Lifecycle

From verified intake to permanent Right of Reply

Every report passes through the same governed pipeline. No step can be skipped, and every transition is written to an immutable audit log.

1. Business verification

GSTIN, PAN or CIN plus authorised-signatory KYC is reviewed before an account can publish anything.

2. Structured intake

Category, transaction dates, amounts and a factual narrative are captured in a constrained form.

3. Evidence threshold

A minimum of two authenticated documents is required. Each file is SHA-256 hashed on upload.

4. Reporter declaration

An authorised signatory signs a legally worded declaration accepting authorship of the report.

5. Notice to the reported business

The reported business is served notice and can respond before publication.

6. Legal moderation

Human review checks legality and evidence sufficiency. Moderators never rule on who is telling the truth.

7. Publication with reply

The report and any reply are published together, permanently paired.

8. Dispute and grievance

Disputes, grievances, takedown notices and DPDP requests all have tracked statutory timelines.

9. Retention and holds

Reports age out on schedule unless a legal hold freezes them for proceedings.

CredAlert is an intermediary under Section 2(1)(w) of the Information Technology Act, 2000. It does not determine truth, does not perform debt recovery, is not a credit bureau, and never becomes the publisher of any report. Every report belongs to the business that submitted it.