Security

AES-256 encryption.
Full audit trail. Built for DPDP.

Your cap table, board minutes, and LP data are among the most sensitive records your company holds. Here's exactly how we protect them.

Security by Design

Enterprise-grade security at every layer of the Kapitalyze platform.

AES-256 Encryption

Sensitive data — including integration credentials and PAN — is encrypted at rest using AES-256-GCM. The platform is served over TLS.

Role-Based Access

Granular, role-based access controls ensure that users only see and modify data relevant to their responsibilities.

Audit Trails

Actions on the platform are logged to an audit trail. Know who did what, when.

2FA / TOTP

Two-factor authentication using time-based one-time passwords is available on every account. We recommend enabling it, especially for admins.

Data Residency (India)

Customer data is primarily stored in Indian data centres. Some processing by service providers may occur outside India under contractual safeguards — see our Privacy Policy for details.

DPDP Act 2023

Our data-handling practices are built around the Digital Personal Data Protection Act, 2023, including data-principal rights and a named Grievance Officer.

Report a Vulnerability

We take security reports seriously. If you discover a vulnerability, please disclose it responsibly by contacting our security team. We commit to acknowledging reports within 24 hours.

security@kapitalyze.com

Trusted by companies across India

Start your 14-day free trial with enterprise-grade security from day one.

Start free trial