SDD Software; Structured Digital Database for SEBI PIT Compliance
Affinisio(SDD) is the structured digital database module of the Affinisio PIT Suite for compliance with SEBI PIT regulations. The most advanced, fully certified and automated application for compliance with the SEBI (Prohibition of Insider Trading) Regulations, 2015. Fully internal, with time-stamped audit trails. Dedicated variants for listed entities and for intermediaries and fiduciaries that hold UPSI across several client engagements.

Variants and Features of Affinisio(SDD)
Choose from the options below to explore product variants and features that make Affinisio(SDD) the Premier Choice
Intermediaries, Fiduciaries
Core
CIN Series
FOR SEBI Intermediaries and Fiduciaries managing multiple client engagements and teams.
Complete Regulatory Compliance
- Certified for regulatory compliance with immutable and detailed audit trails and time stamping
- Extract data in multiple digital formats
- Custom regulatory reports, ready for SEBI inspection
UPSI Capture & Workflows
- Flexible UPSI entry logging — capture as sender, receiver or central point of contact in one smooth flow
- Intuitive UPSI workflows that guide every entry
- Group UPSI capture — log one event across multiple recipients in a single entry
- UPSI entries auto-filed to each individual’s account as sender or receiver
- Pre-created UPSI descriptions, controlled by the Compliance Officer for consistent, audit-ready entries
- Custom UPSI descriptions where standard labels don’t fit
- Automated email intimations to all parties upon logging of entries
Deal Teams & Information Barriers
- Project-specific deal teams, with project access limited to their own engagements
- Information barriers by deal team and by project
Entities & Contacts
- Extensive pre-loaded database of listed entities
- Self-create “to-be-listed” entities for pre-IPO and proposed-listing engagements
- Unlimited internal and external contacts — counterparties, advisors and other fiduciaries
- Pre-register intermediaries for cleaner cross-entity sharing records
Integration & Deployment
- Robust, enterprise-grade security with SSO and LDAP integration
- Fully integrated user management and security administration section (Graph API and MFA optional)
- People data via HRMS integration or one-click bulk upload
- Smart Compliance Control Panel
- On-Premises deployment for full data ownership
- Flexible deployments optimised for your organisation’s owned cloud infrastructure
- Web, desktop and mobile
Prime
PIN Series
FOR Intermediaries and Fiduciaries needing advanced UPSI capture, integrations and automation.
Everything in Core, plus:
Advanced UPSI Controls & Integrations
- Zero-touch email integration — UPSI communications logged automatically and securely
- Automated alerts for unrecognised senders or receivers in Zero-touch email integration
- UPSI super-grouping for alternative descriptors
- Smart approval workflow when recording UPSI flow on behalf of others (optional)
- Integration through bulk update for historical SDD data
- Post-facto PAN updates without breaking historical entries
- Cross-integration with other intermediaries’ Affinisio(SDD) systems
Listed Entities
Core
CLE Series
FOR Listed Entities.
Complete Regulatory Compliance
- Certified for regulatory compliance with immutable and detailed audit trails and time stamping
- Extract data in multiple digital formats
- Custom regulatory reports, ready for SEBI inspection
UPSI Capture & Workflows
- Flexible UPSI entry logging — capture as sender, receiver or central point of contact in one smooth flow
- Intuitive UPSI workflows that guide every entry
- Group UPSI capture — log one event across multiple recipients in a single entry
- UPSI entries auto-filed to each individual’s account as sender or receiver
- Pre-created UPSI descriptions, controlled by the Compliance Officer for consistent, audit-ready entries
- Custom UPSI descriptions where standard labels don’t fit
- Unlimited internal and external contacts — counterparties, advisors and other fiduciaries
- Automated email intimations to all parties upon logging of entries
Deal Teams & Information Barriers
- Project-based management of UPSI events end to end
- Functional groups to organise people by department, function or team
- Restricted project access on a strict need-to-know basis
Integration & Deployment
- Robust, enterprise-grade security with SSO and LDAP integration
- Fully integrated user management and security administration section (Graph API and MFA optional)
- People data via HRMS integration or one-click bulk upload
- Smart Compliance Control Panel
- On-Premises deployment for full data ownership
- Flexible deployments optimised for your organisation’s owned cloud infrastructure
- Web, desktop and mobile
- Option for On-demand training
Prime
PLE Series
FOR Listed Entities needing advanced UPSI controls, integrations and automation.
