Data Security Policy

Last Updated: 01/01/2025

At Insuraa, we prioritize the security and confidentiality of user data. This policy outlines our measures to ensure data protection.

1. Data Protection Measures

  • All user data is encrypted using **AES-256** and **SSL/TLS** protocols.
  • Regular security audits and penetration testing are conducted to identify vulnerabilities.
  • Access to sensitive information is restricted to authorized personnel only.

2. User Data Collection & Storage

  • We collect only essential data required for services such as policy management and CRM.
  • Data is stored in **ISO 27001-certified** data centers with multi-layer security.
  • All payment transactions are processed through **PCI-DSS compliant** gateways.

3. Data Sharing & Third-Party Access

  • We do **not** sell or share personal data with unauthorized third parties.
  • Data is shared with insurance providers only for service processing, with strict confidentiality agreements.
  • Third-party integrations (e.g., payment gateways) follow industry security standards.

4. Data Retention & Deletion

  • User data is retained only for as long as required by law or service agreements.
  • Upon account closure, personal data is deleted within **90 days** unless retention is legally mandated.

5. User Rights & Controls

  • Users can request data deletion or correction by contacting support@insuraa.in.
  • Two-factor authentication (2FA) is recommended for added account security.
  • Users should avoid sharing login credentials with anyone.

6. Policy Updates

We may update this policy from time to time. Any changes will be reflected on our website.

7. Contact Us

If you have any security concerns, please reach out to us:

Email: support@insuraa.in

Website: www.insuraa.in