Home/Data Security Policy
Data Security Policy

Security practices for project data.

This policy outlines how we approach access, credentials, project files, backups, confidentiality and security responsibilities during digital service delivery.

AccessNeed based
FilesControlled sharing
DataProtected handling
Security FrameworkResponsible project access
Active
01
LimitAccess by role
02
ProtectCredentials and files
03
ReviewRisks and updates
AccessBackupsCredentialsConfidentiality

Shared Responsibility

Data security is a shared responsibility between Harikrishna Technologies, the client, hosting providers, software vendors, payment gateways, app stores and other third-party services. We are not responsible for security failures caused by client-side access, weak passwords, unmanaged hosting, outdated third-party tools or external providers.

Access Control

Project access is provided only to team members who need it for delivery or support. Clients should share credentials through secure methods and update access when required. Clients remain responsible for controlling their own users, staff and administrators.

Credential Handling

Credentials, API keys, hosting logins, payment gateway access and app store access should be shared carefully. We recommend changing passwords after major handovers or access changes. If credentials are shared through insecure channels by the client, the related risk remains with the client.

Confidentiality

We treat project data, business information, source code, design assets and client communication as confidential unless permission is given or disclosure is legally required.

Backups

Backup practices depend on the hosting, service plan and project agreement. Unless a written backup service is active, clients are responsible for maintaining independent backups for important business data.

Third-Party Risk

Many projects use hosting providers, APIs, plugins, payment gateways and app stores. Their own security practices and availability affect the final service environment.

Security Updates

Security updates, patching and monitoring require ongoing maintenance. Without an active support plan, clients are responsible for timely updates, monitoring, renewals and security action after handover.

Incident Limitation

To the maximum extent permitted by law, Harikrishna Technologies is not liable for data loss, unauthorized access, downtime, malware, phishing, credential misuse, third-party breaches or indirect losses unless directly caused by proven willful misconduct by us.