DPDPA 2023 + GDPR Article 22 Ready

Global Compliance

Enterprise-grade compliance across 7 jurisdictions. Zero automated decisions. 100% audit ready.

01

Global Compliance Framework

QuickRuit acts as a Data Processor for 7+ global jurisdictions. Enterprise-grade compliance is built-in from day one — not bolted on.

Privacy by Design

  • Data Protection Impact Assessments (DPIA) conducted for every AI feature
  • Standard Contractual Clauses (SCC) for all cross-border data transfers
  • Dedicated DPO with 24-hour response SLA for all requests
  • Weekly compliance dashboard available for all enterprise clients

Multi-Jurisdiction Coverage

EU → GDPR | India → DPDPA | US → CCPA | UK → UK-GDPR | Singapore → PDPA
02

GDPR Article 22 Compliant

100% Human-in-the-Loop. No solely automated decisions — every hiring outcome requires human review and approval.

Data Subject Rights (DSR)

  • Article 15: Right to Access — full profile + AI reasoning scores on request
  • Article 17: Right to Erasure — complete data deletion within 30 days
  • Article 20: Data Portability — export your data in JSON or CSV format
  • Article 21: Right to Object — one-click opt-out from AI processing

Processor Role Clearly Defined

QuickRuit = GDPR Data Processor. Employer = Data Controller. DPA auto-signed on employer signup.
03

DPDPA 2023 Certified

India's landmark data protection law. QuickRuit is among the first AI hiring platforms to achieve full DPDPA compliance.

India-First Compliance

  • Explicit, informed consent collected before every video interview session
  • Grievance Officer: [email protected] — 24-hour response SLA guaranteed
  • Primary data residency in Mumbai (ap-south-1) with failover to Hyderabad
  • Vernacular consent available in Hindi and 9 regional Indian languages
04

Zero Automated Decisions

AI recommends. Humans decide. Fully compliant with GDPR Article 22 and DPDPA ADMT provisions.

Guaranteed Human Oversight

  • No candidate auto-rejection based on AI scores — 100% manual review required
  • Candidates can contest AI scores with a guaranteed human review within 48 hours
  • Multiplayer approval workflows require sign-off from 3+ team members
  • Full audit trail: every hiring decision is traced back to a human actor
05

30-Day Data Deletion

No data hoarding. Strict, automated retention and deletion policies enforced at the infrastructure level.

Automated Retention Policies

  • Video interview recordings: employer-configurable retention (6–24 months)
  • Inactive candidate profiles: auto-deleted after 2 years of inactivity
  • DSR deletion requests: full system scrub completed within 30 days
  • Immutable deletion logs maintained for GDPR audit proof

Enterprise Retention Controls

Custom retention policies per role. One-click mass deletion. Full audit trails for compliance teams.
06

SOC2 + ISO 27001 Ready

Q3 2026 target: SOC2 Type 2 + ISO 27001 certification. Enterprise audit-ready controls implemented today.

Proven Security Standards

  • VAPT penetration testing conducted biannually by certified third parties
  • SOC2 Type 1 trust service criteria fully implemented
  • ISO 27001 alignment complete — Q2 2026 audit scheduled
  • ₹25L bug bounty program live at security.quickruit.in

Instant Audit Access

Email [email protected] for the latest SOC2 bridge letter and penetration test summary reports.
🏆 Audit-Ready for Fortune 500 Compliance Teams

Compliance Perfected

DPDPA. GDPR. CCPA. Zero automated decisions. First compliance audit is free for enterprise customers.