, applications and websites linked from iFortis platforms may have their own accessibility practices and are outside our direct control.
Feedback Helps Us Improve
If you encounter an accessibility barrier while using an iFortis website, platform or digital product, we want to hear from you.
Please tell us:
- the page or product you were using;
- what you were trying to do;
- what prevented you from completing the task;
- the device or browser you were using, if relevant;
- the assistive technology involved, if relevant; and
- any alternative way you would prefer to access the information or functionality.
You do not need to use technical language.
Accessibility Support
iFortis Worldwide Private Limited
Level 3, Commercial Development, Manhattan Street
6 Worldmark, Asset, LP-1B-03, Aerocity
New Delhi, Delhi 110037, India
Accessibility Support
business@ifortisworldwide.org
We will review accessibility feedback and, where reasonably possible, work with you to identify an accessible alternative or resolution.
For urgent accessibility issues affecting access to essential information or services, please indicate:
“Accessibility, Urgent”
in your communication.
Enterprise Accessibility
For enterprise deployments, accessibility requirements may be defined jointly with the customer based on:
- intended users;
- deployment environment;
- applicable regulations;
- assistive technologies;
- procurement requirements;
- contractual obligations; and
- product architecture.
Enterprise customers may contact their iFortis engagement team to discuss specific accessibility requirements during solution design and implementation.
Continuous Improvement
Accessibility does not end when a product launches.
As our technology evolves, we continue to evaluate:
Design → Engineering → Content → AI → Testing → Feedback → Improvement
Our goal is simple:
Build technology that more people can use, understand and benefit from.
Contact
For accessibility questions, requests or feedback:
iFortis Worldwide Private Limited
Level 3, Commercial Development, Manhattan Street
6 Worldmark, Asset, LP-1B-03, Aerocity
New Delhi, Delhi 110037, India
business@ifortisworldwide.org
iFortis Worldwide®
AI Native Enterprise Transformation
Service as Software™
Technology that transforms enterprises.
Experiences that include people.
iFortis Worldwide Private Limited
AI Native Enterprise Transformation · Service as Software™
Effective Date: 9 August 2026
Last Updated: 9 August 2026
1. Purpose
Artificial intelligence is becoming foundational to how enterprises operate, create, decide and transform.
At iFortis Worldwide Private Limited (“iFortis Worldwide”, “iFortis”, “we”, “us” or “our”), we believe enterprise AI must be built with the same discipline expected of critical enterprise technology.
This AI & Security Policy establishes the principles and controls that guide how iFortis designs, develops, deploys, operates and governs AI-enabled platforms, software, digital products and enterprise transformation solutions.
Our objective is to build AI that is:
Secure. Responsible. Governed. Resilient. Transparent. Enterprise-ready.
This Policy applies alongside our Privacy Notice, Terms of Use, applicable Data Processing Agreements, Enterprise Agreements, Statements of Work, security requirements and other contractual commitments.
2. Scope
This Policy applies to AI systems and technology environments operated, developed or managed by iFortis, including where applicable:
- AI platforms;
- generative AI systems;
- machine-learning systems;
- intelligent software;
- AI agents;
- autonomous or semi-autonomous workflows;
- enterprise AI solutions;
- AI-enabled digital products;
- AI engineering environments;
- data and analytics platforms;
- AI integrations;
- model infrastructure;
- third-party AI services; and
- AI capabilities incorporated into enterprise transformation engagements.
Where iFortis provides services to an enterprise customer, specific contractual requirements may supplement or supersede this Policy.
3. Our AI Governance Principles
Our approach to AI is built around eight principles.
3.1 Human Accountability
AI is designed to augment human intelligence and enterprise capabilities.
Where decisions may have material consequences for individuals, organisations or society, appropriate human oversight should remain in place.
AI should not become an excuse for removing accountability.
3.2 Security by Design
Security is considered from architecture through deployment and ongoing operation.
Security controls may include:
- identity and access management;
- authentication;
- authorisation;
- encryption;
- secure development;
- network controls;
- vulnerability management;
- monitoring;
- logging;
- incident response; and
- controlled infrastructure access.
Security is treated as an engineering responsibility, not simply a compliance activity.
3.3 Privacy by Design
AI systems may process significant volumes of information.
