Security & compliance
Audit-ready, by default.
AES-256-GCM encryption, mTLS, 7-year audit log, DPDP / HIPAA / GDPR / ABDM / PCI-DSS / NABH-aligned. Data stays in India (ap-south-1).

Controls
How your data is protected.
AES-256-GCM at rest
Every PII / PHI field encrypted individually.
TLS + mTLS in transit
Mutual TLS between every internal service.
7-year audit log
Tamper-evident hashing; export to SIEM.
Consent management
Per-data-type granular consent; right-to-erasure.
Framework alignment
DPDP · HIPAA · GDPR · PCI-DSS · ABDM · NABH · NABL.
Data residency
AWS ap-south-1 (Mumbai); no cross-border by default.
Frameworks
Aligned with what India and the world require.
DPDP
India Digital Personal Data Protection Act
HIPAA
US-aligned health data privacy controls
ABDM
Ayushman Bharat Digital Mission partner
NABH
Hospital quality + audit standards
NABL
Laboratory accreditation
ISO 27001
Information security management