Everything in Core, plus:
Advanced UPSI Controls & Integrations
- Granular information barriers within the entity
- UPSI super-grouping for alternative descriptors
- Zero-touch email integration — UPSI communications logged automatically, internally and securely
- Automated alerts for unrecognised senders or receivers in Zero-touch email integration
- Smart approval workflow when recording UPSI flow on behalf of others (optional)
- Integration through bulk update for historical SDD data
- Post-facto PAN updates without breaking historical entries
Mutual Funds, Listed Intermediaries
Mutual Funds or Listed Intermediaries
PRO Series
FOR SEBI Regulated Mutual Funds or for Intermediaries that are Listed.
Complete Regulatory Compliance
- Certified for regulatory compliance with immutable and detailed audit trails and time stamping
- Extract data in multiple digital formats
- Custom regulatory reports, ready for SEBI inspection
UPSI Capture & Workflows
- Flexible UPSI entry logging — capture as sender, receiver or central point of contact in one smooth flow
- Intuitive UPSI workflows that guide every entry
- Group UPSI capture — log one event across multiple recipients in a single entry
- UPSI entries auto-filed to each individual’s account as sender or receiver
- Pre-created UPSI descriptions, controlled by the Compliance Officer for consistent, audit-ready entries
- Custom UPSI descriptions where standard labels don’t fit
- Automated email intimations to all parties upon logging of entries
Deal Teams & Information Barriers
- Project-specific deal teams, with project access limited to their own engagements
- Information barriers by deal team and by project
- Project-based management of UPSI events end to end
- Functional groups to organise people by department, function or team
- Restricted project access on a strict need-to-know basis
- Intra-entity visibility barriers
Entities & Contacts
- Manage UPSI of your own entity and of other listed and to-be-listed entities in one system
- Scalable organisational units for group structures
- Extensive pre-loaded database of listed entities
- Self-create “to-be-listed” entities for pre-IPO and proposed-listing engagements
- Unlimited internal and external contacts — counterparties, advisors and other fiduciaries
- Pre-register intermediaries for cleaner cross-entity sharing records
Advanced UPSI Controls & Integrations
- Zero-touch email integration — UPSI communications logged automatically and securely
- Automated alerts for unrecognised senders or receivers in Zero-touch email integration
- UPSI super-grouping for alternative descriptors
- Smart approval workflow when recording UPSI flow on behalf of others (optional)
- Integration through bulk update for historical SDD data
- Post-facto PAN updates without breaking historical entries
- Cross-integration with other intermediaries’ Affinisio(SDD) systems
- Granular information barriers within the entity
- Internal mail-domain integration
Integration & Deployment
- Robust, enterprise-grade security with SSO and LDAP integration
- Fully integrated user management and security administration section (Graph API and MFA optional)
- People data via HRMS integration or one-click bulk upload
- Smart Compliance Control Panel
- On-Premises deployment for full data ownership
- Flexible deployments optimised for your organisation’s owned cloud infrastructure
- Web, desktop and mobile
- Option for On-demand video training

Prevention of Insider Trading – the Structured Digital Database Software
Ensure regulatory compliance, mitigate regulatory risk. Used by a large number of leading corporates, fully certified for compliance with SEBI PIT Regulations.
SDD
(Compliance Officers)
Super-simple capture of UPSI flow, single click entries to fulfil multiple obligations at one go. SDD populates seamlessly into regulatory reports.
SDD
(Employees)
Compliance Officers
SDD software that super-streamlines compliance with SEBI regulations. Be inspection ready, every day with state-of-the-art support, usage manuals and walkthrough trainings.
Fully certified SDD software for compliance with SEBI regulatory requirements. Inspection tested across many corporates across multiple cycles of inspection. Its not just compliance, its compliance made easy.
Maintain info Barriers internally and across teams. Restrict sensitive information based on the roles & permissions. Ensure the ‘Need to Know’. Maintain confidentiality of information for individual users.
Obtain or extract a detailed audit trail of all activities, logins, changes or corrections. Filter based on time or person or behavioral criteria. Extract at will in multiple formats to demonstrate compliance.
Deploy on your internal server or in your own cloud tenancy. All software resources inclusive. Send email intimations through internal mailboxes. The database remains on infrastructure you own and control.
Independently configure policies for maintaining compliance quality control, quick-clicks selections, record retention, KYC documentation & permissible communication channels to suit your policies.
State of the art help & support structure, from deployment to migration. From usage guides to FAQs to detailed page-wise instructions. Enjoy our detailed training videos as well as topical help videos.
Import data into Affinisio with pre-verification and pre-validation built in prior to upload. Export data in multiple formats. Your data is yours to access and control, whenever and however you may need it.
Auto-capture just the emails you want into the SDD software. No CC’ing, no actual UPSI enters the system. The ultimate zero-touch email auto-capture with full flexibility, full compliance and full automation.
