India's Consent Governance Platform

Collect. Manage. Orchestrate. All in One Platform for

End-to-End Consent Management.

CONVEYGRID empowers organizations to seamlessly collect, manage, validate, renew, withdraw, and govern user consents across digital channels while maintaining transparency, auditability, and compliance with the Digital Personal Data Protection Act (DPDP Act), 2023.

Dashboard

Total Consents
1.42M
↑ 12.3%
Active Consents
984k
↑ 12.3%
Withdrawals
12.8k
↑ 12.3%
Pending Req
342
âš  Action needed
Consent Activity
API RESPONSE
Valid Consent
Purpose Marketing
Status Active
Expires On 20 Jun 2025
Sync Rate
99%
12K Consents / sec

Sample image for illustration

TRUSTED BY TEAMS
Powering consent & privacy architecture for forward‑thinking enterprise teams.

Security & Governance

Compliance you can trust.

Governance you can rely on.

We’ve built our platform with privacy-by-design principles from day one, with technical and organisational controls intended to maintain user data flows, encryptions, security, against unauthorised access, loss and misuse.

ISO 27701

Certified

ISO 27001

Certified

ISO 9001

Certified

Encryption

End-to-End

SOC Type 2

Certified

GIGW 3.0 Soon

Alignment in progress

WCAG 2.1

Accessibility Aligned

Unmatched Capabilities

Complete platform overview

Everything you need for data orchestration, governance, and audit readiness in a single, unified engine.

Consent Management

Deploy high-converting cross-platform widgets to capture purpose-specific consent, in a legally structured format. Maintain a granular, immutable ledger.

User Prefs
SYNCED
Essential Cookies
Analytics (Google)
Targeted Marketing

Sample image for illustration

Automated Compliance

Built to help you stay aligned with DPDP Act requirements.

Sample image for illustration

Data Analytics

Track opt-in rates, generate audit-ready internal reports, and monitor consent trends over time.

LIVE
+24%

Sample image for illustration

Seamless Integration

RESTful APIs, webhooks, and pre-built SDKs. Orchestrate consent pipelines with your existing CDP, CRM, and internal databases flawlessly.

webhook.js
export const handleWebhook = async (req) => { ... }

Sample image for illustration

REGULATORY CONTEXT — NOT A CONVEYGRID FEATURE LIST

From Regulatory Requirement to

Operational Control.

DPDP compliance requires organisations to translate notices, consent, withdrawal, rights, grievances and accountability requirements into repeatable operational processes.

Purpose & Notice

Clear, purpose-linked information before any processing begins.

Consent & Withdrawal

Consent must be as easy to withdraw as it is to give.

Data Principal Rights

Access, correction, erasure and nomination, exercisable in practice.

Grievance Redressal

A structured mechanism every Data Fiduciary must provide.

Evidence & Accountability

Fiduciaries must be able to demonstrate compliance, not just assert it.

WHY NOW

India's Privacy Law Has Moved From Statute to Enforcement

The Data Protection Board is operational and the compliance timeline is running. Organisations that treat consent as infrastructure today will be the ones still standing when enforcement begins.
Phase 1

13 Nov 2026

Consent Manager registration & Board penalty powers go live.

Penalty Exposure

Up to ₹250 CR

Other violations carry separate penalties up to ₹200 CR, ₹150 CR and ₹50 CR — penalties can stack.

Phase 2

13 May 2027

Full enforcement across notice, consent, breach and rights.

HOW CONSENT ACTUALLY BEHAVES

Capture →Validate →Govern →Modify/Renew →Withdraw →Evidence

Capture

One clear choice, recorded

Validate

Checked before every use

Govern

One policy, enforced everywhere

Modify / Renew

Preferences change, safely

Withdraw

As easy as giving consent

Evidence

Proof for every decision

BUILT TO BE TRUSTED, NOT JUST BELIEVED

Every Decision Is Logged. Every Log Is Evidence

Governance

Role-based access control over the platform itself.

Security

Architected access and control at every layer.

Auditability

Tamper-evident audit trails, always on.

Evidence

A consent artefact for every capture and change.

Core Infrastructure

Everything you need to manage

consent at scale

Powerful primitives designed for enterprise workflows. Secure, fast, and compliant by default.

Consent Lifecycle Management

Capture, validate, modify, renew, withdraw and retain — every action traceable.

Data Principal Experience

A self-service surface for preferences, rights and request history.

Notice Management

Purpose-linked notices, versioned and tracked at every touchpoint.

Validation & Orchestration

Real-time status, propagated via API and webhook to every system.

Audit & Evidence

Tamper-evident artefacts for every capture, change and withdrawal.

Rights & Grievance Management

Structured intake, SLA tracking and resolution records.

