Uttar Pradesh Development Systems Corporation Ltd. Website will not sell, trade, or disclose the personally identifiable information of its website users to any unauthorized third parties.
Uttar Pradesh Development Systems Corporation Ltd. Website takes all steps possible to ensure that the data on the website is accurate. While reviewing the website if something is found to be inaccurate Uttar Pradesh Development Systems Corporation Ltd. Website Name will make every effort to correct said information as quickly as possible. If it is found to be an inaccuracy with the entire system Uttar Pradesh Development Systems Corporation Ltd. Website will work swiftly to correct the problem so that your web experience is as troublefree as possible. Any change to your user account will not be reflected on the website until the following business day. The information contained on the Uttar Pradesh Development Systems Corporation Ltd. Website website is subject to change without prior advance notice.
While using the Uttar Pradesh Development Systems Corporation Ltd. website certain information such as your IP Address and time spent on pages may be collected. This non- personal information is collected in order to monitor any unauthorized use or access to the Uttar Pradesh Development Systems Corporation Ltd. site. Anyone caught attempting to harm, steal information from, or otherwise damage the Uttar Pradesh Development Systems Corporation Ltd. website will be prosecuted to the full extent of the law.
A Drupal CMS is used in the Uttar Pradesh Development Systems Corporation Ltd. Website website for displaying the information dynamically as per the users’ requests. The application has been security audited for the known application level vulnerabilities as per Top 10 OWASP and the application security vulnerabilities have been addressed before the launch of the Portal
The website will be audited by Cert-in empanelled agency periodically. The periodicity shall be one year from the date of issue of certificate or additional changes in the dynamic content carried out whichever is earlier. A periodic check on the requirement of a security certificate is recommended to the web information manager in case there are changes in the functionality or any other environmental changes.
The Applications and database servers hosting the Uttar Pradesh Development Systems Corporation Ltd. website and Databases have been security audited. The hardening of the server has been done. The access to the server is restricted both physically and through the network as far as possible. The Logs are being maintained for authorized physical access to Uttar Pradesh Development Systems Corporation Ltd.. The servers have been placed behind the Application firewall in order to make them hidden to the outside public. All the development work is done on separate development environment and well tested on the staging server before updating it on the production server. The Uttar Pradesh Development Systems Corporation Ltd. website contents on the NIC Data Centre servers are uploaded using secured SSH and VPN through a single point. The contents are first checked by approval authority before publishing on the website. All contents of the web pages are checked for intentional or unintentional malicious content before final upload of the same on the website. Audit and Log of all activities referring to the operating system, access to the system and access to applications are maintained and archived. All rejected accesses and services are logged and listed in exception reports for further scrutiny. All newly released system software patches, bug fixes and upgrades are deployed regularly and reviewed. The Antivirus has been deployed on the servers and is updated online.
Uttar Pradesh Development Systems Corporation Ltd. takes security very seriously and has therefore taken every precaution to secure our borrowers' information. In order to secure the user’s information, Uttar Pradesh Development Systems Corporation Ltd. has implemented several security measures to prevent loss, theft, or misuse of any borrower data.
Whether website is accessible in India only and necessary firewall rule has been applied in the system
Access important government portals and citizen services through a single platform.