Datyra
Security
Learn how Datyra Technologies Pvt Ltd protects Datyra and customer data through technical and organizational security measures.
- Effective date
- Effective: May 19, 2026
- Last updated
- Last updated: May 19, 2026
Security overview
Datyra Technologies Pvt Ltd operates Datyra as a secure, multi-tenant SaaS platform for customer engagement across Email, SMS, WhatsApp, AI automation, analytics, segmentation, templates, campaigns, notifications, and provider integrations. We design our systems with defense in depth, least-privilege access, and continuous monitoring.
Multi-tenant architecture
Customer workspaces are logically separated within our platform. Administrative and API access is scoped to authorized organizations and roles to reduce cross-tenant exposure.
Authentication and access
- Secure authentication and session protection for user accounts
- Support for two-factor authentication where enabled
- Role-based access controls for workspace administration
- Session timeout and revocation capabilities
Audit and activity logs
We maintain audit and activity logs for important administrative and security-relevant actions to support accountability, troubleshooting, and incident response.
Provider credentials
Integration credentials for Email, SMS, WhatsApp, and other providers are stored and accessed using secure practices designed to limit exposure to authorized services and personnel.
Encryption
- Encryption in transit (TLS) for data transmitted over networks
- Encryption at rest for applicable stored data and backups
Cloud infrastructure
Datyra runs on reputable cloud infrastructure with network security controls, patching processes, and monitoring designed to protect availability and confidentiality.
Message processing
Outbound and inbound message flows use queue-based processing with retry controls and failure handling to improve reliability and reduce duplicate or unsafe delivery behavior.
Webhooks
Incoming webhooks from providers are validated using signature verification and related controls where supported, to help prevent unauthorized or tampered payloads.
Abuse monitoring
We employ abuse monitoring, rate limiting, and suppression controls to detect spam, policy violations, and suspicious activity across channels.
Channel safety
Email, WhatsApp, and SMS workflows incorporate provider policy checks, template approval flows where required, and operational controls aligned with industry best practices for business messaging.
Billing security
Payment and billing data is processed through established payment providers. Sensitive card data is not stored on Datyra servers beyond what payment processors return for reconciliation.
Responsible disclosure
If you believe you have discovered a security vulnerability, please report it responsibly to security@datyra.io. If that address is unavailable, contact privacy@datyra.io.
Please include a description of the issue, steps to reproduce, and impact assessment. We will acknowledge good-faith reports and work to investigate promptly.

