Neostra is a privacy compliance platform built for organisations that must comply with India's Digital Personal Data Protection Act, 2023 (DPDPA) and the DPDP Rules, 2025. It also supports GDPR and CCPA requirements for businesses with global users.
The platform has six modules that can be bought separately or together. Consent Management provides consent banners, preference controls and a tamper-evident consent ledger secured with SHA-256 hash chaining. Privacy Rights Manager handles data principal requests from intake to fulfilment and tracks response deadlines. Data Discovery scans connected systems to find and classify personal data, including Aadhaar, PAN and UPI identifiers. Governance and Assessments supports DPIA workflows, compliance scoring and generating Records of Processing Activities. Breach Management gives teams a structured incident response workflow for regulatory notification timelines. Privacy Center offers a customisable portal where customers can view notices, manage consent and submit requests.
Neostra is configured through a no-code dashboard, so teams can deploy it in days to weeks without engineering support. Notices and forms can be published in 58 languages, including the scheduled Indian languages that DPDPA notices may need. All customer data is hosted in Google Cloud's Mumbai region (asia-south1) to meet Indian data residency needs.
Neostra is designed for startups, growing companies and mid-sized enterprises that need to show proof of DPDPA compliance. It uses modular pricing aimed at the Indian market.