§Clauseium
Security

Security & data protection, built for Indian counsel.

You're handing us your most sensitive contracts. Here is exactly how we protect them — and what we will and won't do with your data. We'd rather under-claim and show our work.

Live today

What protects your contracts right now

Zero data retention with LLM providers

We use Anthropic's zero-data-retention endpoint. Your contract text is never stored by the model provider and never used to train foundation models.

DPDP-aligned retention

Contract text is auto-deleted after 30 days unless you explicitly opt in via a separable consent toggle. You can request earlier deletion at any time.

Data residency in AWS Mumbai

Storage and processing stay in the ap-south-1 region. Your data does not leave India.

Encryption in transit and at rest

TLS 1.2+ in transit and AES-256 at rest across storage and backups.

Tenant isolation

Every query is tenant-scoped with row-level security plus explicit owner checks — defence in depth, not RLS alone.

Complete audit trail

Every upload, clause action, redline, and export is logged so you can reconstruct exactly what happened and when.

The DPDP wedge

Global tools weren't built for India's Digital Personal Data Protection Act, 2023. Clauseium treats DPDP as a first-class constraint: separable consent for retention, data residency in India, zero retention with model providers, and a deletion path you control — so your use of AI on third-party contract data stays defensible.

Certifications in progress

We'll show the certificate, not just the badge

We're a private-beta company and we won't display a compliance badge we haven't earned. Here's our honest status:

SOC 2 Type IIAudit in progressISO 27001Implementation underwayISO 42001 (AI management)Implementation underway

Need a security review, DPA, or a copy of our sub-processor list? We'll walk your team through it.

Start free trial