Is CIPHER CRM GDPR compliant?+
For our EU/EEA users, CIPHER CRM aligns its personal-data handling with the GDPR: we process data on a lawful basis, honour data-subject rights, use sub-processors under contractual safeguards, and support international-transfer mechanisms such as Standard Contractual Clauses where relevant. We do not claim any certification; we can provide a Data Processing Agreement on request.
Do you comply with India's DPDP Act?+
Yes - CIPHER Craft Pvt. Ltd. is a registered Indian company and we align our practices with India's Digital Personal Data Protection Act, 2023 and the IT Rules, 2021. We collect only the data we need, process it for clear purposes, support access/correction/erasure, and provide a grievance contact.
Where is my data stored?+
CIPHER CRM runs on reputable, industry-standard cloud infrastructure with provider-managed network and physical security controls. For the specific hosting region or data-residency arrangement for your organisation, contact us and we will confirm the details.
Can I get a DPA (Data Processing Agreement)?+
Yes. We offer a Data Processing Agreement covering how we process personal data on your behalf, our sub-processors, and international-transfer safeguards. Email hello@ciphercrm.co with the subject "DPA request" and we will share it.
How do I request my data or ask for deletion?+
Email hello@ciphercrm.co with your request (access, correction, deletion, portability or objection). We verify the request and respond within 30 days. If CIPHER holds the data on behalf of a customer, we route the request to that customer as the data controller.
Who are your sub-processors?+
We use vetted sub-processors for cloud hosting, transactional email and product analytics, each under contractual data-protection safeguards. We can provide the canonical named list, with purpose and region, on request and commit to reasonable notice of material changes.