Security Policy
Effective Date: July 1, 2026 | Last Updated: July 13, 2026
1. Our Commitment to Security
At BriefVault (developed and owned by Brightwave Digital Products LLP), security is foundational to everything we build. Legal teams rely on BriefVault to process confidential contracts, briefs, and filings. We maintain rigorous technical and operational controls to safeguard your data.
2. Architecture & Data Encryption
- Encryption in Transit: All HTTP traffic and API communications are encrypted using Transport Layer Security (TLS).
- Password Security: Account passwords are hashed (bcrypt) and never stored or transmitted in plain text.
- Account-Level Isolation: Access controls ensure your documents and workspace data are scoped to your account and not visible to other users.
3. Payment Gateway Security Compliance
All checkout transactions are handled directly by PCI-DSS Level 1 compliant payment gateways (Razorpay / Stripe). BriefVault never stores, processes, or transmits raw credit card numbers or banking PINs on its own application servers.
4. Vulnerability Reporting
If you believe you have discovered a potential security vulnerability or issue in BriefVault, please report it to our security desk at contact.briefvault@gmail.com. We respond to security disclosures within 24 business hours.
5. Security Support Desk
Entity: Brightwave Digital Products LLP (BriefVault)
Email: contact.briefvault@gmail.com
Phone: +91 9168 08 1355
Address: Pune, Maharashtra, India
Important Disclaimer
The content on www.briefvault.in is for informational purposes only and does not constitute legal advice. Always consult a qualified legal professional for advice specific to your situation.