BidCompass handles commercially sensitive information — your company financials, your eligibility gaps and your bid pricing. This page explains, in plain language, exactly what we collect, how it is stored, and who can see it. Everything below reflects how the platform actually works.

What data we collect

To check eligibility and generate bid documents, BidCompass stores the information you enter or upload:

Where it lives — and how it is encrypted

Your data is held in BidCompass's database on our server. The most sensitive fields are not stored as plain text — they are encrypted with a separate encryption key that belongs only to your company account.

Concretely, each company has its own encryption key. That key is itself encrypted by a master key held outside the database, and is used to encrypt these fields before they are written to disk:

Encryption uses the Fernet scheme (AES in CBC mode with an HMAC-SHA256 authentication tag). Traffic between your browser and BidCompass is protected in transit by HTTPS/TLS.

Who can see it

Every record in BidCompass is tied to a company account. When you are signed in, the platform reads and writes data using your account's ID, and database queries are scoped to that ID — so one company's profile, documents, BOQs and pricing are not visible to another company.

Within your own organisation, the role-based multi-user feature lets you add team members and assign them to specific tender types or departments; each user works within your account's data according to the access you grant them.

How AI processes your data

BidCompass uses Google's Gemini API (Gemini 2.5 models) for its AI features: eligibility analysis, BOQ generation, bid-document drafting, and reading company-profile or tender documents you upload. When you run one of these actions, the relevant text — and, for scanned or image-based documents, the file itself — is sent to Google's Gemini API for processing and the result is returned to you.

What we never do

BidCompass does not sell your data, and there is no mechanism that shares one company's profile, documents or pricing with another company. Your uploaded documents and BOQ pricing are used to serve your account, not shared across accounts.

Data deletion

You can request deletion of your account and its associated data by emailing support@bidcompass.in. This is handled as a support request (consistent with our Terms of Service). If you need a specific document or BOQ removed, you can delete it from within your account or contact support.

Security questions

For any question about data security or privacy, contact support@bidcompass.in. See also our Privacy Policy and Terms of Service.