Child & Guardian Workflows

Verifiable guardian consent, built into capture from day one.

Administration & Governance

Role-based access, policy configuration and monitoring.

APIs & Integrations

Connects to your CRM, marketing stack and processors — no re-architecture.

Consent Architecture

How the consent flow works.

A frictionless pipeline designed to instantly route data permissions from the
user’s tap to your secure infrastructure.

Integrate & Map

Connect our SDKs to your frontend and map your existing data flows to specific processing purposes.

01
02

Collect Consent

Present granular, plain-language consent notices to users at the exact moment of data collection.

Orchestrate Sync

Consent updates instantly sync across your internal databases, marketing tools, and third-party processors.

03
04

Audit & Report

Generate cryptographically verifiable audit logs demonstrating compliance for regulators instantly.

Live Data Stream
Global
Opt-in Rate
84.2%
4.2% vs last week
Active Records
12.4M
Conversion by Region
Europe (GDPR) 92.4%
North America (CCPA) 78.1%
Asia Pacific 88.5%

Sample data for illustration

LIVE DASHBOARD

Real-time insights.
Total control.

Monitor consent trends, withdrawal rates, and automated Data Principal requests in real time with powerful out of the box dashboards.

Developer Experience

Developer First Integration

Built strictly for modern engineering teams. Integrate complex consent logic into your stack in hours, not weeks.

REST APIs

Fully documented REST endpoints for creating, updating, and verifying consent status programmatically.

Webhooks

Receive real-time push notifications when a user withdraws consent to instantly update downstream systems.

Client SDKs

Drop-in UI components for React, Vue, Android, and iOS to render compliant consent dialogs natively.

api.test.ts

const consent = await grid.consents.create({
  userId: 'usr_9823xc2',
  purpose: 'marketing_emails',
  status: 'GRANTED',
  ipAddress: '192.168.1.1',
  metadata: {
    source: 'web_signup',
    url: 'https://conveygrid.in/signup'
  }
});

console.log(consent.id);
CONSENT LOGGED

Sample data for illustration

Webhook Deliveries
Listening
consent.granted
Just now HTTP 200
consent.revoked
2m ago HTTP 200
dsar.request_created
15m ago HTTP 200
consent.updated
1h ago HTTP 200

Sample data for illustration

Industry Solutions

Built for every use case.

Whether you process payments, patient records, or e-commerce transactions, ConveyGrid adapts securely to your specific industry’s compliance needs.

Healthcare & Diagnostics

Patient and clinical-data consent, guardian workflows for minor patients.

BFSI

KYC and loan-processing consent under RBI/SEBI-adjacent oversight.

E-commerce

Marketing and cookie consent at volume, easy withdrawal at scale.

SaaS & Technology

API-first integration, processor governance across multi-tenant environments.

HRMS / Workforce

Employee data consent, distinct from customer-facing consent flows.

Telecom & Digital Platforms

High-volume consent events, real-time validation at scale.

Government / PSU

Public-sector accountability, demonstrable governance for public scrutiny.

Sector-agnostic — any organisation processing personal data under DPDP is a fit.

Customer Stories

Loved by platform &
compliance teams.

Don’t just take our word for it. Hear from the teams building with ConveyGrid.

"Easy to integrate, powerful to operate, and built for compliance from day one. It fundamentally changed how we handle data."CTO

C
CTO
E-commerce Platform

"The real-time withdrawal and audit logs feature set is a game changer for maintaining our DPDP compliance standards."

D
DPO
Healthcare Company

"ConveyGrid helped us operationalize consent management at scale. The APIs and dashboards are simply outstanding."

H
Head of Privacy
Leading Fintech

COMMON QUESTIONS

Frequently asked questions

Is ConveyGrid compliant with the new DPDP Act 2023?

Yes, our platform is built ground-up to comply with India’s Digital Personal Data Protection (DPDP) Act 2023, along with GDPR and other global frameworks.

Most development teams can integrate our core APIs and webhooks in under 2 days. We offer comprehensive SDKs and documentation to speed up the process.

Absolutely. Once a Data Principal withdraws consent, our system instantly broadcasts webhook events to your internal services to halt data processing immediately.

By default, data is hosted in highly secure instances within India (Mumbai region) to satisfy data localization requirements, with enterprise options for single-tenant VPCs.

DEMO

Explore Our 2 Minute Click-Through Demo

Take a tour of product
Step 1 Step 2 Step 3 Step 4 Step 5 Step 6 Step 7 Step 8
Step 1 / 8
1 / 8

Ready to scale your

compliance framework?

Start operationalising DPDP compliance with a platform built for how consent actually works — capture, validate, govern, and prove it.