Legal Compliance

Privacy Policy

Last Updated: October 1, 2026

This Privacy Policy governs the manner in which JalpiForm SDK collects, uses, maintains, and discloses information collected from users (each, a "User") of the JalpiForm platform and the underlying REST SDK endpoints.

1. Information Collection

We strictly collect data necessary to enforce our Authyo One-Time-Password protocols and standard account logging. This includes Developer credentials (Emails, API Keys) and the exact JSON data generated by consumers filling out Developer-instantiated forms.

2. Web Information Gathering

Our Form SDK captures standard `User-Agent` telemetry alongside IP definitions universally to assist with anomaly detection and automated bot blackouts. We deploy minimal localized Web Storage strictly identifying authenticated sessions traversing the Builder dashboard.

3. Data Sharing Operations

We do not sell, inject, or rent User personal identification information. We natively pipeline Form Submission payloads exclusively to the originating Developer's isolated SQL schemas. We do share explicit `Phone Numbers` and `Emails` internally with the Authyo API routing layers solely to negotiate OTP validation codes.

4. Structural Security

JalpiForm adopts stringent data collection, storage and processing architectures alongside raw SSL/TLS encryptions guarding against unauthorized alterations, disclosures, or destruction of stored Form leads and associated Wallet credentials.

If you require strict HIPAA or SOC2 auditing trails, please engage our Enterprise Support division. Standard endpoints guarantee rigid isolation but exclude dedicated physical hardware mapping.