Your documents are sensitive. We treat them that way.
Bank statements, KYC documents and salary slips are some of the most sensitive data a business holds. This page explains how we protect them.
Encryption
Data is encrypted in transit with TLS 1.2 or higher, and encrypted at rest in our databases and file storage. API keys and credentials are stored encrypted and never in source code.
Access control
Each customer's data is isolated. Within your account, roles decide who can upload, review or export. Our staff access customer data only when needed to support you, and that access is logged.
Data retention and deletion
You decide how long documents are kept. You can delete documents at any time, and we delete your data at the end of your contract.
Hosting in India
Customer documents are stored in India. If any processing by an AI provider happens outside India, we list it under AI model providers below.
AI model providers
We combine our own models with models from established AI providers. We use providers only under terms that do not allow them to train on data we send.
No training on your data
Your documents and extracted data are used only to provide the service to you. We do not use them to train models.
Audit trail
Every upload, extraction, check, correction and export is recorded with who did it and when. You can see this history for any document. More on this in Responsible AI.
Reporting a security issue
If you believe you have found a security issue, please write to us through the contact page. We will acknowledge your report and keep you informed.
For how we handle personal data, see our privacy policy.