Compliance by architecture.
Most vendor-risk questionnaires ask how we protect your data. Our answer: it never leaves your building. Here is how the standard questions resolve.
On your hardware, in your building. We never receive it.
There is no transit. Your documents don't come to us.
A breach of our cloud cannot expose your documents — we don't hold them.
Our staff have no path to your data. The audit is your own server's logs.
Built around the DPDP Act, 2023.
Under the Digital Personal Data Protection Act, your organisation remains the sole Data Fiduciary — on-premise BodhAI introduces no data processor for your documents, no cross-border transfer, no consent chain. Most DPDP vendor questions are moot by construction.
Data-subject requests and DPDP grievances are routed through the contact form — select “Security” as the purpose. We do not operate a separate DSAR portal or a named grievance officer at our current scale; every request reaches the team directly.
| Data class | Where it lives | Who can read it | Reaches BodhAI cloud? |
|---|---|---|---|
| Documents & extracted content | Your server | Your users, by group | NEVER |
| Chat, queries & answers | Your server (SQLite) | Your users, by role | NEVER |
| Knowledge graph & embeddings | Your server (Qdrant) | Your users, by group | NEVER |
| Telemetry | Our cloud | BodhAI ops | Yes — hashed queries, counts, org ID only |
| Account & license | Our cloud | BodhAI ops | Yes — admin email, org name, plan, seats |
| Billing & GST invoices | Our cloud + Razorpay | BodhAI ops · Razorpay | Yes — required for invoicing |
We hold no certifications yet — we'd rather tell you that plainly than imply otherwise. The path: