Trust
Security at Vidyut Data
Last updated:July 2026
Clients trust us with data that is often sensitive, regulated, or commercially critical. Security is engineered into how we operate — from workforce controls to infrastructure — not added afterwards.
Data access controls
Access to client data is role-based and limited to the assigned project team. Every annotator signs confidentiality agreements, completes security training, and works within permission-scoped tooling. Access is revoked immediately at project end or role change.
Encryption & infrastructure
Client data is encrypted in transit (TLS) and at rest. Project environments are logically separated per client, with audit logging of data access and annotation activity. We support client-hosted and VPN-restricted workflows where data cannot leave your environment.
Secure facilities & workforce
For high-sensitivity projects we operate controlled delivery environments: managed devices, restricted networks, no personal devices in work areas, and clean-desk policies. Our workforce is composed of managed employees — not anonymous crowds — which makes accountability enforceable.
Compliance alignment
Our processes are designed to align with GDPR, CCPA, HIPAA (for medical data workflows), and the control objectives of SOC 2 and ISO 27001. Compliance requirements are scoped per engagement and documented in the data processing addendum.
Data lifecycle
We define retention and deletion terms per engagement, including certified data destruction at project close. Clients can request deletion confirmation and audit summaries at any time.
Reporting a concern
If you believe you have found a security vulnerability related to our website or services, please contact us through our contact page. We investigate all reports promptly.
Questions about this page? Reach out via our contact page and we'll get back to you within one business day.