IP Ownership & Payment Security

Official Transfer & Transaction Policy

Definitive legal regulations governing 100% intellectual property ownership assignment, GitHub source code handover, DNS delegation, and PCI-DSS encrypted transaction security for IAT-C7 Software Studio.

100% Client Code Ownership PCI-DSS Level 1 Razorpay Security Zero Vendor Lock-In Guarantee

1. Policy Purpose & Scope

This Transfer and Transaction Policy sets forth the legally binding framework by which IAT-C7 Software Studio ("IAT-C7", "Studio") processes electronic financial transactions and systematically transfers all digital assets, commercial intellectual property (IP), source code repositories, domain configurations, and cloud database access to our clients upon milestone completion.

The IAT-C7 Freedom Guarantee: We firmly reject predatory software vendor lock-in practices. Every digital software application, website, native mobile app, or backend microservice developed by IAT-C7 is engineered with complete commercial handover in mind. Once all project milestones are settled, the client is the sole, unrestricted 100% owner of their intellectual property.

2. Intellectual Property (IP) & Codebase Transfer Agreement

Upon receipt of the final project milestone settlement (the concluding 20% release of the agreed contract value), IAT-C7 automatically, irrevocably, and perpetually assigns, conveys, and transfers to the client all right, title, and commercial interest in:

  • Uncompressed Source Code: All written HTML5, CSS3/SASS, modern JavaScript (ES6+), React/Vue/Svelte components, Python/Node.js backend pipelines, and server scripts.
  • Database Schemas & Firestore Collections: Complete data modeling documents, JSON schemas, automated indexes, and security rule scripts.
  • Custom Graphic Assets: SVG icons, high-resolution vector logos, Figma UI/UX wireframe artboards, and bespoke application stylesheets tailored for the client.
  • Private GitHub / GitLab Repository Transfer: Full administrative ownership of the remote version control repository is transferred directly to the client's verified organization or personal account.

3. Electronic Payment & Transaction Security (Razorpay)

All electronic monetary transactions processed on https://iat-c7.web.app, including token advances, development milestones, and custom invoice settlements, are executed in compliance with Reserve Bank of India (RBI) directives and Payment Card Industry Data Security Standards (PCI-DSS):

Security Layer Protocol / Standard Protection Benefit to Client
Encryption In Transit TLS 1.3 / 256-Bit SSL All transactional packets exchanged between the browser, gateway, and bank are encrypted against eavesdropping and MITM attacks.
PCI-DSS Level 1 Vaulting Razorpay Secure Iframe Debit/Credit card numbers, CVVs, and expiry dates are tokenized directly in bank vaults. IAT-C7 servers never touch, process, or store raw card data.
Mandatory 2FA Auth RBI Mandated OTP / UPI PIN Every transaction requires direct authorization via the client's banking app (Google Pay, PhonePe, Paytm, CRED) or SMS OTP.
Cloud Ledger Immutability Firestore Security Rules Payment receipts and transaction IDs are written with server timestamps; rule configuration prohibits subsequent deletion or value manipulation.

4. Invoicing, Digital Receipts & Currency Settlement

IAT-C7 generates instantaneous electronic tax invoices and payment vouchers for every verified transaction:

  • Transaction ID Binding: Every receipt features an official Razorpay payment reference ID (e.g. pay_XXXXXXXXXX) matching bank account debits.
  • Currencies Supported: Primary transactions are denominated in Indian National Rupees (INR - ₹). International transactions via foreign credit cards are converted at the prevailing interbank exchange rate by the cardholder's issuing bank.
  • Permanent Receipt Storage: Clients can view, print, or download full A4 tax receipts anytime via the integrated Client Portal at https://iat-c7.web.app/portal.html.

5. Domain, DNS & Cloud Infrastructure Delegation

IAT-C7 assists clients in establishing autonomous, independent cloud environments without ongoing studio reliance:

  • Domain DNS Binding: We configure necessary A-records, CNAMEs, TXT records, and SSL certificates on Cloudflare, GoDaddy, Namecheap, or Hostinger while ensuring the client retains administrative registrar ownership.
  • Firebase / GCP Project Ownership: For cloud databases and hosting, clients can be invited as Principal Project Owners on the Google Cloud / Firebase Console, allowing them to manage billing directly.
  • Third-Party API Credentials: All integration API keys (Mapbox, Twilio, OpenAI, Razorpay) are provisioned under the client's direct credentials, ensuring complete account portability.

6. Post-Handover Security & Third-Party Independence

Following successful project handover and expiration of the complimentary 30-day engineering warranty:

  • The client possesses full authority to hire internal developers, third-party agencies, or freelance engineers to maintain or extend the codebase.
  • IAT-C7 shall not be liable for system outages, data loss, or security vulnerabilities caused by post-handover modifications executed by unauthorized third parties.
  • Clients may opt into an optional, non-binding Monthly SLA Maintenance Retainer for ongoing security patches, server optimization, and proactive feature rollouts.

7. Dispute Resolution & Transfer Officer

In the rare event of a dispute regarding intellectual property boundaries, source code completeness, or transaction reconciliation:

Both parties agree to engage in good-faith technical mediation overseen by the Lead Architect. Detailed git commit timestamps, feature scope checklists, and digital receipt ledgers shall serve as definitive evidence.

IP & Transfer Administration

Lead Architect: Laxman Choudhary

Studio Address: Masuriya, Jodhpur, Rajasthan 342003, India

GitHub Verified: github.com/IAT-C7

Direct Inquiries

Official Email: verifyiatc7@gmail.com

WhatsApp Line: +91 63779 17141

Turnaround: Within 24 Business Hours