We therefore seek to incorporate privacy considerations into:
Data → Architecture → Model → Application → Deployment → Monitoring
Personal information should be processed only for appropriate and lawful purposes and in accordance with applicable privacy requirements and contractual obligations.
3.4 Responsible Data Use
Data used within AI systems should be relevant to the intended purpose and handled according to applicable requirements.
Depending on the engagement, controls may address:
- data classification;
- data minimisation;
- access restrictions;
- retention;
- deletion;
- data lineage;
- provenance;
- consent or lawful basis;
- customer instructions; and
- contractual restrictions.
3.5 Transparency
Where reasonably appropriate, users and enterprise customers should understand:
- when AI is being used;
- what the system is designed to do;
- relevant limitations;
- whether outputs are generated or retrieved;
- where human review is expected; and
- how AI-related risks are managed.
The precise level of transparency depends on the product, use case and applicable legal requirements.
3.6 Reliability and Evaluation
AI systems may behave differently from conventional deterministic software.
Accordingly, appropriate systems may be evaluated for:
- accuracy;
- consistency;
- robustness;
- security;
- reliability;
- harmful or unexpected behaviour;
- performance;
- hallucination or fabrication risk;
- prompt manipulation;
- model misuse; and
- operational resilience.
Evaluation requirements are determined according to the intended use and risk profile.
3.7 Fairness and Non-Discrimination
Where AI systems may affect individuals or groups, we seek to identify and reduce unreasonable risks of discriminatory or unfair outcomes.
Depending on the use case, this may include consideration of:
- representative data;
- model behaviour;
- evaluation criteria;
- human review;
- output monitoring; and
- escalation mechanisms.
AI systems should not be intentionally designed to discriminate unlawfully.
3.8 Accountability
Every AI system should have an appropriate level of ownership and operational accountability.
Depending on the system, this may involve:
- product owners;
- engineering teams;
- security teams;
- data owners;
- enterprise stakeholders;
- governance functions; and
- authorised decision-makers.
4. AI Risk Classification
Not every AI system presents the same level of risk.
iFortis may classify AI use cases according to factors including:
- purpose;
- users;
- autonomy;
- data sensitivity;
- potential impact;
- regulatory requirements;
- operational criticality;
- security exposure; and
- potential consequences of failure.
Illustrative risk levels may include:
Low Risk
AI used for:
- general productivity;
- content assistance;
- summarisation;
- non-sensitive recommendations; or
- internal experimentation.
Moderate Risk
AI supporting:
- enterprise workflows;
- business analysis;
- customer interactions;
- operational recommendations;
- document processing; or
- decision-support systems.
High Risk
AI that may materially influence:
- employment;
- access to important services;
- financial outcomes;
- health;
- safety;
- legal rights;
- security;
- critical infrastructure; or
- other high-impact decisions.
Higher-risk use cases may require additional controls, validation, human oversight, monitoring and approval before deployment.
5. AI Lifecycle Governance
AI governance begins before deployment and continues throughout the system lifecycle.
Our lifecycle may include:
Discover → Assess → Design → Build → Test → Approve → Deploy → Monitor → Improve → Retire
At relevant stages, teams may assess:
- intended purpose;
- data sources;
- security requirements;
- privacy implications;
- model behaviour;
- potential misuse;
- operational risks;
- human oversight;
- regulatory requirements; and
- exit or retirement requirements.
6. Model Governance
Where iFortis develops, configures or operates AI models, appropriate governance may include:
- model identification;
- model versioning;
- configuration management;
- evaluation;
- testing;
- performance monitoring;
- change management;
- access controls;
- documentation;
- incident management; and
- retirement procedures.
Where third-party foundation models or AI services are used, their limitations and contractual conditions may also be considered.
7. Generative AI Governance
Generative AI may generate text, code, images, recommendations, structured information or other outputs.
Because generated output may be probabilistic, users should not assume that every output is:
- accurate;
- complete;
- original;
- current;
- legally appropriate; or
- suitable for a particular business purpose.
Appropriate validation should be applied before consequential use.
8. AI Agents and Autonomous Systems
AI agents may be capable of:
- planning;
- reasoning;
- retrieving information;
- invoking tools;
- interacting with systems;
- executing workflows; or
- taking actions within authorised environments.
