Sigilo adopts practices aligned with the LGPD (Brazilian General Data Protection Law) and related legislation on integrity, compliance, and data protection.
Applicable laws
LGPD — Law 13.709/18
Personal data protection and privacy.
Law 14.457/22
Prevention of and fight against harassment in the workplace.
Law 14.611/23
Promotion of equal pay and the fight against discrimination.
Anti-Corruption Law 12.846/13
Strengthening of integrity and compliance programs.
How Sigilo helps with compliance
✅
Anonymous reporting channel.
✅
Case access control.
✅
Audit logging.
✅
AES-256 encryption.
✅
Conflict-of-interest management.
✅
History and traceability.
Sigilo's compliance
- Sigilo requires no registration and collects no identification data to submit reports.
- Data is stored on secure infrastructure with access controls and cryptographic protection.
- Mandatory acceptance of the terms and privacy policy before submission.
- After the subscription is canceled, the data remains available for export for up to 90 days. After that period, it is deleted according to the current retention policy.
- The system logs administrative actions and case movements for auditing and traceability purposes, preserving the reporter's anonymity.
Important: regulatory compliance also depends on the contracting company's internal policies, processes, and proper use of the platform.