How can we help?
Answers about NoIdMe and the DPDP Act 2023. For developer & API reference, see the developer docs.
Getting started
What is NoIdMe?
The consent-native platform for India's DPDP Act 2023 — capture, prove, enforce and erase.
ReadHow is this different from a cookie banner?
A banner asks; NoIdMe proves and enforces — with a receipt you can hand a regulator.
ReadSelf-host, managed SaaS, or license — which fits?
Three ways to buy; data residency and operations are the deciding factors.
ReadConsent & notices
What is a §6(10) consent receipt?
A signed, hash-chained record of a consent event — verifiable evidence, not a log.
ReadDo you support India's official languages?
Notices can be served in the Eighth-Schedule languages a principal is entitled to.
ReadEmbed vs. network enforcement — what's the difference?
The embed shows the banner & records consent; noidme.js actually blocks unconsented requests.
ReadYour DPDP rights
How do data-principal rights (DSAR) requests work?
Access, correction, erasure and grievance flows — with verified-principal sessions.
ReadWhat does “crypto-shred” erasure mean?
§12 erasure destroys the per-principal key so sealed data becomes unrecoverable.
ReadHow is children's data (§9) handled?
A fail-closed age-assurance gate with verifiable parental consent before processing.
ReadTrust & legal
Is NoIdMe a registered Consent Manager?
Not yet — a registered Consent-Manager track is on the roadmap; we say so plainly.
ReadDo you give legal advice?
No. NoIdMe is software + infrastructure; statutory templates are counsel-gated.
ReadWhere is data stored? (residency)
Self-host/license keeps data in your VPC; managed SaaS can be pinned to an India region.
Read