Trust Centre — How We Protect Your Client Financial Data

Your clients trust you with their financial data. We treat that trust as our highest responsibility. Here is exactly how we protect it.

Data Residency

Your client's data never leaves India. All infrastructure runs in the Mumbai region (ap-south-1) on ORIS-hosted PostgreSQL with contractual data processing agreements ensuring Indian data sovereignty.

Encryption

AES-256 encryption at rest. TLS 1.3 in transit. We never send your financial numbers to AI — only GL account names and directions are used for mapping classification.

Data Lifecycle

Auto-delete timelines ensure data doesn't linger: 90 days for raw trial balances, 90 days for statements, 30 days for exports. You control the delete button — delete anytime.

Raw Trial Balances90 days
Financial Statements90 days
Exports & Downloads30 days

AI Transparency

Every AI classification shows its reasoning, confidence score, and alternatives. The model used is logged for every decision. We never train on your client data — your data stays yours.

Certification Roadmap

DPDP Registration

Month 3

ISO 27001 Readiness

Month 6

SOC 2 Type I

Month 9

SOC 2 Type II

Month 14

Your Data Dashboard

Sign in to see all your stored data, usage metrics, and retention timelines. You can export everything or request full deletion at any time.

Sign in to view

Questions about security?

We are happy to discuss our security practices, provide additional documentation, or schedule a walkthrough with your compliance team.

Contact Security Team