Hyderabad · Bengaluru · Bhubaneswar · Singapore Trust CenterCareersClient support
Trust Center · Security, privacy and assurance

How we protect your data and our products.

The security, privacy and assurance information enterprise buyers ask for, in one place, stated precisely.

Trust facts
Security contact
security@rhinexa.ai
Disclosure policy
Read the policy
Certified
ISO 9001:2015, ISO/IEC 27001:2022,
ISO/IEC 20000-1:2018
Last reviewed
21 September 2026
3Certifications: ISO 9001:2015, ISO/IEC 27001:2022, ISO/IEC 20000-1:2018
4Commitments covering access, client data, people, subcontractors
3Product principles: evidence integrity, secure development, disclosure
4Documents available on request, or under signed NDA
Assurance

Certifications and attestations.

Certification

ISO 9001:2015

Quality management system.

Scope
Design, development, sales and support services of information technology, cyber security, products and solutions.
Certificate
25EQPT28
Valid until
17 July 2028
Certification body
Assurance Quality Certification
Certification

ISO/IEC 27001:2022

Information security management system.

Scope
Design, development, sales and support services of information technology, cyber security, products and solutions.
Certificate
25EQPN23
Valid until
17 July 2028
Certification body
Assurance Quality Certification
Certification

ISO/IEC 20000-1:2018

IT service management system.

Scope
Provision of IT support services for design, development, sales and support services of information technology, cyber security, products and solutions.
Certificate
26EITRD10
Valid until
18 June 2029
Certification body
Assurance Quality Certification
Engagement security

When we work in your environment.

Access
Named individuals, least privilege, access granted and revoked through your processes.
Client data
Handled only for the engagement, in locations agreed in the contract, and returned or destroyed at close.
People
Background verification and confidentiality obligations for staff on client engagements.
Subcontractors
Used only with client agreement, under equivalent obligations.
Platform security

Rhinexa platforms.

Our platforms are deployed in the client's environment, under the client's governance.

01

Evidence integrity

Rhinexa Niyantran records decisions as signed, hash-linked, tamper-evident evidence that can be verified offline.

02

Secure development

Security is built into how we build platforms. Every change to our platforms is designed with threats in mind, peer-reviewed and tested for vulnerabilities before release. Dependencies are tracked and patched, secrets are kept out of source code, and releases are signed and traceable to a reviewed change.

03

Vulnerability handling

Reported issues are triaged, fixed and disclosed to affected clients. We acknowledge reports within two business days, triage and fix them in line with our policy, and notify affected clients of confirmed issues without undue delay.

Documents

Available on request.

Some documents are shared under a non-disclosure agreement.

Responsible disclosure

Report a vulnerability.

If you believe you have found a security vulnerability in a Rhinexa website or platform, please tell us privately so we can fix it before it is exploited.

  • Email security@rhinexa.ai with enough detail to reproduce the issue.
  • Do not access, change or delete data that is not yours, and do not degrade our services.
  • Give us reasonable time to fix the issue before any public disclosure.

We will acknowledge your report within two business days, keep you informed and credit you if you wish. A machine-readable contact is published at /.well-known/security.txt.

Products

See a Rhinexa platform in your environment.

A guided demo, then a pilot with acceptance criteria agreed up front.

Request a demo
Services

Talk to a security specialist.

Tell us what you are working on and we will put you in touch with the right practice.

Contact us