MannSetu LogoMannSetu
    FeaturesAboutFor BusinessPricingDownloadSafety
    ✨Mithra AISOS
    Company CodeGet Started
    Security Architecture

    Built for Enterprise Security

    Defense-in-depth security architecture designed for sensitive mental health data. Privacy by design, security by default.

    Defense in Depth

    Security Layers

    Multiple layers of security protect your organization's data at every stage.

    Encryption

    Industry-standard encryption protects data at every stage

    • AES-256 encryption for data at rest
    • TLS 1.3 for data in transit
    • Zero-knowledge encryption for chat messages
    • Secure key management (AWS KMS)

    Infrastructure

    Secure, compliant cloud infrastructure

    • AWS Mumbai region (ap-south-1)
    • SOC 2 Type II certified data centers
    • Network isolation with VPC
    • DDoS protection via AWS Shield

    Authentication

    Secure identity management

    • JWT-based authentication
    • Anonymous sessions for employee privacy
    • Device fingerprinting (optional)
    • Session timeout controls

    Access Control

    Principle of least privilege

    • Role-based access control (RBAC)
    • HR sees only aggregate data
    • No employee-level access for employers
    • Audit logging for all access
    Data Flow

    How Data Moves Securely

    Understanding the complete data lifecycle from employee access to HR insights.

    1
    1

    Employee Access

    Employee Access

    Employee enters Company Code via browser (HTTPS)

    TLS 1.3 encrypted connection
    2
    2

    Anonymous Session

    Anonymous Session

    Session created without personal identifiers

    No email or name required
    3
    3

    Conversation

    Conversation

    Chat with Mithra AI, stored encrypted

    AES-256 encryption, zero-knowledge
    4
    4

    Aggregation

    Aggregation

    Mood data aggregated at department level

    Min 5 users for any data point
    5
    5

    HR Dashboard

    HR Dashboard

    HR views aggregate insights only

    No individual data exposed
    Privacy Architecture

    Zero-Knowledge Design

    Our architecture ensures that even MannSetu cannot associate chat content with specific employees when they use anonymous mode.

    • Device-based session tokens, no PII required
    • Encrypted chat logs, keys not shared with employer
    • Aggregate insights only at 5+ user threshold
    • 24-hour delay on crisis alerts for anonymity

    Data Isolation

    Organization A

    Encrypted & Isolated

    Organization B

    Encrypted & Isolated

    Multi-tenant architecture with strict data isolation

    Operational Security

    Security Practices

    Regular Security Assessments

    Quarterly vulnerability scans and annual penetration testing by third-party firms.

    Incident Response

    Documented incident response plan with 24-hour notification for security breaches.

    Data Retention

    Configurable retention policies. Default 90 days for conversations, 1 year for aggregate data.

    Backup & Recovery

    Daily encrypted backups with point-in-time recovery. RPO: 1 hour, RTO: 4 hours.

    Have Security Questions?

    Our security team is available to answer your questions, complete security questionnaires, and provide detailed documentation.

    MannSetu LogoMannSetu

    Your 24/7 AI wellness companion, designed for India's mental health needs. Bridging the mental health treatment gap with accessible, culturally-aware AI support.

    Get In Touch

    MannSetu Technologies Pvt Ltd
    Ahmedabad, Gujarat, India
    +91 914 067 5155
    sattyamjain96@mannsetu.com

    Get Started

    Start your mental wellness journey today with our AI companion Mithra.

    Start Free Today

    Growing community of users

    Content & Resources

    Blog•Press Kit•Success Stories

    Trust & Safety

    Safety Resources•Data Practices•Grievance Officer

    For Organizations

    Enterprise Solutions•HR Dashboard•Company Login•Request Demo

    © 2026 MannSetu. All rights reserved.

    FAQ•Contact Us•Privacy Policy•Terms & Conditions
    Made with ❤️ for India's mental wellness•Privacy First•DPDP Act 2023 & IT Rules 2021 Compliant