Home
Products ๐Ÿค–
Skora AI AI Grading
โœจ
Teach Smart AI Co-teacher on your books
๐ŸŽ“
Education ERP School & college platform
๐Ÿ‘ฅ
HRMS & Payroll People ยท payroll ยท compliance
Partners Pricing Blog Demo Contact
Talk to sales Book a demo
Security

Trust by construction, not by promise.

Digiclove handles student records, fee transactions, attendance, payroll, and exam scores. We treat security as an engineering discipline โ€” built in, not bolted on.

Infrastructure

Where your data lives.

India region

India-resident โ€” your cloud, your choice

Indian institution data is hosted entirely within India. Deploy on AWS, Google Cloud, Azure, or your own private cloud.

GCC region

GCC-resident โ€” your cloud, your choice

GCC institution data stays in the Middle East. Choose from AWS, Google Cloud, Azure, or a private data centre.

Private cloud

On-premise & private cloud

Fully on-premise and private-cloud deployments supported โ€” same codebase, your hardware, your network boundary.

Encryption

TLS 1.2+ in transit, AES-256 at rest

All traffic uses TLS 1.2 or higher. Databases, object storage, and backups are encrypted at rest with customer-isolated keys.

Tenant isolation

Multi-tenant by design

Every record carries an InstitutionId enforced at the database layer. Application bugs cannot leak data across institutions.

Backups

Encrypted, geo-redundant

Daily encrypted backups retained for 35 days. Point-in-time recovery available for the last 7 days, stored in a separate region.

Access controls

Who can do what.

For users

Role-based access

  • Granular roles per module โ€” Admissions, Academics, Fees, HR, Payroll
  • Per-class and per-section scoping
  • Optional SSO via Google Workspace and Microsoft 365
  • Optional MFA for administrative roles
For our team

Operator access controls

  • Production access limited to a small, named on-call team
  • Mandatory MFA on all internal systems
  • Every action logged with operator identity
  • Access revoked within 1 business day of role change or exit
Network

Private VPC, WAF protected

Production runs inside a private VPC. CDN + WAF in front of all public endpoints. No direct internet exposure for application servers.

Certifications

External validation.

ISO 27001 Information Security Management
SOC 2 Type II Security, availability, confidentiality
Annual pen tests Independent third-party testing

Reports available under NDA โ€” security@digiclove.com

Operations

Security day-to-day.

Application security

SAST + SCA in CI

Every pull request runs static analysis and dependency scanning. Findings above a severity threshold block merge.

Vulnerability management

Continuous monitoring

Container images and OS packages scanned daily. Critical issues patched within 72 hours.

Continuity

RPO < 1h, RTO < 4h

Recovery Point Objective under 1 hour, Recovery Time Objective under 4 hours. Tested annually.

Responsible disclosure

Found a vulnerability? Tell us.

Email us before disclosing publicly โ€” we'll acknowledge within two business days, investigate, and credit you once resolved.

โœ‰๏ธ security@digiclove.com Other security questions

Please do not test against production tenants โ€” contact us to provision a testing environment.