Legal
Security
Last updated: 5 October 2026
Schools, studios and businesses trust 7CRM products with sensitive information — children’s records, identity documents, payments and client data. This page summarises how we protect it.
Data isolation
Every customer organisation’s data is kept separate. Requests are checked on the server so one organisation can never read another’s records.
Access control
- Role-based permissions: owners decide what each staff member or team member can see and do.
- Scoped access: for example, SchoolBee teachers see only the sections assigned to them, and parents see only their own child’s published reports.
- Sign-in options include Google sign-in where offered.
Encryption and storage
- All traffic to our sites and apps uses HTTPS (TLS).
- Documents and photos are stored in private cloud storage and are only available to signed-in users with permission — never on public pages.
- Uploads are validated for file type and size.
Verification against forgery
Certificates and ID cards generated with PaperBee carry a unique QR verification code, so anyone can confirm a document is genuine on PaperBee’s verification page.
Payments
Payments are processed by our payment provider (such as Razorpay). We do not store full card details.
Responsible AI
- AI features run only when a user asks for them.
- Only the data needed for the specific task is sent to the AI provider.
- AI output is shown for people to review; it is designed not to invent facts.
Operations
- Production systems run on managed cloud infrastructure with restricted administrative access.
- Backups protect against data loss.
- Important actions are logged so they can be audited.
Reporting a vulnerability
If you believe you’ve found a security issue, please email info@7crm.inwith details. Please don’t access other customers’ data or disrupt the Services while testing. We’ll acknowledge your report and keep you updated.