Security Policy
CrediBoost Solutions Pvt. Ltd.
Website: crediboost.in
Email: crediboostsolutions@gmail.com
Address: Lakhimpur, Assam – 784160
1. Overview
At CrediBoost Solutions Pvt. Ltd., we are committed to safeguarding your personal, financial, and confidential information. This Security Policy outlines how we protect user data across our platforms — including our website, mobile app (Lovable), and associated services.
2. Data Security Practices
- All user data is stored on secure, encrypted servers with industry-standard protection (SSL/TLS).
- We use firewalls, intrusion detection systems (IDS), and endpoint security to prevent unauthorized access or data breaches.
- Multi-factor authentication (MFA) is implemented where applicable to enhance user account security.
- Access to customer data is limited to authorized personnel only, based on the principle of least privilege.
3. Payment & Financial Data Security
- All payment transactions are processed via PCI-DSS compliant payment gateways.
- CrediBoost does not store card details or sensitive financial information directly on our servers.
- Bank account or PAN/Aadhaar details (where required for credit, tax, or loan services) are encrypted and only shared with verified third-party partners upon user consent.
4. Use of APIs (e.g., CRIF Highmark)
- API connections to bureaus or service providers are secured using API key encryption and authentication tokens.
- All requests and responses are logged and monitored for anomalies or abuse.
- We follow the guidelines laid down by regulatory authorities (RBI, UIDAI, etc.) for use of credit and financial data.
5. User Responsibilities
- Users must ensure their login credentials are kept confidential.
- CrediBoost is not responsible for unauthorized account access due to weak passwords or credential sharing.
- Users are advised to log out after each session and avoid accessing sensitive data over public Wi-Fi.
6. Incident Response
- In the event of a security breach, we will:
- Investigate and contain the issue immediately
- Notify affected users and authorities, if required by law
- Take remedial actions and enhance security measures to prevent recurrence
 
7. Third-Party Security
- Third-party tools or partners used for analytics, credit scoring, or customer support undergo due diligence for their own data protection standards.
- We are not responsible for data breaches that occur due to the negligence of such third parties beyond our control.
8. Updates to This Policy
CrediBoost Solutions Pvt. Ltd. may revise this Security Policy periodically. Changes will be posted on our website/app with updated effective dates.Security Policy
CrediBoost Solutions Pvt. Ltd.
Website: crediboost.in
Email: crediboostsolutions@gmail.com
Address: Lakhimpur, Assam – 784160
1. Overview
At CrediBoost Solutions Pvt. Ltd., we are committed to safeguarding your personal, financial, and confidential information. This Security Policy outlines how we protect user data across our platforms — including our website, mobile app (Lovable), and associated services.
2. Data Security Practices
- All user data is stored on secure, encrypted servers with industry-standard protection (SSL/TLS).
- We use firewalls, intrusion detection systems (IDS), and endpoint security to prevent unauthorized access or data breaches.
- Multi-factor authentication (MFA) is implemented where applicable to enhance user account security.
- Access to customer data is limited to authorized personnel only, based on the principle of least privilege.
3. Payment & Financial Data Security
- All payment transactions are processed via PCI-DSS compliant payment gateways.
- CrediBoost does not store card details or sensitive financial information directly on our servers.
- Bank account or PAN/Aadhaar details (where required for credit, tax, or loan services) are encrypted and only shared with verified third-party partners upon user consent.
4. Use of APIs (e.g., CRIF Highmark)
- API connections to bureaus or service providers are secured using API key encryption and authentication tokens.
- All requests and responses are logged and monitored for anomalies or abuse.
- We follow the guidelines laid down by regulatory authorities (RBI, UIDAI, etc.) for use of credit and financial data.
5. User Responsibilities
- Users must ensure their login credentials are kept confidential.
- CrediBoost is not responsible for unauthorized account access due to weak passwords or credential sharing.
- Users are advised to log out after each session and avoid accessing sensitive data over public Wi-Fi.
6. Incident Response
- In the event of a security breach, we will:
- Investigate and contain the issue immediately
- Notify affected users and authorities, if required by law
- Take remedial actions and enhance security measures to prevent recurrence
 
7. Third-Party Security
- Third-party tools or partners used for analytics, credit scoring, or customer support undergo due diligence for their own data protection standards.
- We are not responsible for data breaches that occur due to the negligence of such third parties beyond our control.
8. Updates to This Policy
CrediBoost Solutions Pvt. Ltd. may revise this Security Policy periodically. Changes will be posted on our website/app with updated effective dates.
