Home/Security
Your list is not our product.
A file sent for validation is usually your client’s contact database, not your own. Here is exactly what happens to it, what never does, and where we are on certification.
What we do with your data.
Deleted when the campaign is removed
Submitted data is used only for validation. It is never added to our own database, never used to enrich another customer’s file, and never sold or shared.
- Deleted on campaign removal
- Earlier deletion on written request
- Never resold, never reused
Your own workspace
Every client runs on a dedicated instance with its own configuration and its own rulebook. Client data is not pooled.
- Dedicated per-client workspace
- SFTP pull or your own upload
- No shared processing tenancy [CONFIRM]
Encrypted in transit and at rest
[CONFIRM: TLS 1.2+] in transit and [CONFIRM: AES-256] at rest. Access is named, least-privilege and logged.
- Named, least-privilege access
- Access logged and reviewable
- Independent testing [CONFIRM cadence]
No credentials, seats or logins
We never ask for access to your CRM, ESP or any third-party platform. There is nothing to provision and nothing to revoke.
- Backend-to-backend processing
- No third-party credentials held
- Nothing an attacker could take that reaches you
We would rather tell you where we are than show you a badge.
A badge implies an audit. We have not completed one, so there is no badge on this site.
Send us your questionnaire.
We complete security questionnaires in [CONFIRM] business days, because the answer to “can we trust you with this data” should be a document you can file.
Run the assessment on a file you control.
Send 5,000 records, see exactly what comes back, and have the security paperwork in hand before anything larger.
No commitment and no card · vidhan@zeplinix.com · +91 84590 17737