Enkay Technologies

Home/Security

Security

Security and data handling

What Enkay Technologies does to protect the leads and customer records you keep in Enkay CRM — and, just as plainly, what we do not have yet.

Your leads, your customers’ phone numbers and your invoices are the working memory of your business. This page lists exactly how Enkay CRM looks after them. It does not go further than the facts.

What we do

HTTPS everywhere

Every connection to Enkay CRM and to this website runs over HTTPS, so what travels between your phone or computer and our servers is encrypted in transit.

Integration credentials stored encrypted

When you connect a lead source such as IndiaMART, JustDial or your website form under Settings → Integrations, the credentials for that connection are stored encrypted.

Records scoped to your business

Every lead, customer, quotation and invoice belongs to one business, and each query the app makes is scoped to the business you are signed in to. Your team sees your data; another business’s account cannot reach it.

Access inside your team

On the Business plan you decide who sees what. Roles such as Owner/Admin, Manager, Salesperson and Field staff, plus custom roles with switchable permissions, control things like seeing every lead, cancelling invoices, and importing or exporting. A person without “see every lead” sees only their own and unassigned leads. See team management.

Sign-in

You sign in with a 6-digit one-time code sent to your email, or with your email and password. Login and signup are rate-limited, which slows down anyone trying to guess their way in.

Your data stays yours

You can export your leads and customers to CSV at any time, on every plan, including Free. Enkay Technologies does not sell data.

What we do not have yet

Said plainly

These are gaps today. If one of them is a requirement for your business, email us before you sign up.

  • No security certifications. Enkay Technologies does not hold ISO 27001, SOC 2 or any similar certification.
  • No two-factor authentication. Sign-in is by email code or password only.
  • No native mobile app and no offline mode. Enkay CRM runs in the browser and needs a data connection, so nothing is stored offline on the phone by the app.

What you can do

  • Give each person in your team their own login rather than sharing one.
  • Use the lowest role that lets each person do their job, and switch off “import and export” for anyone who does not need it.
  • Remove people from your account when they leave.
  • Never share a one-time login code. Enkay Technologies will never ask you for it.

Personal data and privacy

How we collect and use personal data — yours and that of the customers you add — is set out in the privacy policy. The terms of service cover the rest of the agreement between you and Enkay Technologies.

To report a security problem, email support@enkaytechnologies.com with the details. More about the company is on the about page.

Frequently asked questions

Is Enkay CRM ISO 27001 or SOC 2 certified?

No. Enkay Technologies does not hold any security certification. We would rather tell you that than display a badge we have not earned.

Does Enkay CRM have two-factor authentication?

Not yet. You can sign in with a 6-digit one-time code sent to your email, or with your email and password.

Can another business see my leads?

Every record in Enkay CRM belongs to one business, and every query the app makes is limited to the business you are signed in to.

Do you sell my data?

No. Enkay Technologies does not sell your data or your customers’ data. See the privacy policy.

How do I get my data out?

Export your leads and customers to CSV from inside the app, on every plan, whenever you like.

Questions about your data?

Email us and ask. We will answer what we do and what we do not do.