Where agentic functionality is deployed, appropriate controls may include:
- scoped permissions;
- tool restrictions;
- authentication;
- action approval;
- execution boundaries;
- logging;
- monitoring;
- rate limits;
- human intervention;
- rollback mechanisms; and
- emergency shutdown or suspension procedures where technically applicable.
AI agents should not receive broader permissions than necessary for their intended function.
9. Prompt and Input Security
AI systems may be exposed to malicious or unintended instructions.
Depending on the architecture, iFortis may implement controls addressing risks such as:
- prompt injection;
- indirect prompt injection;
- data exfiltration;
- malicious instructions;
- context manipulation;
- unsafe tool execution;
- privilege escalation; and
- model abuse.
Input validation, access controls and system-level safeguards may be applied according to the relevant risk.
10. Output Security
AI-generated outputs may introduce security, privacy or operational risks.
Where appropriate, systems may incorporate controls such as:
- output filtering;
- policy enforcement;
- content validation;
- sensitive-data detection;
- access controls;
- human review;
- monitoring; and
- escalation.
Customers remain responsible for validating outputs before using them in consequential business processes unless otherwise agreed.
11. Enterprise Customer Data
Enterprise customer data is handled according to:
- the applicable enterprise agreement;
- data-processing terms;
- customer instructions;
- product architecture;
- applicable law; and
- agreed security requirements.
Where iFortis acts as a processor or service provider, we process customer data within the scope authorised by the applicable agreement.
Enterprise data does not automatically become part of a general-purpose AI training dataset.
Any permitted secondary use, model improvement activity or other processing will be determined by the applicable contractual and privacy framework.
12. Data Segregation
Where appropriate to the product architecture, controls may be used to separate:
- customer environments;
- customer data;
- production and development environments;
- administrative access;
- testing environments; and
- internal corporate systems.
Specific isolation mechanisms depend on the applicable deployment architecture.
13. Identity and Access Management
Access to systems and data should follow the principle of least privilege.
Depending on the environment, this may include:
- role-based access control;
- authentication;
- privileged-access management;
- access logging;
- credential protection;
- environment restrictions;
- administrative controls; and
- access review.
Access should be granted based on legitimate business or operational requirements.
14. Encryption
Where appropriate, data may be encrypted:
- during transmission;
- while stored; and/or
- within applicable processing environments.
Specific encryption mechanisms may vary according to:
- product;
- infrastructure;
- deployment model;
- customer requirements; and
- technical architecture.
Security-sensitive technical details may be made available to qualified enterprise customers through appropriate security-review processes.
15. Secure Software Development
Security considerations may be incorporated throughout the software-development lifecycle.
Depending on the product, activities may include:
- secure architecture;
- code review;
- dependency management;
- vulnerability assessment;
- security testing;
- access-control testing;
- secrets management;
- environment protection;
- logging; and
- remediation.
Security requirements may increase according to the criticality and risk profile of the system.
16. Vulnerability Management
iFortis seeks to identify and address vulnerabilities affecting its technology environment.
Vulnerabilities may be identified through:
- internal testing;
- security monitoring;
- customer reports;
- responsible disclosure;
- assessments;
- automated tools; or
- other security activities.
Vulnerabilities may be prioritised according to factors including:
- severity;
- exploitability;
- exposure;
- affected assets;
- business impact; and
- potential customer impact.
17. Third-Party AI Providers
iFortis may use third-party:
- AI models;
- foundation models;
- cloud infrastructure;
- APIs;
- software;
- security services;
- data services; and
- other technology providers.
Before incorporating third-party technology into relevant enterprise solutions, iFortis may consider factors such as:
- security;
- privacy;
- reliability;
- contractual restrictions;
- data handling;
- availability;
- technical suitability;
- regulatory considerations; and
- business continuity.
Applicable subprocessors may be disclosed through appropriate contractual or enterprise documentation.
18. AI Supply-Chain Security
AI systems may depend upon complex technology supply chains.
Where relevant, iFortis may consider risks associated with:
- third-party models;
- software dependencies;
- libraries;
- APIs;
- datasets;
- infrastructure providers;
- model updates;
- external integrations; and
- service dependencies.
Changes to critical dependencies may be subject to appropriate technical and operational review.
