Legal
Security Policy
Last updated: 1 April 2026 ยท VittSphere Technologies Private Limited

At VittSphere Technologies, we handle sensitive financial data โ€” income details, bank statements, GST returns, investment portfolios. We take this responsibility seriously and have implemented multiple layers of security to protect your data.

๐Ÿ”
AES-256 Encryption
All stored financial data is encrypted using AES-256, the same standard used by banks and defence organisations.
๐Ÿ”’
HTTPS / TLS Everywhere
All data in transit is protected by HTTPS/TLS. No data travels over unencrypted connections.
๐Ÿ‡ฎ๐Ÿ‡ณ
India-Only Servers
All data stored exclusively on servers located in India. No cross-border data transfer.
๐Ÿ›ก๏ธ
DPDP Act 2023
Fully compliant with India's Digital Personal Data Protection Act 2023 and its rules.
๐Ÿ‘๏ธ
Access Controls
Your financial data is accessible only to you and CA team members specifically assigned to your account.
๐Ÿ”‘
Secure Authentication
Staff login requires 3-factor authentication: User ID + Password + Aadhaar verification. Math CAPTCHA for CA admin.

Data Storage & Location

VittSphere stores all user data exclusively on servers within India. We use Hostinger India-based infrastructure. We do not use any foreign cloud provider (AWS, Google Cloud, Azure) for storing Indian user financial data. This is our commitment โ€” not just a compliance checkbox.

Encryption Standards

Data at Rest

Data in Transit

Access Control

We implement strict role-based access:

DPDP Act 2023 Compliance

VittSphere complies with India's Digital Personal Data Protection Act 2023 including:

CA Professional Secrecy

Our CA team members are bound by the ICAI Code of Ethics and professional secrecy obligations under the Chartered Accountants Act 1949. This adds a legal layer of protection beyond our platform privacy policy โ€” your financial information is protected by professional law, not just contractual terms.

What We Do NOT Do

Security for Uploaded Documents

When you upload financial documents (bank statements, P&L, ITR):

Responsible Disclosure

If you discover a security vulnerability in our platform, we request you to report it responsibly at security@vittsphere.com before public disclosure. We will acknowledge within 48 hours and work to resolve it. We appreciate security researchers who help keep our platform safe.

Our commitment: Your financial data is yours. We are custodians, not owners. We will never monetise, sell, or misuse information you entrust to us. This is not just policy โ€” it is the professional oath of our CA team.

Contact โ€” Security Team

Security issues: security@vittsphere.com
Privacy queries: privacy@vittsphere.com
VittSphere Technologies Private Limited ยท GSTIN: 27AAMCV0671P1ZL ยท CIN: U62099PN2026PTC253995