Security at LanceIQ
We take the security of your ONDC data seriously. Our infrastructure is designed to provide secure, scalable, and reliable services.
Data Protection
- ✓In Transit: The system is designed to use HTTPS to protect data between your browser and our servers.
- ✓At Rest: Stored evidence records and ONDC message history are hosted in Supabase and protected by provider security controls.
- ✓Secrets: Verification material is designed to be processed transiently and not stored in raw form. Only derived hints plus verification results are saved.
Access and Integrity
- ✓Account Scoping: Saved evidence records are designed to be tied to your account and protected by database access controls.
- ✓Integrity Proof: Each evidence record is designed to store hashes and verification metadata.
Infrastructure
We run on established infrastructure providers and are designed to follow a least-privilege approach for data access.
Cloud Providers
We use Vercel and Supabase for hosting and database services, and design for operational resilience.
Data Processing
We act as a Data Processor. See our DPA for more details.
Questions? Contact security@lanceiq.com
