Legal entity

  • Registered name: Crux Credit Rating Agency Private Limited
  • CIN: U82910MR2026PTC475979
  • Registered office: 301 Surya Sadan CHS Ltd, Opp Anand Cut Piece, RM Road, Naupada, Thane, Maharashtra 400602, India
  • Directors: Virendra Baijnath Pal, Dilip Jagdish Pendse
  • Contact: +91 77100 77167 · info@ccra.co.in

“Crux Risk Intelligence” is the trading name under which Crux Credit Rating Agency Private Limited offers the products described on this site.

Regulatory disclaimer

Crux Risk Intelligence provides AI-driven risk scores, grades and due-diligence opinions. We are not a SEBI-registered credit rating agency and do not issue credit ratings on securities. We are not a credit information company under the Credit Information Companies (Regulation) Act, 2005. All outputs are issued as scores, grades and opinions and must not be represented as regulated credit ratings.

Privacy Policy

This policy will set out what personal and business data Crux Risk Intelligence collects, the lawful basis for each category, how long it is retained, who it is shared with, and how a data principal exercises their rights.

  • Categories of data and the purpose of each
  • Lawful basis and consent capture
  • Retention periods and deletion
  • Sub-processors and cross-border transfer
  • Data principal rights and how to exercise them

Full policy text to be published.

Terms of Use

These terms will govern access to the Crux platform, reports and APIs — including permitted use of scores and grades, subscription and payment terms, limitation of liability, and the express statement that outputs are opinions rather than regulated credit ratings.

  • Permitted and prohibited use of scores, grades and reports
  • Subscription, billing and termination
  • Intellectual property and confidentiality
  • Limitation of liability and no-reliance provisions
  • Governing law and dispute resolution

Full terms to be published.

Data Protection / DPDP Notice

Crux is built DPDP-by-design. Data reaches the platform through Account Aggregator, GSP APIs, public registers and consented checks only — there is no unconsented personal-data harvesting and no scraping.

  • Notice and consent under the DPDP Act, 2023
  • Purpose limitation and data minimisation
  • Security safeguards — ISO 27001 / SOC 2 / CERT-In alignment
  • Breach notification process
  • Data Protection Officer and grievance redressal contact

Full notice and DPO contact details to be published.