Your Business Data Deserves Serious Protection.
How Intelix360 authenticates people, controls what they can do, keeps each business’s records separate and records what happens — in plain language.
How we think about it.
Intelix360 holds the record of what a business sold and what it is owed. That is worth protecting properly, and worth describing accurately.
Deny by default
Access is granted, never assumed. Every request is checked against the permissions of the person making it, on the server.
Isolation between businesses
A business’s records are reachable only from that business’s own session, enforced in several independent layers rather than a single check.
Nothing hidden
This page describes what the platform does today. Where something is not in place, we say so rather than implying it.
The measures behind your account.
Secure authentication
Every user signs in with their own credentials. Sessions use short-lived access tokens with rotating refresh tokens, so a stolen token has a narrow window.
Role-based access
What a person can see and do is decided by their role, and permissions are checked on the server for every request — not assumed from the screen they are on.
Separation between businesses
Each business’s records are isolated from every other business on the platform, enforced in several independent layers rather than by a single check.
Permission-controlled operations
Sensitive actions such as editing prices, adjusting stock and managing users are individually permissioned, and access changes take effect immediately.
Authenticated APIs
The mobile app and the web application talk to the same authenticated interfaces. There is no unauthenticated path to business data.
Audit logging
Key actions are written to an append-only record, so it is possible to establish what happened and who did it. Credentials and tokens are never logged.
Protection against abuse
Sign-in and other sensitive endpoints are rate limited, and repeated failed attempts lock an account rather than allowing an attacker to keep guessing.
Managed cloud infrastructure
Intelix360 runs on managed cloud infrastructure operated by Aptivix Technologies, with encrypted connections between your devices and the platform.
Access you control
Adding or removing a user is something your own administrators do, at any time, without waiting for us.
People see what their role allows.
Permissions are set per role and checked on the server for every request. Changing someone’s access takes effect immediately rather than when their session next expires, and the same rules apply on mobile as on the web.
What we do not claim.
Security pages are an easy place to imply more than is true. These are the things we are not saying.
No certifications claimed
Intelix360 has not completed an external security certification such as ISO 27001 or SOC 2. If that matters to your business, tell us and we will talk about it honestly rather than point at a badge.
No uptime guarantee published
We have not published an availability figure, so we do not quote one. Support commitments are set out in your agreement.
Shared responsibility
We protect the platform. Passwords, who you give access to and which permissions you grant are yours to manage — and the audit log is there so you can check.
Have a security question?
If your business has a specific requirement — where data is held, how access is reviewed, what happens at the end of a contract — ask us directly at connect@aptivix.in. You will get an answer from the people who build the platform.
Talk to the team that builds it.
Bring your security questions to the demo. We would rather answer them properly than have you find out later.
Or reach the team directly on +91 9811911949 and connect@aptivix.in.