19. Monitoring and Logging
Where appropriate, systems may generate logs relating to:
- authentication;
- access;
- administrative actions;
- system events;
- security events;
- AI interactions;
- tool execution;
- errors;
- performance; and
- operational activity.
Logging is used for legitimate purposes such as security, troubleshooting, reliability, auditing and incident response, subject to applicable privacy and contractual requirements.
20. Security Incident Management
iFortis maintains processes intended to detect, assess, contain, investigate and respond to security incidents.
Response activities may include:
Detect → Assess → Contain → Investigate → Remediate → Recover → Review
Where notification is required by applicable law or contract, iFortis will follow the applicable notification requirements.
Enterprise-specific incident response obligations may be established through contractual arrangements.
21. Business Continuity and Resilience
Depending on the relevant service, iFortis may maintain controls supporting:
- backup;
- recovery;
- redundancy;
- monitoring;
- incident response;
- disaster recovery; and
- operational continuity.
Specific service availability, recovery objectives, RTOs, RPOs and service credits are governed by the applicable enterprise agreement or SLA where applicable.
22. AI Misuse Prevention
iFortis seeks to prevent its technology from being intentionally used for unlawful or harmful purposes.
Customers and users must not use iFortis systems to:
- conduct unlawful activity;
- compromise systems;
- facilitate fraud;
- create malicious software;
- bypass security controls;
- obtain unauthorised information;
- conduct harassment or abuse;
- impersonate individuals unlawfully;
- manipulate systems without authorisation;
- violate privacy rights; or
- otherwise misuse AI capabilities.
Additional restrictions may apply to specific products.
23. Human Review and High-Impact Decisions
AI output should not automatically determine high-impact outcomes.
Where AI is used in contexts involving significant effects on individuals, appropriate human oversight should be established.
Examples may include:
- employment;
- credit;
- insurance;
- healthcare;
- education;
- legal matters;
- safety;
- access to essential services; and
- other materially consequential decisions.
Applicable laws may impose additional requirements.
24. AI Documentation
Depending on the system and risk profile, relevant documentation may include:
- system purpose;
- intended use;
- prohibited use;
- data sources;
- model information;
- known limitations;
- evaluation results;
- security considerations;
- deployment architecture;
- human oversight requirements;
- monitoring requirements; and
- incident procedures.
The level of documentation will be proportionate to the system and its intended use.
25. Employee and Contractor Responsibilities
Personnel who develop, deploy, administer or operate AI systems are expected to:
- follow applicable security requirements;
- protect confidential information;
- use authorised systems;
- maintain appropriate access controls;
- report security concerns;
- follow AI governance procedures;
- avoid unauthorised data use; and
- complete applicable training.
Violations may result in appropriate disciplinary or contractual action.
26. Customer Responsibilities
Enterprise customers are responsible for:
- configuring authorised users appropriately;
- protecting credentials;
- determining lawful use cases;
- obtaining required permissions;
- validating AI outputs where appropriate;
- complying with applicable law;
- protecting information submitted to the platform;
- maintaining appropriate human oversight; and
- following agreed security procedures.
Customers should not provide information to an iFortis system that they are not legally or contractually authorised to provide.
27. Security and AI Assessments
Qualified enterprise customers may request relevant security, privacy or AI-governance information for procurement and risk-assessment purposes.
Subject to confidentiality, security and commercial considerations, iFortis may provide appropriate documentation relating to:
- security architecture;
- data flows;
- AI governance;
- subprocessors;
- data processing;
- access controls;
- business continuity;
- incident response;
- security practices; and
- applicable assurance information.
Certain sensitive technical information may be restricted to protect the security of iFortis systems and its customers.
28. Certifications and Assurance
Where iFortis holds specific security, privacy, AI or compliance certifications or independent assurance reports, applicable information may be made available through the appropriate enterprise or trust channel.
Nothing in this Policy should be interpreted as representing that iFortis holds a certification, accreditation or assurance report unless expressly confirmed by iFortis.
29. Policy Exceptions
Certain enterprise engagements may require additional controls or contractual arrangements.
Exceptions to this Policy should be:
- documented;
- risk assessed;
- approved by the appropriate authority; and
- subject to applicable contractual and legal requirements.
