Security
Security and data handling
Where each app runs, what it stores and what access it needs. Share this page with whoever approves new vendors at your company.
By app
Where each app runs and what it stores
Where a platform lets us run the app on its own hosting, we do. Your data then stays with a vendor you have already approved.
Practices
Rules that apply to every app
Each app asks only for the permissions it needs. Our reporting apps have no write access at all.
We store IDs and dates instead of names wherever we can.
Keys are held in the platform's secret store and never written to logs. Logs contain IDs, counts and errors only.
Every request is validated, and platform APIs are called with parameters, never with strings built from input.
Where an app can remove data, it needs a checked copy first, runs as a preview by default, and can be stopped with one switch.
When you uninstall, your account's data is deleted. We confirm in writing on request.
Reporting an issue
Found a security problem?
Email support@telcomaglobal.com with "security" in the subject. Tell us what you found and how to reproduce it.
- We confirm receipt within one business day.
- We send our assessment and a fix date within five business days.
- We won't take legal action over good-faith research that doesn't harm customers or access their data.
- Please don't publish it until we've released a fix.
If an incident affects your data, we will tell you directly.
- Vendor
- TELCOMA Technologies Private Limited
- In business since
- 2009
- Registered office
- Ludhiana, Punjab, India
- Security contact
- support@telcomaglobal.com
- Data processing agreement
- Available on request
- Sub-processors
- Listed in each app's privacy policy
Send us your security questionnaire and we'll complete it.