Data Security Policy
Last updated 28 September 2026
On this page4 sections
We protect personal data with reasonable security safeguards as required by Section 8(5) of the Digital Personal Data Protection Act, 2023 and Section 43A of the Information Technology Act, 2000.
1. Safeguards we use
Area | Safeguard |
|---|---|
Transmission | HTTPS/TLS encryption on all pages and forms |
Storage | Encrypted cloud databases; passwords stored only as salted hashes |
Access | Role-based access; staff see only what their role needs; access is logged |
Authentication | OTP verification for users; individual, named accounts for staff and admins |
Documents | Stored in access-controlled cloud storage, not on personal phones or personal email |
Payments | Online payments are handled by an RBI-regulated payment provider; we never store full card or bank numbers |
Vendors | Processors bound by written contracts with security and confidentiality terms |
Backups | Regular, managed backups by our cloud provider |
People | Confidentiality undertakings and yearly security and privacy training for staff |
2. Your part
Keep your password and OTPs private, use a secure device, and never share OTPs with anyone — Career Comrade staff will never ask for your OTP, card PIN or banking password.
3. Limits
No system is completely secure. If a breach happens, we follow our Data Breach / Incident Response Policy.
4. Report a vulnerability
Email careercomradehelpdesk@gmail.com. Please do not test in ways that harm users or services.
