Skip to content
Zudoxia
  • In trayWhat you send in
    Smart CaptureScans, phone photos, PDFs and email attachments, sorted by typeInvoice ReaderGST details, line items, HSN codes and PO matchingKYC ReaderID and address proofs, read with consent and maskedBank Statement ReaderStatements into clean, categorized transactions
    Every reader comes with 500 free pages to test on your own documents.Start free
  • Review trayChecks and approvals
    Review QueuePeople confirm only the fields the model is unsure aboutApproval FlowsRules that route invoices and payments to the right approver
    Every reader comes with 500 free pages to test on your own documents.Start free
  • Export & API
  • Pricing
Connect with salesSign up
ReadersSmart CaptureInvoice ReaderKYC ReaderBank Statement Reader
WorkflowReview QueueApproval Flows
PlatformExport & APIPricing
Connect with salesSign up
On this page
  1. 01 Roles
  2. 02 Data processed
  3. 03 Purpose limitation
  4. 04 Security measures
  5. 05 Sub-processors
  6. 06 Where data is processed
  7. 07 Incident notification
  8. 08 Retention and deletion
Legal

Data Processing Terms

How we handle the documents and personal data you process with the service, on your instructions and nobody else’s.

01Roles

The customer is the controller of documents and personal data submitted to the service. We are the processor and handle that data only on the customer’s documented instructions, which include the readers, review rules, approval flows and exports the customer configures.

02Data processed

  • Business documents: invoices, purchase orders, goods receipts, challans, shipping papers and receipts.
  • Financial data: bank statement transactions, balances and counterparties.
  • Identity data, only where KYC Reader is enabled: names, dates of birth, ID numbers, addresses and document images.
  • User data for customer staff: names, emails and activity logs.

03Purpose limitation

Data is processed only to extract, review, approve and export as configured, to provide support, and to keep the service secure. Customer data is not used to train models for any other customer and is not sold or shared for marketing.

04Security measures

  • Encryption in transit and at rest.
  • Logical separation of each customer’s data.
  • Masking of identity numbers by default, with logged reveals.
  • Least-privilege staff access, logged and reviewed.
  • Audit trails on review, approval, export and deletion.

05Sub-processors

We use sub-processors for infrastructure hosting, email delivery and payments. Each is bound by written terms at least as protective as these. Account owners are notified before a new sub-processor that handles customer documents is added.

06Where data is processed

Data is processed in secure cloud regions. Warehouse customers can choose to keep all document processing and storage within India.

07Incident notification

If we become aware of a breach affecting customer data, we notify the account owner without undue delay, and in any case within 72 hours, with what we know and the steps we are taking.

08Retention and deletion

Documents and extracted data are deleted at the end of the retention period the customer sets, on the customer’s request, or 30 days after the agreement ends. Backups are overwritten within a further 30 days.

Zudoxia

Reads invoices, statements, ID proofs and shipping papers, checks the uncertain parts with a person, and sends clean data where your books live.

page.extract() · status: complete
output.json
{
  "product": "Zudoxia",
  "readers": ["Smart Capture", "Invoice Reader", "KYC Reader", "Bank Statement Reader"],
  "workflow": ["Review Queue", "Approval Flows", "Export & API"],
  "account": ["Pricing", "Sign up", "Connect with sales"],
  "legal": ["Privacy Policy", "Terms of Service", "Refund Policy", "Data Processing"]
}
© 2026 Zudoxia Private Limited. All rights reserved.Zudoxia