Skip to content
Legal

Data Security Policy

Last updated 28 September 2026

On this page4 sections

We protect personal data with reasonable security safeguards as required by Section 8(5) of the Digital Personal Data Protection Act, 2023 and Section 43A of the Information Technology Act, 2000.

1. Safeguards we use

Area

Safeguard

Transmission

HTTPS/TLS encryption on all pages and forms

Storage

Encrypted cloud databases; passwords stored only as salted hashes

Access

Role-based access; staff see only what their role needs; access is logged

Authentication

OTP verification for users; individual, named accounts for staff and admins

Documents

Stored in access-controlled cloud storage, not on personal phones or personal email

Payments

Online payments are handled by an RBI-regulated payment provider; we never store full card or bank numbers

Vendors

Processors bound by written contracts with security and confidentiality terms

Backups

Regular, managed backups by our cloud provider

People

Confidentiality undertakings and yearly security and privacy training for staff

2. Your part

Keep your password and OTPs private, use a secure device, and never share OTPs with anyone — Career Comrade staff will never ask for your OTP, card PIN or banking password.

3. Limits

No system is completely secure. If a breach happens, we follow our Data Breach / Incident Response Policy.

4. Report a vulnerability

Email careercomradehelpdesk@gmail.com. Please do not test in ways that harm users or services.

All legal and policy pages