Ashutosh Singh
ashutosh@nexweave.com
PLOT-111, SHRE E PUNJAB CHS LTD, MAHAKALI CAVES ROAD, NR DOMNIC SAVIO MUMBAI Mumbai City MH 400093 IN
As part of our ongoing efforts to protect the security and privacy of our users, we are working to meet or exceed the GDPR (General Data Protection Regulation). This site contains information on what steps we are taking, their progress, and who to contact for any security concerns. Please see our FAQ for more information.
We rely on a number of trusted 3rd parties to assist with our operations. Depending on the exact nature of your account and what you've requested we do, your data may be shared with one of these partners. We carefully evaluate each to make sure they're handling your personal data with the utmost of respect, security, and privacy.
Services | ||||
---|---|---|---|---|
Partner | Locale | Data Shared | Purpose | |
![]() |
Alipay | ![]() |
IP Address | China's leading third party payment system. |
Amazon | ![]() |
IP Address | This site is hosted on Amazon AWS EC2 Infrastructure. |
|
Amazon Elastic Beanstalk | ![]() |
IP Address | AWS Elastic Beanstalk is a service for deploying and scaling web applications and services. |
|
![]() |
Amplitude | ![]() |
IP Address | Mobile analytics platform. |
![]() |
Cloudflare | ![]() |
IP Address | Automatically optimizes the delivery of your web pages so your visitors get the fastest page load times and best performance. |
![]() |
Cloudflare Hosting | ![]() |
IP Address | Supercharged web hosting service. |
![]() |
Continually | ![]() |
IP Address | Automated chat tool system. |
![]() |
crypto browserify | ![]() |
IP Address | A port of node's crypto module to the browser. |
![]() |
Customer.io | ![]() |
IP Address | Email people automatically based on what they do (or don't do) in your app. |
DoubleClick.Net | ![]() |
IP Address | DoubleClick enables agencies, marketers and publishers to work together successfully and profit from their digital marketing investments. |
|
![]() |
Elliptic | ![]() |
IP Address | Fast Elliptic Curve Cryptography in plain javascript. |
Facebook Custom Audiences | ![]() |
IP Address | Custom Audiences from your website makes it possible to reach people who visit your website and deliver the right message to them on Facebook. |
|
Facebook for Websites | ![]() |
IP Address | Allows a user to make a website more sociable and connected with integrations from the hugely popular Facebook website. |
|
Facebook Pixel | ![]() |
IP Address | Facebook Pixel is Facebooks conversion tracking system for ads on Facebook to websites. |
|
Facebook SDK | ![]() |
IP Address | JavaScript SDK enables you to access all of the features of the Graph API via JavaScript, and it provides a rich set of client-side functionality for authentication and sharing. It differs from Facebook Connect. |
|
Facebook Signal | ![]() |
IP Address | Journalists use Signal to surface relevant trends, photos, videos and posts from Facebook and Instagram for use in their storytelling and reporting. |
|
![]() |
Global Site Tag | ![]() |
IP Address | Google's primary tag for Google Measurement/Conversion Tracking, Adwords and DoubleClick. |
Google Analytics | ![]() |
IP Address | Google Analytics offers a host of compelling features and benefits for everyone from senior executives and advertising and marketing professionals to site owners and content developers. |
|
Google Apps for Business | ![]() |
IP Address | Web-based email, calendar, and documents for teams. Renamed to Google Apps for Work, but now known as G Suite From Google Cloud. |
|
Google Font API | ![]() |
IP Address | The Google Font API helps you add web fonts to any web page. |
|
Google Hosted Libraries | ![]() |
IP Address | Google Hosted Libraries is a globally available content distribution network for the most popular, open-source JavaScript libraries. |
|
Google Universal Analytics | ![]() |
IP Address | The analytics.js JavaScript snippet is a new way to measure how users interact with your website. It is similar to the previous Google tracking code, ga.js, but offers more flexibility for developers to customize their implementations. |
|
![]() |
GSAP | ![]() |
IP Address | GSAP is a suite of tools for scripted, high-performance HTML5 animations that work in all major browsers from GreenSock. |
GStatic Google Static Content | ![]() |
IP Address | Google has off-loaded static content (Javascript/Images/CSS) to a different domain name in an effort to reduce bandwidth usage and increase network performance for the end user. |
|
![]() |
Hotjar | ![]() |
IP Address | A heatmap, survey, feedback and funnel application. |
Hubspot | ![]() |
IP Address | Hubspot provides marketing information and leads via inbounding marketing software. |
