Monday–Saturday, 9:30 AM–7:00 PM
Get DSC Support WhatsApp
Legal and policy

Data protection and DPDP

Our website data-handling approach with reference to India’s Digital Personal Data Protection framework.

Last updated 9 August 2026 info@safe4sign.com
Framework reference: India’s Digital Personal Data Protection Act, 2023 is supplemented by the Digital Personal Data Protection Rules, 2025. Safe4Sign’s website practices are designed with this framework in mind; specific obligations apply according to the law and its notified commencement timeline.

Our data-handling principles

  • Purpose-led collection. We ask for information relevant to the enquiry or service.
  • Reasonable safeguards. Access controls and operational safeguards appropriate to the data handled.
  • Clear communication. We explain why form information is requested and how to contact us.
  • Retention discipline. Information is kept only as long as reasonably required for the relevant purpose and obligations.

Consent and notice on website forms

Public enquiry forms include a privacy acknowledgement or consent statement before submission. Users should provide accurate information and should submit another person’s data only when authorised to do so.

Data Principal requests

Where applicable under law, individuals may have rights relating to access to information about processing, correction or updating, erasure, grievance redressal and nomination. Requests can be initiated through our published contact email; identity or request details may be verified before action is taken.

Security incidents

If a personal-data incident occurs, Safe4Sign will assess the event and take the steps required under applicable law, contractual obligations and the nature of the incident, including containment, remediation and notifications where legally required.

Processors and third-party services

Some services may involve hosting providers, email services, software vendors, payment or communication providers, or licensed Certifying Authorities. Information shared with them should be limited to what is reasonably required for the relevant purpose and governed by the applicable arrangement.

Official references

For authoritative text and commencement information, refer to the Ministry of Electronics and Information Technology publications for the Digital Personal Data Protection Act, 2023 and the Digital Personal Data Protection Rules, 2025.

This page is a general website policy summary, not a legal opinion or a certification of regulatory compliance. Business-specific DPDP obligations should be reviewed against actual processing activity and current law.