Last updated: 31 August 2026
How ITRSimple protects your data, in plain language. This covers the ITRSimple cloud application (app.itrsimple.com); the desktop application keeps your data on your own machine and its security depends largely on your computer's own protections.
Where your data lives
- The cloud application and its database are hosted on DigitalOcean infrastructure in India (Bangalore region).
- Each company's data is scoped to that company. Staff users see only the clients they are assigned.
Encryption
- In transit: all traffic between your browser and our servers, and between our servers and the database, uses TLS.
- At rest: the managed database and its backups are encrypted at rest by the hosting provider.
- Credentials: account passwords and recovery PINs are never stored in readable form - only as salted one-way hashes.
Access control
- Access to your workspace requires your login; sessions use short-lived signed tokens.
- The application connects to the database with a bounded, least-privilege connection pool.
- Administrative endpoints used by our own control-plane are protected by a separate secret and are not reachable with a normal user login.
- Access to production systems by our staff is limited to what is needed to operate and support the Services.
Uploaded documents
Form 16, Form 26AS, AIS, TIS, and bank-statement files you upload are parsed on a background worker, the figures are written into your workspace, and the source file is then deleted. We do not keep uploaded documents.
AI-assisted classification
Off by default. When on, only a limited set of data is sent to our AI sub-processor to suggest categories - transaction amounts and source documents are never sent. Full detail is in the Privacy Policy. You can turn it off any time in Settings.
Activity logging
The application records data-rights-relevant events - data exports, account and client deletions, consent changes, and toggling AI on or off - with who, what, and when. You can view your own log in Settings → Your Data & Privacy. Logs are retained for 3 years.
Retention and deletion
- You can export your entire workspace at any time (JSON + Excel).
- Deleting a client or your account starts a 30-day recovery window, after which all associated data is permanently deleted, including from routine backups within about a further 7 days.
- Background jobs enforce these limits automatically.
Data-breach response
We maintain an internal breach-response plan. If a personal-data breach affects your data, we will notify you without undue delay with the information you need, and - where we act as your Data Processor - assist you in meeting your own notification obligations. We will also notify the Data Protection Board of India where required.
Reporting a vulnerability
If you believe you have found a security issue, please email raj@itrsimple.com with details. Please do not publicly disclose it before we have had a reasonable chance to investigate and fix it.
What you can do
- Use a strong, unique password and keep your recovery PIN private.
- Give staff users only the access they need.
- Export and keep your own copies of computations and returns you may need for statutory record-keeping - data is not recoverable after permanent deletion.