Security Policy
We take the security of our website, our data, and our customers' information seriously. This page describes our security practices and how you can responsibly report concerns.
Last updated: August 20251 HTTPS & Encryption
All pages on shrisaiengineering.com are served exclusively over HTTPS, using TLS encryption. This ensures that data transmitted between your browser and our server is encrypted and protected from interception.
2 Data Protection
Personal information you share with us—through our contact form, email, or WhatsApp—is stored securely and accessed only by authorised personnel. We do not store credit or debit card numbers on our systems. Payment arrangements are agreed verbally or via bank transfer.
We use third-party services (EmailJS, Google Analytics) that are contractually required to apply their own appropriate security standards.
3 Access Controls
Our website and internal systems use access controls to limit who can view, edit, or delete sensitive information. Accounts are protected with strong credentials. We review permissions periodically and revoke access that is no longer required.
4 Hosting & Infrastructure
Our website is hosted on reputable infrastructure providers that maintain physical and logical security controls including firewalls, DDoS protection, and regular security updates. We keep our website software up to date to minimise the risk from known vulnerabilities.
5 Form & Input Security
All customer-facing forms include server-side validation and are protected against common web vulnerabilities including cross-site scripting (XSS) and injection attacks. Contact form submissions are processed via EmailJS using authenticated API keys.
6 Incident Response
In the event of a security incident that affects customer data, we will:
- Investigate and contain the incident promptly
- Notify affected individuals as required by applicable law
- Take corrective action to prevent recurrence
- Review and update our security practices as appropriate
7 Responsible Disclosure
If you discover a security vulnerability on our website, we ask that you report it to us responsibly. Please do not publicly disclose the vulnerability until we have had reasonable time to investigate and address it.
When reporting, please include: a description of the vulnerability, steps to reproduce it, potential impact, and any proof-of-concept if applicable. We will acknowledge receipt within 3 business days and aim to resolve valid issues within 30 days.
8 Safe Use Guidelines for Visitors
To stay safe while using our website and communicating with us:
- Only interact with our official domain: shrisaiengineering.com
- Verify email senders: our official email is akshayjadhav4800@gmail.com
- Verify phone/WhatsApp: our official numbers are +91 98905 41958 and +91 91393 80816
- Do not share sensitive financial information (bank OTPs, PIN codes) with anyone claiming to represent us
- If something looks suspicious, contact us directly to verify
9 Changes to This Policy
We may update this Security page as our practices evolve. The "Last updated" date above reflects the most recent revision.
10 Contact
For security enquiries or to report a concern:
- Email: akshayjadhav4800@gmail.com
- Phone: +91 98905 41958