Information Barriers, intelligent pre-approvals, auto email intimations, project code names, exception intimation, SPDI protection and policy controls. Affinisio(SDD) has incorporates controls for all aspects.
Close trading window as a listed entity directly from within application, intimate Designated Persons from within SDD, retain evidentiary trails, custom messages along with required information auto-populated.
Employees
Affinisio(SDD) hasn’t just been designed for Compliance Officers or technical inspections. Affinisio(SDD) makes it super-easy to log the flow of UPSI effortlessly – no repeat clicks, easy login and quick access to just the right screens – complete everything in a flash.
Minimise manual effort, maximise outcome and compliance. Save time, repetitive actions & compliance hassles while remaining fully compliant & inspection ready for SEBI Regulations on Insider trading.
Integrate the Structured Digital Database application with other internal systems. From HRMS & ERPs to Single Sign On & LDAP, Affinisio(SDD) is designed to minimise effort while maximising benefits.
Quick-create external entities and external persons once, available for use by everyone internally. Retain the option to maintain information barriers to restrict certain entities or persons amongst deal teams.
Intuitive capture of UPSI flow. Whether as receiver or as sender. Whether for self or for others. Whether to individuals or groups. Do all of this in one smooth motion and on one intuitively designed screen.
Avoid multiple passwords with support for multiple ‘single sign-on’ services. Seamless integrations & synchronise user info with HRMS systems. Independent & restricted accesses for your HR teams.
Create topical groups of persons or create focused teams for auto-capture in seconds. From Deal Teams to Functional Groups, one click auto-populates hundreds of details and precludes multiple repeat actions.
Send and receive automated and timely reminders and intimations for various actions, approvals or other SDD compliance related obligations, just some of many features in Affinisio(SDD).
Business applications need not be difficult and complex to navigate. Have your most actioned tasks right up front and maximise productivity in an easy-to-navigate and intuitively presented design structure.
Don’t duplicate, automate. Integrate pre-existing data from deal & project management application to time-sheeting applications to client onboarding applications; automate & ease your compliance efforts.
Quick auto-created sections to show you just the details of UPSI flows needed; for each individual logged in user, see UPSI shared or received and sorted by UPSI flow captured by user or on his/her behalf.
Affinisio(SDD) for Intermediaries and Fiduciaries
The obligation to maintain a Structured Digital Database extends to SEBI-registered intermediaries and to fiduciaries. SEBI’s Comprehensive FAQs of 31 December 2024 state:
“The requirement to maintain structured digital database under Regulation 3(5)… is applicable to listed companies, and intermediaries and fiduciaries who handle UPSI of a listed company in the course of business operations.”
Affinisio(SDD) is available in a variant designed specifically for intermediaries and fiduciaries, because the obligation, though identically worded, is a materially harder one to discharge.
Many Mandates, Overlapping Teams
A listed entity maintains its structured digital database around a single issuer — itself. An intermediary or fiduciary handles UPSI belonging to many listed entities at once, through concurrent mandates staffed by small teams whose members recombine from assignment to assignment. The same professional may sit on two engagements in the same week. Moreover, the same information may be characterised differently by different firms according to the role each plays, whether a law firm, a merchant banker, a research firm or an audit firm, each recording its own side of one shared information flow.
What Affinisio(SDD) Provides for Intermediaries and Fiduciaries
Information Barriers by Team
Strict information barriers across projects, built on predefined deal teams. Intermediary teams are small and work on multiple assignments in changing combinations, so segregation must operate at project level rather than at firm level.
Barriers on Existence Itself
An additional class of barrier that restricts knowledge of the very existence of other parties to designated members of a deal team.
Add Entities as Mandates Arise
The ability to add further listed or to-be-listed entities, for firms working on listing proposals or across larger group structures.
Pre-Populated Entity Register
A large register of listed entities, available from the outset, so a new mandate can be set up without building the entity record from scratch.
UPSI Super-Grouping
The same category of information can carry more than one characterisation — a listed entity and its advisers frequently describe identical information differently according to their role.
Shared Codenames
Common project codenames with email auto-capture, so several intermediaries engaged on the same matter record the shared aspects of it consistently.
Affinisio’s clientele spans multiple SEBI-registered intermediaries and professional fiduciaries alongside listed corporates and conglomerate groups. See our clients page.
Features
One of the key features of a regulated application such as a structured digital database is the method of deployment — and here it is not an implementation detail but a compliance requirement.
