Built to be trusted.
Your clients' data and your business data deserve the highest standard of protection. Here's exactly what we do and what we're working toward.
Compliance & Certifications
GST Audited
Our GST calculation engine and invoice templates are being audited by a CA firm. Audit report will be published here once complete.
Visa Data Verified
Visa requirements for 60+ countries are being verified by licensed immigration consultants. Each country card will show the verifying partner and date.
SOC 2 Type 1
We are working toward SOC 2 Type 1 certification. This audit covers security, availability, and confidentiality of your data.
Data in India
All primary data - your quotes, clients, rate cards, and files - is stored in our cloud infrastructure in the ap-south-1 region (Mumbai, India).
DPDP Act 2023
TripDrafts is compliant with India's Digital Personal Data Protection Act 2023. You have the right to access, correct, and delete your data.
Security Measures (Active)
- All data encrypted in transit (TLS 1.2+) and at rest (AES-256)
- Row-level security enforced at the database layer - agents can only access their own data
- Authentication via our cloud database & storage provider (Google OAuth and email sign-in)
- API rate limiting via our rate-limiting service to prevent abuse
- CSRF protection on all state-changing API requests
- No advertising cookies or cross-site tracking
- Credentials managed securely by our cloud database & storage provider - never stored in our application database
Your data stays in India
All primary data is stored in our cloud infrastructure in the ap-south-1 region (Mumbai, India). We do not transfer your quotes, client data, or files outside India except as required by third-party processors (our transactional email provider for email, our privacy-friendly analytics provider for analytics - both GDPR compliant).
Legal Documents
Security questions or concerns? privacy@tripdrafts.com