Data Protection/ GDPR Compliance

Data Protection/ GDPR Compliance

Data Security Policy Last Updated: December 2025

1. Data Protection

● All participant data is stored on encrypted and secure servers.

● Access is restricted to authorized organizers only.

● Passwords and sensitive identifiers are hashed and not visible to any user or organizer.

2. Payment Security

● Payments are handled exclusively through verified payment gateways (Razorpay/others as applicable).

● The website does not collect or store: ○ Card numbers ○ CVV ○ UPI PIN 3. Website Security Measures

● SSL encryption is enabled for all pages of www.mmcgenesis.com.

● Regular malware scans and vulnerability checks are performed.

● Rate-limiting, firewall rules, and suspicious-activity monitoring are active.

4. Data Access Control

● Only designated Academic/Scientific Secretaries or authorized IT staff may access backend data.

● Staff accessing backend systems are required to follow confidentiality rules.

5. Data Breach Policy In case of a suspected or confirmed data breach:

● Immediate investigation will be conducted.

● Affected users will be notified via registered email.

● Relevant authorities will be informed if legally required.

6. Contact for Data Security Concerns Email: genesis26official@gmail.com