30. Policy Review
This Policy may be reviewed and updated periodically in response to:
- technology developments;
- emerging AI risks;
- security threats;
- regulatory requirements;
- customer requirements;
- changes to our products; and
- lessons learned from operational experience.
The latest version will be published through the appropriate iFortis channel.
31. Responsible Disclosure
Security researchers, customers and other parties who identify a potential vulnerability are encouraged to report it responsibly.
Security & AI Governance Contact
business@ifortisworldwide.org
Please provide:
- affected product or system;
- description of the issue;
- reproduction steps;
- potential impact;
- relevant evidence; and
- contact information.
Please do not publicly disclose vulnerabilities before iFortis has had a reasonable opportunity to investigate and address them.
32. Contact
iFortis Worldwide Private Limited
Level 3, Commercial Development, Manhattan Street
6 Worldmark, Asset, LP-1B-03, Aerocity
New Delhi, Delhi 110037
India
AI, Security & Enterprise Trust
business@ifortisworldwide.org
Our Position
AI should not merely be intelligent.
It should be responsible by design, secure by architecture and accountable in operation.
At iFortis Worldwide®, we build AI Native enterprise transformation around that principle.
AI Native Enterprise Transformation
Service as Software™
Intelligence engineered for enterprise.
Last Updated: 9 August 2026
At iFortis Worldwide Private Limited, our enterprise engagements are structured around dedicated technology, engineering, AI infrastructure, consulting expertise, implementation capacity and delivery commitments.
Because enterprise services may require resources to be reserved or committed specifically for a customer, fees and commercial commitments are generally non-refundable once an engagement, subscription, implementation, licence, professional-services engagement or other paid service has commenced or resources have been committed.
This Policy applies unless a signed enterprise agreement, order form, statement of work or other written commercial agreement expressly provides different terms.
Where a signed agreement contains specific refund, cancellation, termination or credit provisions, that agreement will prevail.
1. Scope
This Policy applies to, where applicable:
- AI platforms;
- software subscriptions;
- digital products;
- enterprise licences;
- implementation services;
- professional services;
- consulting engagements;
- AI engineering services;
- technology development;
- managed services;
- dedicated engineering capacity;
- cloud or infrastructure commitments;
- onboarding and configuration;
- integrations;
- custom development;
- pilots and proof-of-concepts;
- workshops;
- assessments;
- training;
- support services; and
- other paid iFortis services.
2. Enterprise Commercial Commitments
Enterprise engagements often require iFortis to commit resources before or during delivery.
These resources may include:
- engineering teams;
- AI specialists;
- consultants;
- project managers;
- architects;
- infrastructure;
- cloud capacity;
- software licences;
- third-party services;
- environments;
- security resources;
- implementation capacity;
- customer-specific configurations; and
- other operational resources.
Accordingly, once an enterprise engagement has been formally accepted or delivery resources have been committed, the applicable commercial commitment may become non-cancellable and non-refundable, except where expressly agreed otherwise.
3. No General Right to Refund
Unless expressly stated otherwise in a signed agreement:
payments made to iFortis are non-refundable.
This includes payments relating to:
- subscriptions;
- licences;
- onboarding;
- implementation;
- configuration;
- professional services;
- consulting;
- development;
- engineering capacity;
- project mobilisation;
- workshops;
- assessments;
- pilots;
- proof-of-concepts;
- reserved capacity;
- third-party costs; and
- completed or partially completed services.
Payment for a service does not create an automatic right to a refund merely because a customer subsequently decides not to use the service.
4. Subscription Services
For subscription-based products:
- subscriptions are generally billed for the agreed subscription period;
- fees are payable for the committed subscription term;
- unused subscription capacity is generally not refundable;
- reducing usage does not automatically reduce the contracted fee;
- cancellation does not automatically create a refund entitlement; and
- renewal and cancellation rights are governed by the applicable order form or subscription agreement.
Where an enterprise customer has negotiated an annual, multi-year or minimum-commitment arrangement, the customer remains responsible for the committed fees for the applicable commitment period unless the agreement expressly provides otherwise.
5. Enterprise Annual and Multi-Year Commitments
Where an enterprise customer enters into an annual or multi-year commitment, the commitment is intended to provide iFortis with commercial certainty to allocate:
- people;
- technology;
- infrastructure;
- delivery capacity;
- support resources; and
- other operational capabilities.