On-Premises Deployment — Your Structured Digital Database Is Maintained Internally, Never Outsourced
Regulation 3(5) of the SEBI (Prohibition of Insider Trading) Regulations, 2015 is explicit on the point:
“Such database shall not be outsourced and shall be maintained internally with adequate internal controls and checks such as time stamping and audit trails to ensure non-tampering of the database.”
Affinisio(SDD) is built from the ground up to that requirement rather than adapted to it.
Where the database sits. The application is deployed on infrastructure the entity itself owns and administers. The structured digital database is created and held within that environment, and it does not leave it.
How internal non-tampering is assured. Every entry is time-stamped at the point it is made, and the audit trail is maintained at database level. Where a genuine error must be corrected (an error must always be capable of correction, or the records cease to reflect the truth) then in such a case, the correction is captured as a further audited event recording what was changed, the user ID that made the change and the time it was made, with the original entry preserved with it.
Non-tampering does not mean a record can never be corrected. It means no change can be made without leaving a permanent, attributable and transparent trace.
For how long. Because the database is internal ab initio, it is subject to no vendor storage tier, no archival charge and no deletion on expiry of a contract. It is therefore retained for as long as the entity’s own retention policy requires, with no vendor-imposed limit at the eight-year minimum contemplated by Regulation 3(6).
No Vendor Access — Affinisio Technologies Never Holds or Sees Your UPSI
SEBI has addressed this directly. Its Comprehensive FAQs on the PIT Regulations of 31 December 2024 consider software supplied by a vendor, held on the vendor’s server, with the entries made by the company’s own employees:
“The third party vendors are providing the services/software on login basis, where the server is maintained by the vendor. Therefore, the vendor may have access to such records which would be contrary to the regulations with respect to maintenance of structured digital database.”
The objection is not to buying software from a vendor. It is to a database that sits with the vendor. Affinisio(SDD) is not supplied on that model. The database resides on infrastructure the entity owns, or holds as its own tenancy, and administers under its own credentials — on its own premises or within its own private cloud tenancy, since the test SEBI applies is administrative control, not physical location.
And it is your record, not ours, for at least eight years. Regulation 3(6) requires the structured digital database to be preserved for not less than eight years after completion of the relevant transactions, and until any investigation or enforcement proceedings conclude. That obligation rests on the board of directors of the entity, not on its software vendor. Where the database sits on a vendor’s server, an entity’s eight-year statutory record is held by a third party, and its availability depends on the continuation of a commercial contract. Where the database is internal from the outset, the obligation and the record sit in the same place.
Centralise SDD Compliance
Structured Digital Database software centralised for all your needs
Compliance Officers monitor entities, persons, policies, users, projects and audit trails centrally and intuitively, through a single access ID. They can also log UPSI flow on behalf of senders or receivers, whether individuals or groups. Affinisio(SDD) does it all.
SDD Shaped to Your Organisation
Regulatory compliance software that adapts to your structure
The Structured Digital Database software is built to align with your structure, teams, groupings, functions, roles, systems & processes, no matter the complexity or scale of your operations. SEBI PIT compliance obligations are met however you are organised.
Emails Populate the SDD, Not You
Only the emails required, never the UPSI they contain
Required emails are captured automatically, with no CC’ing and no additional steps. And the actual details of the Unpublished Price Sensitive Information in the email body never enter the SDD software.
Your SDD Fits Your Existing Systems
Fits your workflows, your systems and your existing records
An SDD tool that integrates into your current workflows and systems. Whether you are migrating from existing SDD software or integrating into broader enterprise software, the application adapts to your needs without compromising compliance.
Fewer Steps to SEBI PIT Compliance
Multi-action capabilities for accuracy and speed
From logging of UPSI flows, to entity and person capture, to ready upload formats for multiple entries, Affinisio(SDD) covers each step, and brings the requirements of the SEBI (Prohibition of Insider Trading) Regulations, 2015 into one workflow.
Control Your SDD Compliance Policy
Set the quality controls and channels your policies require
Insider trading regulations meet your own organisational policies. Create one-click or ready-select entries for quality control, enable or disable options across the organisation, and manage communication channels, KYC and record retention alternatives.
Get AFFINISIO now!
Have questions? Connect with the Affinisio team.
Affinisio is trusted by market leaders, intermediaries like portfolio and asset management firms, merchant bankers, research firms, AIFs, credit rating agencies, by top 500 listed entities, legal and financial fiduciaries and conglomerates. List of clientele we have the pleasure of working with here.
Affinisio(SDD) FAQs
What is Affinisio(SDD)?
