Your Data is Protected
Security is foundational to everything we build. Here's how we protect your data and ensure compliance at every level.
Encryption
All data is encrypted in transit using TLS 1.3 and at rest using AES-256. We never transmit sensitive data in plaintext.
Access Control
Role-based access control (RBAC) ensures users only access data relevant to their role. All access is audit-logged.
Audit Logging
Every action in CUapp is logged with timestamps, user IDs, and IP addresses. Audit logs are immutable and retained per compliance requirements.
Infrastructure
Hosted on secure, SOC 2-compliant cloud infrastructure with automatic failover, regular backups, and disaster recovery procedures.
Incident Response
We maintain a documented incident response plan. In the event of a data breach, affected parties are notified within 72 hours per regulatory requirements.
Compliance
CUapp is designed to comply with PESO regulations, the DPDP Act 2023, and industry-specific compliance requirements for industrial gas operations.
How We Handle Your Data
Data Ownership
Your data belongs to you. We process it solely to provide the CUapp service. You can export your data at any time, and upon contract termination, we provide a reasonable period for data retrieval before secure deletion.
Data Retention
Operational data (scan logs, compliance records) is retained for the duration of your service agreement plus any legally mandated retention period. Personal data is retained only as long as necessary for the purposes described in our Privacy Policy.
Data Location
All data is processed and stored within secure data centres. We do not transfer your data outside of our hosting infrastructure without your explicit consent.
Report a Vulnerability
If you discover a security vulnerability in our platform, please report it responsibly. We take all reports seriously and will respond within 48 hours.
connect@dig-it.co.in