Legal

Compliance

Vizkraft is committed to meeting the highest standards of data protection and regulatory compliance. Here's where we stand.

Compliance Frameworks

SOC 2 Type II

In Progress

We are actively pursuing SOC 2 Type II certification to demonstrate our commitment to security, availability, processing integrity, confidentiality, and privacy.

GDPR

In Progress

Vizkraft is fully compliant with the EU General Data Protection Regulation. We provide data processing agreements, support data subject rights, and maintain records of processing activities.

CCPA

In Progress

We comply with the California Consumer Privacy Act, providing California residents with the right to know, delete, and opt-out of the sale of their personal information.

HIPAA

Roadmap

HIPAA compliance is on our roadmap for enterprise healthcare customers. Contact us to discuss your specific requirements and timeline.

Data Processing Principles

  • Data minimization — we only collect and process data necessary to provide the Service
  • Purpose limitation — your data is used exclusively for delivering analytics and visualizations
  • Storage limitation — data is retained only as long as needed and deleted promptly upon request
  • Integrity & confidentiality — all data is encrypted in transit and at rest
  • Accountability — we maintain detailed logs of data processing activities

Sub-processors

We use a limited number of sub-processors to deliver the Service. All sub-processors are bound by data processing agreements and are regularly assessed for compliance.

ProviderPurposeLocation
AWSCloud InfrastructureUS / EU
SupabaseDatabase & AuthenticationUS
ResendTransactional EmailUS
RazorpayPayment ProcessingIndia

Questions?

For compliance inquiries or to request a Data Processing Agreement, contact us at compliance@vizkraft.com.