Security at Neotra
Trust is part of the product. Neotra is building its production security programme around least-privilege access, protected credentials and clear incident ownership.
Application controls
Company-scoped permissions separate merchant workspaces, role-based access limits sensitive actions, and audit records support review of important business and integration activity.
Credential protection
Marketplace credentials are designed to be encrypted at rest, excluded from user-facing responses and accessible only to the services that require them. Production secrets must be managed separately from source code.
Transport and infrastructure
Production marketplace traffic will use encrypted connections. Infrastructure controls, monitoring, backup protection and network segmentation are documented and verified before live marketplace information is processed.
Incident response
Neotra maintains defined ownership for investigating, containing and communicating security incidents. Marketplace-specific reporting commitments are incorporated before the corresponding live integration is enabled.
Responsible disclosure
If you believe you have found a vulnerability, email support@neotra.co.in. Include the affected area, reproduction steps and potential impact. Do not access another user's data or disrupt the service while testing.