Trust & Safety
Security & Responsible Disclosure
Last updated: 11 June 2026
Our Commitment to Security
ShipIndia takes the security of our platform, customer data, and vendor information seriously. We use industry-standard encryption (TLS 1.2+) for all data in transit and follow best practices for data storage and access control.
Reporting a Vulnerability
If you believe you have discovered a security vulnerability in ShipIndia's systems, we ask that you disclose it responsibly. Please email hello@shipindia.co with the subject line "Security Disclosure" and include: • A description of the vulnerability • Steps to reproduce • Potential impact We will acknowledge your report within 2 business days and aim to resolve critical issues within 7 days.
Scope
In-scope: shipindia.co, api.shipindia.co, and associated subdomains. Out-of-scope: Social media accounts, third-party services we integrate with (Stripe, Airwallex, Delhivery).
What We Ask
Please do not: • Access, modify, or delete data you do not own • Conduct denial-of-service attacks • Spam or phish our customers or vendors • Publicly disclose vulnerabilities before we have had a chance to address them
Contact
Security reports: hello@shipindia.co (subject: "Security Disclosure")