New

DPDP Rules 2025 compliance checklist is live —

Read now
Vaultdef DPDP Suite

One platform, under every module

Six pillars, twenty-seven modules, one platform. Everything is included — nothing to assemble.

Six privacy pillars 27 purpose-built modules
Pillar 02 Consent & Preference Management 5 modules · notice, receipts, renewals

Pillars

The Six pillars

01

Data Intelligence

Find where personal data actually lives, label it, and keep the map current by re-scanning rather than by memory.

1.Sensitive Data DiscoveryScans databases, file shares, mail and SaaS.
2.Data Classification EngineScans databases, file shares, mail and SaaS.
3.Data Mapping & Flow LineageA living map of what sits where
4.Records of Processing ActivitiesThe statutory record, kept as data.
Deep dive

Data discover overview

Databases42Sources scanned
● Active
Cloud storage18Sources scanned
● Active
Saas application32Sources scanned
● Active
File system07Sources scanned
● Active

Data classification

Personal60%
Internal20%
Sensitive10%
Total records40%

Consent Overview

Purpose
Account services
Product updates
Marketing communications
Status
Approved
Withdrawn
Withdrawn
Last updated
12 May 2024
12 May 2024
10 May 2024
Channel
Web
Mobile app
Web
02

Consent & Preference Management

Notice, consent and withdrawal handled as artefacts — versioned, receipted, and interoperable with a Board-registered Consent Manager.

1. Notice Lifecycle ManagementAuthor, version and publish notices in 23 languages.
2.Consent Capture & ReceiptsEvery consent minted as a signed receipt
3.Consent Manager InteroperabilityAccepts consent from a Board-registered Consent Manager.
4.Cookie & Tracker GovernanceScan the site, categorise trackers, serve the banner.
5. Verifiable Parental ConsentVerify a guardian before a child's data is processed.
Deep dive
03

Data Principal Rights

Intake, identity verification and fulfilment of a data principal's request, against the statutory clock and across every connected system.

1.Rights Request OrchestrationIntake, identity verification, and the clock.
2.Identity Resolution & Data LocateFind every record belonging to one person.
3.Fulfilment, Export & ErasureAssemble the package, or erase at source.
4.Grievance RedressalComplaints tracked to resolution.
Deep dive

Rights request

Request type
Access request
Correction
Delete
Portability
Request ID
REQ-2024-001224
REQ-2024-001225
REQ-2024-001226
REQ-2024-001227
Status
Completed
Inprogress
Assigned
Completed
Due date
12 May 2024
12 May 2024
10 May 2024
09 May 2024

Governance overview

Processing activities142This month
+32
Risks identified08This month
+03
DPIA completed15This month
+02
Vendors assessed27This month
+05
Risk trend
Risk trendLast 30 days
Top risks
MonitoringActive
Risk alertsLow
IncidentsNone
04

Risk, Governance & Assurance

Assessment, impact analysis, processor risk, transfer governance and retention — the obligations that are met by decision rather than by scan.

1. DPDP Readiness AssessmentScore the estate, gap by gap.
2.Data Protection Impact AssessmentScreen and assess high-risk processing.
3.Third-Party & Processor RiskA processor registry with the gaps flagged.
4.Cross-Border Transfer GovernanceKnow and evidence where data leaves India.
5.Retention & Disposal GovernanceSchedules with automated expiry detection.
6.Policy Lifecycle ManagementVersioned policies with attestation tracking.
Deep dive
05

Detection & Incident Response

Know the instant a file, permission or database structure changes, and turn security signals into a breach case with a derived affected set.

1.File & Configuration Integrity MonitoringReal-time alerts on file, permission and schema change.
2. Data Security Posture ManagementOver-exposed data, stale access, dark data.
3.Breach Detection & CorrelationSecurity signals correlated into a breach case.
4.Incident Command & Regulatory NotificationRun the incident against the statutory clock.
Deep dive

Rights request

Sensitive file shared externallyINC-2020-00856Detected 12 May 2026
Investigating
Unusual data export activityINC-2020-00856Detected 11 May 2026
identified
Possible data leaskageINC-2020-00856Detected 12 May 2026
Contained

Governance overview

12 may 202610.45 amConsent updated for marketing communication
11 may 20264.32 pmAccess request fulfilled : REQ-2026-00124
10 may 202611.20 amDPIA completed for payroll system
09 may 202610.45 amVendor assessment completed : Payment gateway
06

Evidence & Accountability

The record that makes the rest defensible: an append-only hash-chained ledger, a vault, and electronic records issued with a certificate.

1.Tamper-Evident Audit LedgerAppend-only and hash-chained.
2.Evidence VaultArtefacts retained with the hashes that prove them.
3.Court-Admissible EvidenceRecords issued with the certificate a court requires.
4.Executive & Board ReportingPosture a board can read and an auditor can drill into.
Deep dive