KlerkOne Logo
  • Home
  • Features
  • About
  • Pricing
  • Downloads
Login Register Free
HomeFeaturesAbout PricingDownloads
Login Register Free
verified_user Privacy & Data Security

Privacy Policy

How KlerkOne protects confidential practice information, taxpayer records, audit trails, and banking details with zero-knowledge cryptography.

Last Updated: August 2026 · Compliant with DPDP Act 2023 & ICAI Confidentiality Norms
Privacy Sections
  • 1. Our Core Promise
  • 2. Data We Collect
  • 3. Zero-Knowledge Cryptography
  • 4. Data Residency (India Only)
  • 5. Third-Party Integrations
  • 6. DPDP Act Compliance
  • 7. Data Retention & Wipe
  • 8. DPO Contact

shield 1. Our Core Privacy Promise to CA & Tax Professionals

At KlerkOne, we recognize that Chartered Accountants, Tax Advocates, and Financial Practitioners handle India's most confidential corporate ledgers, personal income returns, and audit documentation.

Zero Data Monetization: We do NOT sell, rent, license, or disclose your client data to third parties, advertisers, or AI training pipelines. Your data belongs solely to your practice.
lock AES-256 GCM Encryption
All client documents are encrypted locally on your Windows PC before cloud transmission.
dns Mumbai Node (ap-south-1)
100% data residency within the Republic of India strictly adhering to RBI & MeitY norms.

folder_shared 2. Categories of Information We Collect

To provide practice synchronization, desktop licensing, and invoice generation, KlerkOne collects:

A. Practice Master & Administrator Information

  • Firm / Practice Legal Name, Initials, and ICAI FRN / Tax Practitioner Enrollment Number.
  • Official Head Office Address, City, State, and PIN Code.
  • Authorized Administrator Email Address and Contact Phone Number.
  • Collection Bank Details (Account Holder Name, Bank Name, Account Number, IFSC Code, UPI VPA) used strictly for populating client fee invoices.
  • Principal CA / Signatory Name and ICAI Membership Number (MRN).

B. Staff Desk Information

  • Staff Member Full Name, Office Role (Maker, Checker, Manager), and System Privileges.
  • Hardware-bound System Identification Hash (for device lock security).

C. Compliance Tasks & Workflow Metadata

  • Task labels, compliance categories (GST, TDS, ITR, ROC), due dates, and completion timestamps.
  • Immutable maker-checker audit sign-off logs.

key 3. Zero-Knowledge Cryptography & File Vault

When you enable client-side zero-knowledge document encryption in KlerkOne:

  • Your documents are scrambled using a 256-bit cryptographic key derived on your local device.
  • The encrypted payload is uploaded to your central Google Drive or secure cloud vault.
  • Neither KlerkOne engineers nor database operators possess the keys required to decrypt your client files.

location_on 4. Sovereign Data Residency — 100% Within India

Under ICAI regulations, Reserve Bank of India (RBI) circulars, and the Digital Personal Data Protection (DPDP) Act 2023, sensitive financial data must reside locally.

All KlerkOne production databases, realtime WebSocket channels, and backup vaults are located in tier-4 ISO 27001 certified datacenters in Mumbai, India (AWS ap-south-1).

integration_instructions 5. Third-Party Integrations & Portals

KlerkOne integrates with specific APIs solely for compliance verification:

  • GST Verification API (Jamku / RapidAPI): Checks filing status of GSTR-1 and GSTR-3B using public GSTIN returns records.
  • Google Drive API: Links directly to your firm's own Google Workspace account for private document storage.

KlerkOne never transmits master credentials or client financial statements to third-party marketing services.

policy 6. Compliance with India's DPDP Act 2023

Under the Digital Personal Data Protection Act, 2023 (DPDP Act):

  • Right to Access & Export: You can export full client databases and task histories in Excel/CSV at any time.
  • Right to Correction: You can edit and update firm master records instantly from the web admin portal.
  • Right to Erasure: Upon written request, all associated database records and encrypted backups are permanently deleted within 14 business days.

delete_forever 7. Data Retention & Complete Account Wipe

We retain your practice database records for as long as your workspace remains active. If your account is inactive for more than 12 months, we issue multiple notification emails prior to decommissioning the cloud node.

mail 8. Data Protection & Privacy Contact

For any privacy inquiries, data subject requests, or security questions, please reach out to our privacy desk:

Klerkone Systems
Email: support@klerkone.com
All data protection inquiries and compliance requests are handled directly via support@klerkone.com.

KlerkOne

The all-in-one practice management OS engineered for Indian CA firms, Tax Practitioners, and corporate advisors. Automate, collaborate, and scale with confidence.

© 2026 Klerkone Systems. All rights reserved.

Product
  • Features
  • Pricing
  • Downloads
  • Free Registration
Company
  • Our Story
  • Security
  • Contact Us
Legal
  • Terms of Service
  • Privacy Policy
  • Cookie Policy
  • ISO 27001 Certificate
© 2026 Klerkone Systems Made with ♥ for CA & Tax Professionals across India