TRUST AND SAFETY
Security Policy
How MYDGID protects accounts, passwords, payments, public profiles, uploads and platform data with secure access controls.
1. Data Protection
- MYDGID uses HTTPS/TLS for data in transit.
- Passwords are stored using secure hashing.
- Payment credentials are processed by Razorpay and are not stored by MYDGID.
- User content and uploads are protected through access controls and server-side checks.
2. Account Security
- Email OTP verification is used for account and recovery flows where applicable.
- Login sessions are protected with server-side session controls.
- Users should use a strong password and keep account access private.
- Suspicious or abusive activity may be blocked, rate-limited or investigated.
3. Infrastructure Controls
- Server-side input validation and sanitisation are used across core flows.
- Database operations use prepared statements where platform data is handled.
- Uploaded files are handled with restrictions designed to reduce execution risk.
- Platform errors and abuse signals may be logged for operational security.
4. Payment Security
MYDGID paid subscriptions use Razorpay checkout and verification. Razorpay handles payment method security and MYDGID uses payment references to update plan status.
5. Responsible Disclosure
If you discover a security issue, email support@mydgid.com with the subject "Security Vulnerability Report". Please include the affected URL, reproduction steps and impact. We appreciate good-faith reports and will review them responsibly.
Need help with this policy?
Contact MYDGID support for account, billing, privacy, or security questions.
Contact Support