Account creation happens on karyayogi.in and is stored on the Karyayogi server hosted in India.
Task, note, assignment, tag, calendar and activity data is treated as user-controlled work data.
Access is role-based. CMS access is restricted to administrator accounts.
The API is token-based and every mobile/web client should use HTTPS-only communication.
Data export, PDF generation and WhatsApp forwarding are designed to keep an audit trail.
The production roadmap includes consent tracking, retention controls, export logs and deletion/rectification workflows aligned to DPDP obligations.