|
Hubspot Forms | ![]() |
IP Address | Marketing automation form feedback into Hubspot tool. |
|
![]() |
Intercom | ![]() |
IP Address | Intercom is a customer relationship management and messaging tool for web app owners |
![]() |
Marketizator | ![]() |
IP Address | Surveys, interactions and A/B testing software. |
![]() |
mod_pagespeed | ![]() |
IP Address | mod_pagespeed is an open-source Apache module that automatically optimizes web pages and resources on them. |
![]() |
OmniConvert | ![]() |
IP Address | Conversion rate optimization specialist. |
![]() |
React-Intl | ![]() |
IP Address | Library provides React components and an API to format dates, numbers, and string messages, including pluralization - by Yahoo. |
![]() |
Robots Disallow | ![]() |
IP Address | A robots disallow all directive with no other options. |
![]() |
Segment | ![]() |
IP Address | Segment gives you the ability to instrument your web app for analytics once, and then send your data to any number of analytics services. Previously known as Segment.io |
![]() |
Snap.svg | ![]() |
IP Address | JavaScript SVG library for the modern web. |
![]() |
Ubuntu | ![]() |
IP Address | Ubuntu is a free, Debian derived Linux-based operating system, available with both community and professional support. |
![]() |
Zencoder CDN | ![]() |
IP Address | This page has content hosted on the Zencoder CDN, owned by Brightcove. |
GDPR Compliance requires maintenance and ongoing work. We are tracking our efforts here.
Application Site Security | |
---|---|
Status | Name |
Completed | Inform Users about the GDPR Page |
Completed | Redact Logs from Writing Unneeded Personal or Sensitive Data |
Completed | Ensure Intrusion Detection Systems are in Place |
Completed | Ensure Web Application Firewall enabled and blocking common attacks |
Completed | Ensure Access to Backups is Restricted |
Completed | Ensure Backups are Stored in on Encrypted File Storage |
Completed | Ensure Database Backups of Personal Data are working |
Completed | Personal Data in Databases is Encrypted |
Completed | Added External Javascript Files to Data Partners |
Completed | HSTS (HTTP Strict Transport Security) added to SSL/TLS of App Site |
Completed | Restrict Personal Data at Signup to the Minimum Necessary |
Completed | SSL (TLS) Deployed on App Site |
Data Mapping | |
---|---|
Status | Name |
Completed | Add Web Analytics Service to Data Partners |
Completed | Add Customer Support (Helpdesk) Service to Partners |
Completed | Add Internal Email Service to Data Partners |
Completed | Add Exception/Error Reporting Services to Data Partners |
Completed | Add Hosting Provider to Data Partners |
Completed | Add Social Embeds to Data Partners |
Completed | Add Third Party Web Font Services to Data Partners |
Completed | Add Transactional Email Service to Partners |
Completed | Add Email Newsletter Service to Partners |
Completed | Add CDN Provider to Data Partners |
Completed | Add File Collaboration Service to Data Partners |
Completed | Add Database Provider to Data Partner |
Marketing Site Security | |
---|---|
Status | Name |
Completed | Reviewed list of users with access to site |
Completed | SSL (TLS) Deployed on Marketing Site |
Completed | HSTS (HTTP Strict Transport Security) added to SSL/TLS of Marketing Site |
Privacy Procedures | |
---|---|
Status | Name |
Completed | Notify Customers and Users |
Completed | Informed all Employees and Contractors about GDPR Compliance |
Completed | Procedure established to allow for people to request that inaccuracies in their data are fixed. |
Completed | Process established for subject data requests |
Completed | Get Management Approval for GDPR Efforts |
Completed | Nominate a Data Protection Lead or Data Protection |
Security Procedures | |
---|---|
Status | Name |
Completed | Notify Customers and Users |
Completed | Publish statement on public website on how to report security and data issues. |
If you have any concerns not answered here, please reach out to our contact (listed above) and we'll be happy to assist.
The General Data Protection Regulation (GDPR) is a new piece of privacy legislation enacted by the European Union. It represents a significant change in how personal (IP Addresses, Emails, Names) and sensitive (religion, ethnic origin, health, orientation) data is handled by companies.
We take all security reports seriously. Please email our security contact (information listed above) with any information you have regarding any potential data breaches, vulnerabilities or concerns.
While it remains to be seen if the EU has the legislative power to levy fines and enforcement against organizations around the globe, GDPR compliance is being sought by non EU companies for a variety of reasons.