Trust centre

Compliance Centre

QSentia's public policy set for privacy, security, consent, platform conduct, billing, and digital service delivery.

Programme status

Controls, evidence, and remaining work

AreaStatusPosition
Cookie consentImplementedNecessary-by-default consent manager with optional categories off until chosen.
DPDP readinessBaseline establishedNotice, rights, grievance, retention, processor, child-data, and breach controls documented.
ISO control mappingDesign referenceISO/IEC 27001 and related standards guide controls; QSentia does not claim certification.
OAuth and sessionsImplementedSupabase authentication, protected routes, session visibility, and provider-based sign-in.
Production legal reviewRequiredEntity details, vendor contracts, launch jurisdictions, and final operating procedures require counsel review.

Policy publication and framework alignment do not replace implementation evidence, legal advice, regulatory registration, or independent certification. QSentia will publish certification scope and auditor details only after a successful accredited audit.