Back to Home

Platform Security & Responsible Disclosure Policy

Version 1.0 | Last updated: June 28, 2026

Chapter 1: Purpose

1.1. This Platform Security & Responsible Disclosure Policy (the "Security Policy") defines the rules, standards, guidelines, and reporting procedures for security research, vulnerability disclosure, and platform protection on SAKSHYAHASH.in (the "Platform").

1.2. The purpose of this policy is to encourage good-faith security reporting while preventing malicious activities that threaten platform integrity, transaction security, or database performance.

Chapter 2: Scope

2.1. This Security Policy applies to:

  • 2.1.1. The SAKSHYAHASH.in website and related domains.
  • 2.1.2. The customer dashboard and credit processing system.
  • 2.1.3. The verification registries and database endpoints.
  • 2.1.4. Payment integration gateways.

Chapter 3: Security Principles

3.1. SAKSHYAHASH.in is committed to maintaining appropriate administrative, technical, and organisational safeguards designed to protect the confidentiality, integrity, and availability of our manifests, verification logs, and User records.

3.2. These safeguards are continuously updated to address evolving technical threats. The Platform does not claim absolute system infallibility.

Chapter 4: Responsible Disclosure

4.1. We welcome responsible, good-faith reporting of suspected security vulnerabilities.

4.2. Security researchers are requested to:

  • 4.2.1. Report suspected vulnerabilities immediately.
  • 4.2.2. Provide detailed technical descriptions, step-by-step reproduction steps, and potential exploit vectors.
  • 4.2.3. Refrain from publicly disclosing the vulnerability until the Platform has had a reasonable opportunity to mitigate the issue.

Chapter 5: Authorised Security Research

5.1. SAKSHYAHASH.in permits non-disruptive, good-faith security testing under the following conditions:

  • 5.1.1. Testing must not alter or delete registry data, transaction records, or user accounts.
  • 5.1.2. Researchers must use their own test accounts and files. Accessing, modifying, or viewing data belonging to other Users is strictly prohibited.
  • 5.1.3. Testing must not cause service degradation, high-load conditions, or server timeouts.

Chapter 6: Prohibited Activities

6.1. The following activities are strictly prohibited and will be treated as security violations:

  • 6.1.1. Executing denial-of-service (DoS) or distributed denial-of-service (DDoS) testing.
  • 6.1.2. Deploying trojans, viruses, worms, malware, or ransomware.
  • 6.1.3. Using social engineering, phishing, or physical security attacks against SAKSHYAHASH.in administrators, employees, or contractors.
  • 6.1.4. Attempting data exfiltration, database dumping, or unauthorized scraping of verification registries.
  • 6.1.5. Intercepting or altering network communications.

Chapter 7: Security Review Process

7.1. All submitted vulnerability reports are evaluated by our technical operations team. Reports will be prioritized based on the severity of the potential impact. While we strive to review reports promptly, the Platform does not guarantee specific response or resolution times.

Chapter 8: Platform Response

8.1. SAKSHYAHASH.in reserves the right to:

  • 8.1.1. Validate and prioritize reported vulnerabilities.
  • 8.1.2. Reject reports that lack technical evidence or represent standard non-exploitable browser behaviors.
  • 8.1.3. Determine the appropriate mitigation strategy and timeline.
  • 8.1.4. Coordinate disclosure timelines with the reporter.

Chapter 9: No Public Disclosure Before Resolution

9.1. To protect SAKSHYAHASH.in Users, we request that security researchers do not publish, blog, or disclose details of a vulnerability to any third party until the Platform has resolved the issue.

Chapter 10: No Security Guarantees

10.1. SAKSHYAHASH.in employs reasonable security measures to defend its services. However, no database, cloud hosting engine, or internet-connected platform can be guaranteed to be completely free from vulnerabilities.

Chapter 11: Cooperation with Authorities

11.1. SAKSHYAHASH.in reserves the right to coordinate and cooperate with law enforcement and cyber-security authorities in investigating unauthorized system access, data theft, or malicious denial-of-service attacks.

Chapter 12: Reservation of Rights

12.1. SAKSHYAHASH.in reserves the right to update, modify, or retire technical security controls, access limits, and firewall rules at any time to defend its infrastructure and protect User privacy.

Chapter 13: Policy Updates

13.1. We reserve the right to revise this Security Policy at any time. Updates will be posted on this page with an updated effective date.

Chapter 14: Security Contact

14.1. Security reports, vulnerability alerts, and coordinating inquiries must be sent to:

SAKSHYAHASH.in Security Response

Email: Support@sakshyahash.in

© 2026 SAKSHYAHASH.in — All rights reserved.