Privacy
Data Sovereignty & Privacy Notice
1. Minimalist Identity Protection
In strict adherence to the DPDP Act 2023 and global data protection guidelines, E-SafeDoc™ processes only the User Name and Business Email required for institutional access. The platform architecture has zero provisions to request or store sensitive personal data, completely eliminating identity liability at the source.
2. Infrastructure Protection Protocol
All Smart Document Wrappers™ instances are securely encapsulated on Tier-III Indian Cloud Infrastructure. The platform operates strictly as a non-custodial, zero-knowledge architecture where data assets remain completely blind at the hosting provider end.
3. Forensic Security Interlock
The recording of active IP addresses is a purely technical security interlock to prevent session hijacking via stateless tokenization. This temporary validation data is never utilized for tracking or commercial profiling, and it is instantly purged upon session closure.
4. Sovereign Handshake Protection
Our Sovereign Handshake protocol implements an unyielding session isolation framework. Every active session is securely sealed at the server layer. Every single data movement is atomically validated to ensure your institutional vault remains impenetrable to unauthorized interference.
5. Audit Lifecycle & Retention Strategy
- Configurable Retention Threshold: Audit Trail Records are governed by a factory-configured two-year operational threshold for lean resource management. The Client Administrator holds the coded authority to increase this retention parameter within the core system settings to align with their specific institutional or regulatory compliance mandates.
- Onus of Maintenance: By extending the retention threshold beyond the two-year baseline, the Client accepts full operational responsibility for the corresponding increase in database volume and server load. The Client remains solely responsible for executing the dual-verification consent purge. They must safely retain their system-generated CSV and encrypted ZIP archives prior to running any permanent database erase routines. Once the Purge is executed, the action is irreversible.
6. Session Governance & Temporal Security
- Default Privacy Protection Protocol: To safeguard institutional integrity and prevent unauthorized access via unattended devices, E-SafeDoc™ enforces a default 30-minute idle timeout. If no activity is detected within this window, the stateless security token is automatically invalidated and purged from the server memory.
- Administrative Flexibility: The Client Administrator holds the coded authority to adjust this temporal parameters block to align with specific internal workflows or corporate safety protocols.
- The Onus of Adjustment: By extending the idle timeout beyond the 30-minute standard baseline, the Client formally accepts the increased risk of workstation exposure. The engine recommends maintaining the factory default for maximum perimeter defense.
7. Universal Administrative Accountability
- Universal Audit Capture: The immutable audit chronicle is absolute and all-encompassing. It explicitly records every action performed by the Client Administrator, including metadata re-classification, session timeout shifts, and audit retention adjustments.
- Administrative Sovereignty: The Client Administrator is equipped with the authorization to execute high-privilege interventions. These include universal engine shutdowns, real-time interface alerts, and immediate user session terminations.
- The Accountability Lock: To prevent the misuse of privilege, every administrative intervention is indelibly recorded inside the immutable audit trail. This ensures that while the Administrator holds the master key, their actions are subject to permanent institutional scrutiny.
- Restoration of Institutional Defaults (The Factory Reset): The platform is delivered with factory-configured default parameters to maintain maximum security. The Client Administrator holds the coded authority to trigger an instant factory reset, snapping all modified configurations back to original benchmarks.
8. The Clean Exit
We ensure no vendor lock-in. Upon service termination, a formal handover request triggers an automated Full Extraction Tool within our defined portability windows.