Dadmadar Dadmadar FA
Trust & Transparency

Security Policy

Last updated: July 11, 2026
Your case documents are the most sensitive data entrusted to us. This page outlines what we do to protect them.
Terms of Service Privacy Policy AI Usage Policy Legal Disclaimer Security Policy Ethics & AI Principles

1. Introduction

Information security is a precondition for trust in any legal platform. This page summarizes Dadmadar's approach to protecting user data; some implementation details are intentionally withheld for security reasons.

2. Data Location

User data is stored on server infrastructure located in Iran.

3. Encryption

Communication between a user's browser or app and Dadmadar is encrypted in transit (HTTPS/TLS). Sensitive data at rest is also protected using industry-standard encryption methods.

4. Access Control

Access to case data follows the principle of least privilege: each internal user (including technical staff) can access only the data required for their specific role. Attorneys can access only the cases that have been assigned to them.

5. Logging and Monitoring

Sensitive activity on the platform (including account logins, case access, and significant changes) is logged so that unusual behavior can be investigated and responded to quickly. Dadmadar's infrastructure is continuously monitored for security purposes.

6. Password Handling

User passwords are never stored as plain text. They are stored using standard, industry-recognized hashing algorithms, such that even Dadmadar's own technical team cannot access a user's actual password.

7. Backups

Platform data is backed up regularly so that, in the event of a technical incident, information can be restored with minimal disruption. Backups are protected under the same standards as primary data.

8. Disaster Recovery

Dadmadar maintains a recovery procedure for serious infrastructure disruptions, aimed at minimizing downtime and restoring service as quickly as reasonably possible.

9. Incident Response

If a security incident is identified, Dadmadar's technical team follows an internal process to investigate, contain, and resolve it. Where an incident affects user data, affected users are notified as required by applicable legal obligations.

10. Reporting a Vulnerability

If you are a security researcher or user who has come across a potential vulnerability in Dadmadar, please report it to us before any public disclosure via [email protected], with "Security Report" in the subject line, so we can investigate and resolve it promptly.

11. Contact Us

For any questions about this policy, contact us at [email protected].

This document is provided for informational purposes and does not replace individualized legal advice. Contact us with any questions.

© 2026 Dadmadar. All rights reserved.

[email protected] | app.dadmadar.com