Capability statement · Page 1 of 2
QuantScale: fintech applications, automation and agentic AI
QuantScale is the US-facing specialist brand of Arukus Technologies Private Limited, an ISO/IEC 27001:2022-certified software engineering company headquartered in Kolkata, India. We help small and medium businesses replace manual work, disconnected information and limited operational visibility with tailored applications, automation, practical AI and governed AI agents.
Core capabilities
- Fintech applications: secure customer, transaction, payment and operational experiences.
- Business applications: connected workflows, portals, mobile tools and management dashboards.
- AI automation: information extraction, classification, summarization, routing and reporting.
- Agentic AI: governed agents that use approved tools and knowledge to coordinate multi-step work.
- Modernization: APIs, integrations, responsive interfaces, cloud and performance engineering.
- Managed delivery: product teams, application support and continuous improvement.
Capability statement · Page 2 of 2
Delivery model
Discover → prove → productize → improve. Weekly working sessions, fortnightly demonstrations, regular steering reviews and written change control keep ownership visible.
Technology
Laravel/PHP, Node.js, React, React Native/Ionic, APIs, MySQL, AWS, Redis and application-performance monitoring.
Security and resilience
Least-privilege access, peer review, automated testing, environment separation, dependency review, monitoring, incident escalation and engagement-specific recovery targets. Agentic systems add bounded tool permissions, human approval gates, evaluations and trace logs.
Contact
QuantScale · powered by Arukus Technologies Private Limited · Kolkata, India · info@quantscales.com · USA +1 (813) 412-6006
Draft · Counsel review required
Mutual Non-Disclosure Agreement
Parties and purpose
[US Customer legal name] and Arukus Technologies Private Limited, operating the QuantScale brand, may exchange non-public business, technical, financial, security, product, customer or personal information to evaluate or perform [Purpose].
Recipient obligations
Use confidential information only for the stated purpose; protect it with at least reasonable care; and disclose it only to personnel and advisers with a need to know and comparable obligations.
Exclusions, disclosure and return
Standard exclusions apply to demonstrably public, previously known, independently developed or lawfully received information. Legally required disclosure is permitted with prompt notice where lawful. Information will be returned or securely destroyed on request, subject to legal retention and protected backups.
Term and governing terms
Complete confidentiality period, trade-secret treatment, governing law, venue, notices, equitable relief and electronic-signature provisions with counsel.
Draft · Counsel review required
Master Services Agreement
Delivery framework
Each Statement of Work defines services, deliverables, dependencies, fees, milestones and acceptance. Named engagement managers control operational decisions and written change requests.
Intellectual property
Each party retains pre-existing materials. Upon full payment, the customer receives the ownership or license stated for bespoke deliverables. Arukus retains reusable, non-customer-specific tools and general know-how, always subject to confidentiality.
Risk and legal terms
The signed agreement must address data protection, security cooperation, warranties, third-party claims, liability caps, insurance, termination, transition, export controls, governing law and dispute resolution.
Project template
Statement of Work
1. Business objective
State the current operational problem, affected users, measurable baseline and target outcome.
2. Scope and deliverables
List included workflows, integrations, environments, migration, documentation and training. List exclusions explicitly.
3. Acceptance
For each deliverable define criteria, evidence, reviewer, review period and remediation process.
4. Governance and change
Working cadence, steering review, decision log, RAID register, authorized representatives and written change control.
5. Commercials, security and support
Fees, currency, invoicing, taxes, service hours, severity targets, approved environments, incident contacts, retention, deletion, RPO and RTO.
Draft · Counsel review required
Data Processing Agreement
Processor commitments
- Process personal data only on documented instructions.
- Bind authorized personnel to confidentiality.
- Maintain appropriate technical and organizational safeguards.
- Assist with rights requests, assessments and confirmed breach response.
- Return or delete data at termination as instructed and legally permitted.
Subprocessors and transfers
Identify hosting, monitoring and delivery subprocessors; define notice and objection; impose equivalent safeguards; and document the applicable US–India transfer mechanism.
Schedules
Processing details and data categories; security measures; approved subprocessors; transfer terms; and any applicable US state or financial-sector addenda.
These documents are commercial starting points, not legal advice. Qualified counsel must tailor and approve them before use.