Affinisio(SDD) — Structured Digital Database — is a key module of the Affinisio suite by Affinisio Technologies LLP. It maintains the structured digital database mandated by Regulation 3(5) of the SEBI (Prohibition of Insider Trading) Regulations, 2015 in India, capturing every instance of unpublished price-sensitive information (UPSI) sharing — internal and external — with the nature of the UPSI, the persons sharing and receiving it, their identifiers, and precise time-stamps, in a strictly non-tamperable, internally maintained and automated database with a complete audit trail. Affinisio(SDD) is fully certified for regulatory compliance and is used by a large number of listed entities, conglomerates, financial institutions, intermediaries and fiduciaries, with specific variants that serve the automation needs of each.
Who is legally required to maintain a Structured Digital Database?
Under Regulation 3(5) of the SEBI (Prohibition of Insider Trading) Regulations, 2015, every entity that handles unpublished price-sensitive information (UPSI) must maintain a structured digital database. This includes listed companies — equity-listed, debt-listed, and companies proposed to be listed — SEBI-registered intermediaries such as merchant bankers, asset management companies, investment advisory firms, credit rating agencies, mutual funds and fiduciaries such as auditors, law firms and transaction advisors. Each entity must maintain its own SDD internally, and it cannot be consolidated across a group. Affinisio(SDD) serves all of these segments, with dedicated variants for listed entities, intermediaries or fiduciaries and mutual funds.
What must a Structured Digital Database capture?
For every instance of UPSI sharing, an SDD must record the nature of the UPSI, the identity of the person sharing it, the identity of every recipient, the PAN or other legally authorised identifier of each such person and their organisation, and the date and time of both the sharing and the entry. Affinisio(SDD) captures all of this in a single, guided workflow — logging each event as sender, receiver or central point of contact, auto-filing entries to every individual’s account, and applying compliance-controlled or custom UPSI descriptions — with automatic time-stamping and a non-tamperable audit trail on every record, up to and including fully internal and secure email auto-population.
How does Affinisio(SDD) ensure non-tamperability and a complete audit trail?
SEBI requires that once an SDD entry is made it cannot be edited or deleted — corrections must be logged as a new entry referencing the original — and that every entry carry a time-stamp and audit trail identifying who made it. Affinisio(SDD) enforces this by design: entries are immutable, every correction is captured as a record that can be referenced, and each action is time-stamped with the user’s identity in a continuous, non-tamperable audit trail. Because the database is maintained internally and never outsourced, the entity retains complete control, and the full trail is available on demand for board review, secretarial audit and SEBI inspection.
Can Affinisio(SDD) be deployed on-premises, and where is UPSI data held?
Yes. Affinisio(SDD) is available for on-premises deployment as well as privately controlled cloud under the user’s administration, so the structured digital database is maintained internally on infrastructure the entity controls. As SEBI requires, the software may be provided by a vendor, but the database itself is never outsourced — and Affinisio never has access to the UPSI. This keeps the confidentiality, integrity and control of the SDD entirely with the board and compliance officer, satisfying the internal-maintenance requirement while giving organisations with strict data-residency policies full ownership of their compliance data.
Can the structured digital database be maintained on cloud infrastructure?
It depends entirely on who administers that infrastructure. SEBI’s Comprehensive FAQs of 31 December 2024 do not prohibit cloud; they place the test on control and accountability, stating that the Board “is solely accountable for all aspects related to the maintenance of data on cloud or any other method” and must ensure the confidentiality, integrity and security of its data and logs. A private cloud tenancy that the entity owns, administers and secures itself is consistent with Regulation 3(5). Software supplied on a login basis, where the vendor maintains the server, is not — because the vendor may have access to the records. Affinisio(SDD) is deployed on-premises or within the entity’s own private cloud tenancy, never on Affinisio-maintained infrastructure.
Does Affinisio(SDD) support SDD compliance certificates and SEBI inspections?
Yes. Listed entities and other regulated persons must periodically certify their SDD compliance — many through an annual certificate issued by a Practising Company Secretary, and through the compliance certifications sought by the stock exchanges. Affinisio(SDD) is built for this: it generates audit-ready regulatory reports and extracts in the required digital formats on demand, and produces the complete, time-stamped audit trail for any period — giving the compliance officer everything needed for board review, secretarial audit, exchange certification and SEBI inspection, and turning periodic certification and regulatory requests into a ready exercise rather than a manual reconstruction. Affinisio(SDD) is also itself certified for regulatory compliance.
Faq
When to Record in Structured Digital Database?
SDD for Company in Insolvency
SDD Only Debt Listed
Third Party SDD Software
What’s New

Dual-SDD, Banks – Nishant Shah Comments in Mint.

UPSI – The List Expands

Insider Trading Risks In The Digital Age












