Security First

Your Data is Protected

Security is foundational to everything we build. Here's how we protect your data and ensure compliance at every level.

Encryption

All data is encrypted in transit using TLS 1.3 and at rest using AES-256. We never transmit sensitive data in plaintext.

Access Control

Role-based access control (RBAC) ensures users only access data relevant to their role. All access is audit-logged.

Audit Logging

Every action in CUapp is logged with timestamps, user IDs, and IP addresses. Audit logs are immutable and retained per compliance requirements.

Infrastructure

Hosted on secure, SOC 2-compliant cloud infrastructure with automatic failover, regular backups, and disaster recovery procedures.

Incident Response

We maintain a documented incident response plan. In the event of a data breach, affected parties are notified within 72 hours per regulatory requirements.

Compliance

CUapp is designed to comply with PESO regulations, the DPDP Act 2023, and industry-specific compliance requirements for industrial gas operations.

Data Handling

How We Handle Your Data

Data Ownership

Your data belongs to you. We process it solely to provide the CUapp service. You can export your data at any time, and upon contract termination, we provide a reasonable period for data retrieval before secure deletion.

Data Retention

Operational data (scan logs, compliance records) is retained for the duration of your service agreement plus any legally mandated retention period. Personal data is retained only as long as necessary for the purposes described in our Privacy Policy.

Data Location

All data is processed and stored within secure data centres. We do not transfer your data outside of our hosting infrastructure without your explicit consent.

Report a Vulnerability

If you discover a security vulnerability in our platform, please report it responsibly. We take all reports seriously and will respond within 48 hours.

connect@dig-it.co.in