Trust, made verifiable.
This is the single place to evaluate Autroid's security, compliance, and operational reliability. Everything here routes to the underlying detail — so your security team can assess us once, from one page.
Where to start
Three pillars of trust.
Security, compliance, and reliability each have a home. Pick the one your evaluation needs — every card routes to the full detail.
Security
AES-256 encryption at rest, TLS 1.2+ in transit, module-level RBAC with MFA, and AWS infrastructure with VPC network isolation.
Explore security postureCompliance
DPDP Act compliant architecture, GDPR-aligned processing, statutory GST and E-Invoice support, and a SOC 2 Type II readiness framework.
Explore compliance postureReliability & Continuity
Daily encrypted backups, India data residency on AWS Mumbai, multi-tenant isolation, a structured incident response protocol, and a 99.9% uptime SLA.
Jump to reliabilityReliability & Continuity
Built to stay up. Built to recover.
Security and compliance protect your data. Reliability keeps it available. Autroid runs on AWS infrastructure with daily encrypted backups, India data residency, and a structured incident response protocol.
Daily encrypted backups
Automated daily backups are encrypted and retained for point-in-time recovery — your data is recoverable, not just stored.
India data residency
All customer data is stored exclusively in the AWS Mumbai (ap-south-1) region, with no cross-border transfers without consent.
Multi-tenant isolation
Every tenant is isolated by business ID, so one organization’s data can never be reached by another.
99.9% uptime SLA
A 99.9% uptime SLA is committed on the Ultimate and Enterprise plans, backed by AWS infrastructure and continuous monitoring.
Contain within 30 minutes
On detection, affected systems are isolated within 30 minutes to limit blast radius.
Notify within 72 hours
Affected users and regulators are notified within 72 hours, as required by law.
Remediate & review
Root cause analysis, fix deployment, and a post-incident review close every incident out.
Data Governance & Rights
Your data. Your control.
Export, retention, and erasure are operational — not aspirational. The full mechanics live on our compliance and privacy pages.
Data export & portability
Request your business data in a structured, machine-readable format at any time, with a 30-day export window after cancellation.
Data rights on /complianceRetention & erasure
Request erasure of personal data, subject to legal retention such as the 7-year retention of financial records under Indian GST regulations.
Retention on /complianceHow we process your data
Read exactly what data we collect, how it is used, and the rights you can exercise under our Privacy Policy.
Read the Privacy PolicyResponsible Disclosure
Found something? Tell us.
We welcome reports from security researchers and customers. If you believe you have found a security issue in Autroid, please report it to our team so we can investigate and remediate.
- Report suspected vulnerabilities, exposures, or security concerns directly to our team.
- Include clear reproduction steps and impact so we can triage and remediate quickly.
- Please give us reasonable time to investigate and fix before any public disclosure.
Need a deeper review?
Our team can walk your security, procurement, or compliance stakeholders through our architecture and posture in detail.