Privacy policy
Applicability and Scope
NOKATI - Nexus of Knowledge, Architecture & Technological Innovation (“Company”, “we”, “us”, or “our”) respects your privacy and is fundamentally committed to protecting it through first-principles data engineering and uncompromising transparency.
This Privacy Policy describes the policies and architectural practices regarding the collection, transmission, processing, and safeguarding of information when you interact with our official digital ecosystem, including nokati.in, specialized platforms such as StarkSeek, institutional interfaces, and associated electronic correspondence (collectively, the “Services”).
This policy applies strictly to information collected directly by NOKATI through our digital services, technical interfaces, and direct communications. It does not apply to third-party services, independent external platforms, or autonomous software environments linked to but not operated by NOKATI.
The Information We Collect and Architectural Principles
Our architectural ethos enforces extreme data minimization. We reject invasive behavioral profiling, dark-pattern telemetry, and third-party data tracking. We only process information that is mathematically essential to execute services, verify technical competence, or maintain institutional security.
- Information You Explicitly Provide: Details submitted voluntarily through our institutional inquiry forms, talent communication lines, or direct partnership dialogues.
- Direct Technical Telemetry: Essential server and application-level metrics gathered automatically to preserve uptime, prevent distributed denial-of-service attempts, and ensure algorithmic integrity.
- Product & Code Intelligence Data: Where users interact with engineering platforms like StarkSeek, verified technical repositories or portfolio signals explicitly submitted for code analysis.
Information You Provide to Us
When you initiate direct interaction with NOKATI, we may collect the following verifiable information:
- Contact Credentials: Full name, verified organizational or personal email address, institutional title, and technical affiliation.
- Engineering Submissions & Queries: Contextual message content, technical portfolios, GitHub or public code repository handles provided during recruitment or partnership dialogues.
- Institutional Communications: Records, transcripts, and correspondence history maintained strictly for continuing enterprise or technical engagement.
Automatic Diagnostic and Telemetry Collection
As you navigate our digital surfaces, our infrastructure automatically captures low-level diagnostic logs. These logs are decoupled from personal identities and utilized exclusively for high-availability systems engineering:
- Network & Device Topology: Internet Protocol (IP) address, operating system architecture, browser rendering engine, and regional routing node.
- Performance & Latency Metrics: Server response times, HTTP protocol status codes, resource load durations, and hardware acceleration capabilities.
- Zero Third-Party Advertising Trackers: We deploy no commercial cross-site ad beacons, surveillance trackers, or third-party marketing cookies on our web properties.
How We Use Information
Information gathered is processed under legitimate technological, institutional, and contractual interests:
- To engineer, maintain, optimize, and deliver our core foundational software architectures and client systems.
- To address inbound institutional inquiries, enterprise partnerships, and candidate evaluations with precision.
- To detect, mitigate, and neutralize automated security threats, unauthorized penetration attempts, and infrastructure vulnerabilities.
- To fulfill statutory, corporate governance, and compliance mandates under applicable jurisdictions.
Data Storage, Encryption and Security Architecture
Security at NOKATI is rooted in first-principles defense-in-depth:
- Cryptographic Protection: All data in transit is encrypted using modern Transport Layer Security (TLS 1.3). Data at rest is secured via industry-standard AES-256 encryption.
- Strict Non-Monetization: We never sell, lease, rent, or trade your personal or institutional data to advertising networks, data brokers, or external aggregators under any circumstances.
- Access Segregation: Core production systems are isolated through strict role-based access control (RBAC), multi-factor cryptographic keys, and automated audit logging.
Your Rights and Governance
Depending on your location and governing data protection laws, you retain clear authority over your personal information:
- Right to Access: You may request a structured disclosure of any personal data we hold relating to you.
- Right to Rectification: You may request correction of any inaccurate or incomplete records.
- Right to Erasure: You may request complete, permanent cryptographic deletion of your personal records from our active databases, subject to statutory retention obligations.
Contact and Governance Office
For questions regarding our privacy architecture, data governance policies, or to exercise your privacy rights, contact our legal and infrastructure office: