Document security, built in by design.
AES-256 encryption at rest, data residency in your region, a complete tamper-evident audit trail, and backup and restore on every plan. Abscode DMS organises your documents as records and keeps them protected, so your data stays yours, designed to support your DPDP, POPIA, and GDPR obligations.
A defence-in-depth approach
Encryption at rest and in transit
Every record is encrypted at rest with AES-256 and protected in transit with TLS 1.2+. Keys and secrets are handled under strict controls.
Access control and single sign-on
Role-based access, least-privilege permissions, and single sign-on with Google or Microsoft. Approval is optional, so you turn on maker-checker only where you need it.
Complete tamper-evident audit trail
Every action on a record is logged and tamper-evident, so you can prove who created, edited, viewed, or approved each document, with tunable retention.
Backup, restore, and no lock-in
Encrypted backup and restore are included on every plan, free tier included. Export your records at any time in standard formats, so you are never locked in.
Enterprise resilience
For Enterprise, add multi-region high availability and disaster recovery with custom RTO/RPO, plus bring-your-own-storage so records live in your Google Drive, OneDrive, S3, Azure, or NAS.
Data residency in your region
Your records are hosted in your region, India, Africa, or the US, so you can meet data residency and sovereignty requirements without extra effort.
Built for compliance readiness
Abscode DMS is built to help you meet your obligations across regions. Our alignment with the major data-protection and industry frameworks is summarised below.
Sub-processors
We use a small number of vetted sub-processors under data-protection contracts (cloud hosting, email/notification delivery, and payment processing: Razorpay for India, Stripe elsewhere). A current list is available on request.
Data Processing Agreement (DPA)
A DPA, including SCCs for international transfers, is available to customers. Request it at privacy@abscode.com.
Report a vulnerability
We welcome responsible disclosure. If you believe you have found a security issue, email security@abscode.com. Please do not publicly disclose until we have responded. For confirmed personal-data breaches, we notify affected customers and authorities as required by applicable law.