Accordingly, annual and multi-year commitments are generally non-cancellable for convenience and non-refundable, unless the applicable enterprise agreement expressly provides otherwise.
A customer may not terminate a committed term solely because:
- usage is lower than anticipated;
- internal priorities have changed;
- budgets have been reallocated;
- a project has been delayed by the customer;
- personnel have changed;
- the customer has chosen not to deploy available functionality; or
- the customer no longer requires the service.
Any exceptions must be expressly agreed in writing.
6. Professional Services
Professional services may include:
- strategy;
- consulting;
- architecture;
- AI discovery;
- implementation;
- integration;
- engineering;
- development;
- migration;
- transformation;
- training;
- advisory services; and
- managed delivery.
Professional-services fees relating to work already performed, resources reserved or commitments made are not refundable.
Where services are billed on a milestone, retainer, time-and-materials or dedicated-capacity basis, the applicable commercial agreement will determine the billing mechanism.
7. Dedicated Team and Reserved Capacity
Where iFortis reserves personnel or delivery capacity specifically for a customer, those resources may become unavailable for other engagements.
Accordingly, fees relating to:
- dedicated engineering teams;
- reserved AI specialists;
- dedicated consultants;
- project teams;
- retained capacity; or
- minimum resource commitments
are generally non-refundable once the reservation or engagement has commenced.
If a customer requests a reduction or cancellation of reserved capacity, iFortis may continue to invoice the applicable committed amount for the contractual notice or commitment period.
8. Custom Development
Custom software, AI solutions, integrations, workflows, configurations and other bespoke development require resources to be allocated specifically to the customer.
Payments for custom development are generally non-refundable once:
- discovery has commenced;
- design has commenced;
- development has commenced;
- resources have been allocated;
- third-party costs have been incurred; or
- deliverables have been partially or substantially completed.
Where applicable, intellectual-property ownership and licensing will be governed by the relevant statement of work or enterprise agreement.
9. Implementation and Onboarding Fees
Implementation and onboarding fees may cover activities such as:
- discovery;
- architecture;
- configuration;
- environment setup;
- integrations;
- security review;
- user provisioning;
- data preparation;
- deployment;
- testing;
- training; and
- project management.
These fees are generally non-refundable once implementation activities have commenced.
10. Third-Party and Pass-Through Costs
Certain services may require iFortis to procure or commit to third-party products, infrastructure or services.
These may include:
- cloud services;
- software licences;
- APIs;
- AI model usage;
- infrastructure;
- hosting;
- security services;
- data services; and
- other technology providers.
Where such costs have been incurred or committed on behalf of a customer, they are generally non-refundable.
11. Customer Delays
The customer is responsible for providing information, approvals, access, personnel, systems and other dependencies reasonably required for delivery.
If delivery is delayed because of customer actions or omissions, iFortis may:
- revise the delivery schedule;
- reallocate resources;
- charge applicable standby or additional costs;
- extend the delivery timeline;
- require a change order; or
- continue billing according to the applicable commercial agreement.
Customer-caused delays do not automatically create a refund entitlement.
12. Change Requests
Requests that materially change the agreed scope may require a formal change request or change order.
Additional work may result in:
- additional fees;
- revised timelines;
- additional infrastructure costs;
- additional engineering capacity; or
- revised commercial commitments.
A customer may not withhold agreed payments because it has requested additional work outside the original scope.
13. Cancellation by Customer
Where cancellation is permitted under the applicable agreement, the customer should provide written notice to:
business@ifortisworldwide.org
Unless otherwise agreed:
- fees for services already delivered remain payable;
- committed third-party costs remain payable;
- reserved resource costs remain payable;
- work performed up to the effective cancellation date remains payable;
- non-cancellable commitments remain payable; and
- prepaid amounts are not automatically refundable.
Where appropriate, iFortis may provide a commercial credit at its discretion rather than a cash refund.
14. Cancellation by iFortis
iFortis may suspend or terminate a service in accordance with the applicable agreement, including where:
- payment obligations are not met;
- there is a material breach;
- continued use creates a security risk;
- use is unlawful;
- the customer materially violates applicable terms;
- continued delivery becomes commercially or technically impracticable; or
- required third-party infrastructure becomes unavailable.
