Data Protection & Privacy

Zero Retention.
Total Sovereignty.

At Prism, privacy is not a compliance checklist—it is an architectural guarantee. We operate under a strict zero-retention model, explicitly designed to comply with the Indian Digital Personal Data Protection (DPDP) Act, 2023.

Data Residency

100% of processing occurs in AWS ap-south-1 (Mumbai). Your data never leaves Indian borders.

AES-256 Encryption

All transit is secured via TLS 1.3. Output insights are encrypted at rest using AES-256 standards.

1-Hour TTL

Raw source data is permanently destroyed from our volatile memory 60 minutes after ingestion.

1. Processing Under the DPDP Act, 2023

Prism Intelligence Inc. operates strictly as a Data Processor under the Digital Personal Data Protection Act, 2023. You, the Client, remain the Data Fiduciary. We do not determine the purpose or means of processing personal data. Our engine exists solely to synthesize intelligence from the datasets you authorize.

In adherence to the principles of data minimization and purpose limitation, Prism's architecture inherently prevents the stockpiling of Principal Data. We extract thematic intelligence, sentiment polarity, and aggregate metrics without associating these insights to specific Data Principals.

2. Information Technology (Reasonable Security Practices) Rules, 2011

Pursuant to Section 43A of the Information Technology Act, 2000, we implement ISO/IEC 27001-aligned comprehensive documented information security programs (ISMS).

  • Zero-Retention Engine: We do not write raw CSV, JSON, or PDF uploads to persistent databases. Analysis is conducted in-memory.
  • Auto-Destruction: Temporary storage buckets handling the upload pipeline enforce a strict 1-hour Time-To-Live (TTL) lifecycle.
  • No LLM Training: Prism explicitly disables telemetry and training. Your private customer data is never used to train foundation models.

3. Incident Response & Breach Notification

In the highly unlikely event of a security breach compromising the encrypted intelligence outputs, Prism maintains a 6-hour internal SLA for notifying the Indian Computer Emergency Response Team (CERT-In) and affected Data Fiduciaries, complying with the latest CERT-In directives.

Grievance Officer

In accordance with the Information Technology Act, 2000 and rules made there under, the name and contact details of the Grievance Officer are provided below:

Mr. Security Operations
Prism Intelligence Inc.
Chennai, India 600020
Email: legal@prismintel.co

Stop reading reviews. Start making decisions.

Choose the path that fits your pipeline. From self-serve analysis to custom enterprise models.

Self-Serve Engine

Perfect for product managers and analysts. Upload your CSVs, configure your extraction parameters, and instantly generate boardroom-ready strategic reports.

Enterprise & Agencies

For massive data streams and high-ticket clients. Get dedicated infrastructure, custom ingestion pipelines, and white-labeled PDF generation.

Contact Sales