Information Security Policy

Last Updated: June 26, 2026

At earnfromyourexperience.com, protecting our digital infrastructure and your personal records is a core operational metric. This Information Security Policy (ISP) details the structural rules, protective measures, and protocols we deploy to maintain the absolute data safety of the Speak. Shoot. Sell. workshop ecosystem.

1. Core Objective & Scope

This policy outlines our system architecture parameters to protect information assets against unauthorized modification, leakage, or sudden operational disruptions. This security scope encompasses:

  • Student identity records (Names, Verified WhatsApp contact configurations, Email channels).
  • Proprietary training blueprints, video script workbooks, and resource slides built by Dr. Mansi Sehdev.
  • Live database logs captured during active checkout setups.

2. Data Encryption Standards

We deploy strict encryption layers across our standard operations to block external intercept vectors:

  • In-Transit Security: Every single browser interactions on earnfromyourexperience.com is fully shielded via standard Transport Layer Security (TLS/SSL) encryption protocols.
  • Data Availability: Backup modules containing registration numbers are securely kept inside managed storage vaults to ensure rapid restoration if unexpected backend database lags happen.

3. Access Control & Authorization

We operate under the rule of strict minimum-privilege boundaries:

  • Internal Restrictions: Access to backend user dashboards or CSV registration files is locked exclusively to active operational administrators who handle workshop onboarding links.
  • Authentication: All admin gateways require secure authentication layers to block brute-force hacking attempts on our administration controls.

4. Payment Gateway Protection Architecture

We enforce explicit structural barriers regarding your transaction security:

Zero Raw Card Storage: No financial parameters, net-banking passphrases, or UPI account pins are processed or held directly on our local servers. All transactional sequences route directly through PCI-DSS certified payment brokers via API endpoints.

5. Threat Discovery & Incident Response

If an anomalous connection attempt or potential data risk is flagged by our server shields:

  • Isolation: Infected API nodes or affected landing scripts are instantly contained to stop wider framework impact.
  • Communication: In the rare event of a validated operational security compromise, we will alert affected workshop registrants through their primary email address within standard regulatory time windows.

6. User Responsibilities & System Hygiene

Security is a shared commitment. As an active participant of our workshop, you agree to follow these standard protective actions:

  • Link Protection: Do not post your customized Zoom entry tokens or dashboard login access links inside unverified public messaging groups.
  • Group Manners: Do not deliver unauthorized external executable files or suspected tracking payloads inside our official WhatsApp community chat pools.
WhatsApp