Every capability,
in one place.
The four pillars are the story. This is the full catalogue — every capability the platform ships, grouped so your team can run it down like a checklist.
Consent & capture
Capture valid consent everywhere your customers meet you — bound to a purpose and the exact notice they saw.
Multi-surface capture
Web SDK, mobile, cookie banner, hosted CMP, QR and just-in-time prompts — one consent model across all of them.
Purpose & notice binding
Every consent is tied to a specific purpose and the exact notice version shown at the time.
Notices & preference centre
Itemised, plain-language notices and a self-serve preference centre in 22 scheduled languages plus English.
Consent receipts
A sealed, shareable receipt issued for every decision.
One-click withdrawal
Withdrawal as easy as giving — suppressed across every channel, pushed to your CRM, and broadcast as a signed webhook your systems can act on.
Learn more about One-click withdrawalAd-tech signals
IAB TCF and GPP consent signals for the advertising stack.
Data principal rights
Turn rights requests from a fire drill into a tracked, auditable workflow.
Self-service rights portal
Access, correction, erasure and grievance — handled without email ping-pong.
Learn more about Self-service rights portalDeadline & SLA tracking
Every request on a clock, routed to the right owner.
Cryptographic proof of erasure
Erase a person by destroying their key — provably unrecoverable.
Grievance redressal
Complaint intake through to resolution, with a full audit trail.
Records, audit & proof
Consent you can prove — not just claim.
Tamper-evident receipts
Each consent sealed the moment it's given.
Hash-chained audit ledger
Append-only and periodically anchored, so any change is detectable.
Learn more about Hash-chained audit ledgerRecomputable proof
Export the record and an auditor can re-compute the hash chain themselves — the integrity check does not depend on trusting our word for it.
Inspection-ready exports
Hand a regulator a complete, ordered trail on demand.
Data governance & mapping
Know where personal data lives, and keep an honest record of what you do with it.
Automated discovery
Scan 50+ source types — databases, cloud, SaaS and files — for personal data.
Learn more about Automated discoveryClassification
Find and label personal data automatically across your estate.
Records of Processing (RoPA)
A living record of processing activities with maker-checker (four-eyes) approval.
Retention
Retention windows mapped to each purpose and enforced over time.
Processors, DPAs & cross-border
Accountability doesn't stop at your edge — govern everyone who touches the data.
Data Processing Agreements
A full contract lifecycle for every processor relationship.
Sub-processor approval chains
Know and approve who handles data downstream of your processors.
Cross-border transfer records
Onward and cross-border sharing logged and gated.
Localisation controls
Keep specified data where it's required to stay.
Consent-aware engagement
Most platforms just signal consent. ConsentEra acts on it — across every channel.
Multi-channel delivery
Email, SMS, WhatsApp, RCS, push, in-app and voice from one place.
Suppression on withdrawal
Opt-outs and withdrawals honoured automatically across channels.
Consent-aware segments
Build audiences that already respect every purpose and choice.
HubSpot sync
Propagate consent state into your CRM, so withdrawal actually reaches it.
Privacy engineering
Security and privacy designed in at the data layer — not bolted on.
Field-level encryption
AES-256-GCM on personal data with per-tenant keys, before it touches the database.
Learn more about Field-level encryptionMasking & tokenisation
Reduce exposure of sensitive fields across the platform.
Re-identification controls
Govern who can reverse pseudonymisation, with review.
Children, workforce & high-risk contexts
The hard cases that generic CMPs skip.
Age-gating
Detect and handle minors at the point of collection.
Verifiable parental consent
Guardian-verified consent flows for children and persons with disability.
Workforce privacy
Worker-as-data-principal rights, plus surveillance and biometric notices.
Employment overlays
Sector obligations like PoSH handled in the same platform.
Identity, access & platform
Enterprise-ready foundations your security and engineering teams will tick off.
Role-based access
440+ granular permissions, scoped per tenant.
Single sign-on
SAML and OIDC, with MFA and SCIM provisioning.
Multi-tenant isolation
Tenant separation enforced inside the database itself.
Learn more about Multi-tenant isolationAPI, SDKs & webhooks
Build consent into your own stack with a clean REST API and events.
Learn more about API, SDKs & webhooksAI assist
Notice drafting, gap analysis, grievance classification and routing, and anomaly detection.
Dashboards & reporting
Compliance dashboards and regulator-ready reporting.
See your consent flow,
sealed and verifiable.
See the whole platform mapped to your data, your notices and your DPDP readiness deadline — in 30 minutes.