About Promiz

Consent you can prove. Built in India, by Pentafox.

Promiz is a consent and privacy platform for India's DPDP Act 2023. It is a product of Pentafox Technologies, made for the duties that start after the banner: proof, withdrawal, erasure and rights requests.

Last reviewed 18 September 2026

Product
Consent & privacy management for DPDP
Company
Pentafox Technologies
Offices
Coimbatore · Chennai
Certified
SOC 2 Type II · ISO 27001:2022
The product

Why does Promiz exist?

Promiz exists because the DPDP Act 2023 and the DPDP Rules 2025 turn consent, proof, withdrawal, erasure and rights requests into operational duties. A notice must be shown in a language the person reads, the choice must be recorded, and when they change their mind every connected system must stop and the data must go.

Most tools stop at the banner. They record a click and leave the withdrawal queue, the erasure proof, the 48-hour notice and the rights-request clock to spreadsheets and email. Promiz was built for what happens after the click: one record per person, one chain of proof, and the queues that close each duty on time.

  • Proof of notice and consent

    What was shown, in which language, and what was chosen.

  • Withdrawal

    As easy as consent, delivered to every connected system.

  • Erasure

    Retention clocks, legal holds, 48-hour notice, confirmed deletion.

  • Rights requests

    Access, correction and grievance with tracked deadlines.

What we believe

What do we stand for?

Four principles behind every module.

  1. 01

    Proof over policy

    A privacy policy says what you intend. A chained, tamper-evident record shows what happened: the notice shown, the choice made, the withdrawal delivered. Regulators and auditors ask for the second.

  2. 02

    One record

    Web, app, branch, agent and call centre write to the same consent record. Purposes, retention clocks and legal holds live on that record, not in five separate tools.

  3. 03

    The customer can always leave

    Withdrawal is as easy as consent. It fires signed webhooks to every downstream system, opens the erasure queue and stays open until each system confirms the stop.

  4. 04

    Built for India

    Notices in English and the 22 Eighth Schedule languages. Guardian checks through DigiLocker. Retention rules that respect sector record-keeping duties such as those set by RBI, so a withdrawal stops use without breaking a legal obligation.

What Promiz is not

  • Not a registered Consent Manager

    Promiz is software that you, the Data Fiduciary, use to run your own consent and rights processes. A Consent Manager is a separate role registered with the Data Protection Board.

  • Not legal advice

    Promiz supports your compliance programme. Your legal team decides purposes, legal bases and retention periods.

The company

Who builds Promiz?

Promiz is built and operated by Pentafox Technologies, an Indian software company that builds AI agents and enterprise platforms for FinTech, Aviation, BPO and Healthcare. Promiz grew out of that work: regulated customers needed consent and rights handling that would stand up to an audit, and no banner tool did.

Pentafox at a glance
Builds
FinTechAviationBPOHealthcare
Offices
CoimbatoreChennai
Website
pentafox.in
Mission

Turn cloud elasticity and applied AI into products that teams run their operations on, judged by the manual work removed and the decisions made faster.

Vision

Be the partner enterprises trust with the systems they cannot afford to get wrong: onboarding, lending, rostering and data protection.

How does Pentafox work?

  • Production over demo

    New approaches earn their place by surviving real workloads, not slide decks.

  • Security by design

    Encryption, role-based access, audit trails and data residency are part of the design, not a hardening pass.

  • Outcomes after go-live

    A deployment is not the finish line. Adoption and results after launch are the measure.

  • Instrument and improve

    What ships is measured against real data and fed into the next release.

Security & compliance

How is the platform secured?

With SOC 2 Type II and ISO 27001:2022 audited controls, and hosting in India. The layer-by-layer detail is in the security section of the homepage.

SOC 2 Type II

Security and availability controls, independently audited over time.

ISO 27001:2022

Information security management system, certified.

Hosted in India

Promiz is hosted in India. Customer data, consent records and audit logs stay in Indian data centres.

Talk to the team that builds it.

A 30-minute demo on your own purpose, with the people who built Promiz. For Pentafox's other platforms, visit the company site.