Back to Home

Security & Compliance

Enterprise procurement involves sensitive pricing, proprietary technical drawings, and statutory records. Here is how MyProc360 guarantees data integrity.

End-to-End Encryption

All customer data is encrypted in transit with TLS 1.3 and at rest with AES-256 standards. Direct messages, drawings, and quotations are protected with private cryptographic keys.

Strict KYC & Entity Verification

Every supplier and buyer account undergoes rigorous verification against statutory tax registers (GSTIN & PAN) to eliminate fake RFQs and commercial impersonation.

Isolated Multi-Tenant Architecture

Enterprise procurement data is logically separated with role-based access control (RBAC). Sensitive corporate pricing and BOMs are never accessible to unauthorized parties.

Secure Session & Token Auth

Sessions use secure, HttpOnly, SameSite cookie tokens and OTP multi-factor verification to prevent session hijacking and brute force attempts.

1. Infrastructure & Reliability

MyProc360 is hosted across ISO 27001, SOC 2 Type II certified cloud infrastructure located in India with automated failover, redundant database clusters, and daily encrypted off-site backups.

2. Document & Drawing Privacy

Engineering drawings, CAD files, and technical specifications uploaded with requirements are served via time-limited, signed URLs. Only matched and authorized suppliers can access project media.

3. Vulnerability Reporting

If you discover a vulnerability or security flaw, please report it immediately to our security response team at myproc360@gmail.com.