Home / Legal / Security
Legal

Security

Security is foundational to LearniFlex. This page summarises the controls, certifications, and practices we use to protect your data.

Last updated 30 May 2026

At KnowledgeFlex Technologies Pvt. Ltd., protecting customer data is a core engineering priority. We operate a defence-in-depth programme spanning infrastructure, application, and organisational controls.

Data encryption

All data is encrypted in transit using TLS 1.2+ and at rest using AES-256. Encryption keys are managed through a dedicated key-management service with strict access controls and rotation.

Infrastructure & hosting

Access control

We enforce least-privilege access, single sign-on (SSO) with SAML/OIDC, multi-factor authentication, and role-based permissions. Administrative access to production is logged and reviewed.

Application security

Monitoring & response

We maintain 24/7 monitoring, centralised logging, and a documented incident-response plan. In the event of a confirmed breach affecting personal data, we notify affected customers without undue delay and within the timelines required by law.

Compliance

Our controls are designed to support customer compliance with frameworks including SOC 2, ISO 27001, and applicable data-protection law. Compliance reports are available to enterprise customers under NDA.

Reporting a vulnerability

If you believe you have found a security issue, please email security@learniflex.com. We acknowledge reports promptly and work with reporters to resolve valid issues.

Questions?

Write to us at legal@learniflex.com or reach our office at KnowledgeFlex Technologies Pvt. Ltd., Bengaluru, India. See our contact page for more.