Unless required by law or expressly provided by contract, termination by iFortis does not automatically create a refund obligation.
15. Service Failure
If an iFortis service materially fails to conform to an express contractual commitment, the customer's remedies will be determined by the applicable enterprise agreement or service-level commitment.
Depending on the circumstances, a remedy may include:
- remediation;
- service restoration;
- service credit;
- replacement service;
- extension of service; or
- another commercially appropriate remedy.
A service issue does not automatically create a right to a full refund.
16. Service Credits
Where expressly provided under an enterprise agreement, iFortis may provide service credits for qualifying service-level failures.
Unless expressly agreed otherwise:
- service credits are not cash refunds;
- credits are applied against future eligible charges;
- credits are subject to applicable contractual limits; and
- service-credit claims must follow the applicable claim procedure.
17. Force Majeure
Neither party will be responsible for delays or failures caused by events beyond its reasonable control, subject to applicable law and the relevant enterprise agreement.
Such circumstances may include:
- natural disasters;
- major infrastructure failures;
- internet or telecommunications failures;
- cyber incidents affecting critical third-party infrastructure;
- government action;
- war;
- civil unrest;
- pandemics;
- widespread cloud-provider outages;
- regulatory restrictions; or
- other extraordinary events beyond reasonable control.
Commercial consequences will be determined under the applicable agreement.
18. Refund Exceptions
Nothing in this Policy is intended to exclude a refund, cancellation right or other remedy that cannot legally be excluded.
Where a refund is required by mandatory applicable law, iFortis will provide the applicable remedy.
In all other circumstances, refunds are subject to:
- the applicable enterprise agreement;
- order form;
- subscription terms;
- statement of work;
- service-level agreement; and
- iFortis's written commercial approval.
19. Exceptional Commercial Consideration
iFortis may, at its sole commercial discretion, provide:
- partial refunds;
- account credits;
- service extensions;
- replacement services;
- fee adjustments; or
- other commercial accommodations.
Any such accommodation:
- is discretionary;
- does not create a precedent;
- does not amend the underlying agreement unless expressly confirmed in writing; and
- does not establish a continuing refund entitlement.
20. Enterprise Contract Prevails
For enterprise customers, the applicable signed agreement will prevail over this Policy where there is a conflict.
This may include:
- Master Services Agreement;
- Enterprise Agreement;
- Order Form;
- Statement of Work;
- Subscription Agreement;
- Service Level Agreement;
- Data Processing Agreement; or
- other written commercial terms executed by authorised representatives.
21. Taxes
Refunds, credits and commercial adjustments may be subject to applicable taxes, withholding requirements, transaction costs or other statutory obligations.
Where applicable, taxes already remitted to governmental authorities may not be recoverable by iFortis and may therefore be excluded from any eligible refund.
22. How to Request a Commercial Review
All refund, cancellation or commercial-review requests should be submitted in writing to:
business@ifortisworldwide.org
Please include:
- customer or organisation name;
- relevant product or service;
- order or agreement reference;
- invoice number, if applicable;
- date of purchase or engagement;
- reason for the request;
- requested resolution; and
- supporting information.
iFortis will review the request against the applicable agreement, service status, work performed, committed resources, third-party costs and applicable law.
23. Finality of Commercial Decisions
Where this Policy gives iFortis discretion to provide a refund, credit or commercial accommodation, the decision will be made based on the circumstances of the individual engagement.
Unless a contractual or statutory right applies, approval of one commercial adjustment does not create an entitlement to the same adjustment in another engagement.
24. Contact
iFortis Worldwide Private Limited
Level 3, Commercial Development, Manhattan Street
6 Worldmark, Asset, LP-1B-03, Aerocity
New Delhi, Delhi 110037, India
Commercial & Enterprise Support
business@ifortisworldwide.org
Our Enterprise Commitment
iFortis builds long-term technology relationships.
Our commercial model is designed to provide enterprise customers with committed teams, predictable delivery capacity, dedicated technology investment and sustained transformation support.
Accordingly, commercial commitments are structured to protect both parties' ability to plan and execute at enterprise scale.
Commit deliberately. Transform continuously. Build for scale.
iFortis Worldwide®
AI Native Enterprise Transformation
Service as Software™