FYNO FLOWS

SECURITY & GOVERNANCE

Every change approved, every action logged

Most platforms treat governance as a settings page. Fyno embeds maker-checker approvals, version control, and immutable audit logs into every action.

SSO
Maker-checker
Immutable audit trail
about fyno illustration

In BFSI, governance is the prerequisite. Not the add-on.

ACCESS & IDENTITY

Enterprise SSO and MFA with no separate user database

Unified template editor

SINGLE SIGN-ON

Your identity provider only

Azure AD, Google Workspace, Okta, or any SAML/OIDC provider. Domain-based auth, no passwords in Fyno. Deprovision once, access revoked everywhere.

MULTI-FACTOR AUTH

Second factor on every login

MFA is enforced on every login and every privileged action. Applies to platform access, Meta WhatsApp Business account setup, and vendor credential changes.

Unified template editor
Unified template editor

MAKER-CHECKER APPROVAL

Nothing goes live unsigned

Templates, campaigns, routing configs, and vendor credentials. Multi-level approval chains configurable by role. Every sign-off logged in the audit trail.

something

Reconciliation engine

The observability layer you need to track vendor & channel performance, stay compliant and gain complete transparency in your communications

Reconciliation engine
Reconciliation engine

Runtime enforcement

Every send checked against your block, consent, and frequency rules

Maker-checker approvals

SUPPRESSION LIST

Bank-owned blocklist

Upload numbers to suppress. Checked before every send. Blocked messages logged with reason.

Version control

SLA ENFORCEMENT ENGINE

Track every vendor SLA

OTPs in 5s. Transactional in 15s. Monthly report shows every vendor breach by category.

AUTOMATED CAMPAIGNS

Audit and version control

Every change versioned, every action traceable

Who, what, when, every time

Template edits, routing changes, campaign sends, consent updates. Forwarded to external SIEM.

Rollback without engineering

Every template and config change creates a version. Side-by-side diff. Revert to any prior state.

bank.in and DIP enforced

URL rewriting to bank.in domain. Registered mobile validation via DIP. Header rotation managed.

Vendor intelligence illustration
Why should governance be in-built into the notification platform?
Criteria
Template changes
Config changes
Audit trail
Version control
Identity management
Vendor SLA enforcement
Recipient suppression
Platform with Add-On Governance
Edit and publish directly
Admin makes changes directly
Basic activity log
Manual backup or none
Platform-managed passwords
Manual vendor reports, if any
Per-vendor blocklist sync
Fyno Security & Governance
Maker-checker before every publish
Approval required for routing/creds
Immutable, SIEM-integrated
Automatic versioning with diff
SSO with enterprise identity
Automated monthly breach reports
Bank-owned blocklist enforced pre-send
What You Gain
No template goes live without compliance sign-off.
No single individual can alter live communication flows.
One log answers any RBI auditor question about any action.
Rollback to any prior version without engineering involvement.
No separate credentials to manage, provision, or revoke.
Renegotiation data backed by platform-side evidence.
Wrong-number, fraud, and closed-account sends are blocked once, everywhere.

While you’re still here, check out some other use-cases!

Quality assurance

Streamline your communication stack with Fyno's universal API

Fyno provides a single API and standardized payload, giving you instant access to any communication channel or provider, without any engineering effort.
Quality assurance

Save up to 40% on communication cost without any manual effort

Fyno automatically identifies areas where you are overspending and helps you optimize your messaging costs with no extra effort from your team.
cost-optimization-hero image
cost-optimization-hero image
Quality assurance

Processing every message with lightening speed

From authentication codes to payment confirmations, Fyno’s high TPS & low latency infra ensures real-time delivery at very high volumes.
real-time
real-time
Quality assurance

Upgrade your WhatsApp banking experience

Say goodbye to chat-based WhatsApp banking. Fyno helps you deliver guided, app-like banking experiences through WhatsApp - just like your mobile app, but without the development complexity.
about fyno illustration
about fyno illustration

Frequently asked questions about Fyno Security & Governance

How does maker-checker work for template changes?

Every template edit moves through a configurable approval chain: draft, review, and approval before going live. The template creator submits changes, and the designated approver receives a notification. Approvers can review the changes, including a side-by-side diff of the before and after state, and approve or reject. Multiple approval levels are supported: first approval, second approval, DLT portal approval, then live. Every approval step creates an audit trail entry with timestamp, approver identity, and decision. No template reaches any channel without sign-off.

Does maker-checker apply to campaign sends as well?

Yes. An ad-hoc campaign targeting any audience will not send until an approver approves. Approvers receive email notifications with campaign details and estimated cost. Approval can be completed via email link, with optional IP-based access restrictions, or through the application. This prevents bulk sends without oversight. The audit trail records who approved the campaign, when, and what audience and template were used.

How does SSO integration work?

Fyno integrates with Microsoft Azure Active Directory and Google Workspace. Domain-based authentication enforces SSO login for all users from a specific email domain. Fyno does not maintain passwords or user credentials. Access is controlled entirely through your existing identity provider. When an employee leaves and their identity provider access is revoked, their Fyno access is automatically revoked. No separate deprovisioning needed.

What does the audit log capture, and can we integrate it with our SIEM?

The audit log captures every action on the platform: template edits, routing modifications, campaign executions, consent policy updates, approval decisions, and configuration changes. Each entry records who performed the action, what changed, when, and the before/after state. Logs are forwarded to callback endpoints for integration with external audit systems including SIEM and compliance dashboards. The trail is designed to satisfy RBI IT audit requirements where auditors trace any communication event back to its configuration, approval, and execution chain.

How does version history and rollback work?

Every template and configuration change creates a new version. The version history captures all edits with diff-level detail: what changed, who changed it, and when. Any prior version can be viewed side-by-side with the current live version. Rollback is a single action: if a live template causes delivery failures or a compliance issue is identified, teams revert to a previous approved version without engineering involvement. Test versions can be created and tested before going live. The version history is immutable and cannot be edited or deleted.

Does Fyno support config change approval beyond templates?

Yes. Routing configuration changes, provider credential updates, consent policy modifications, and short link domain whitelisting all require approval through the governance workflow. Template deletions, including removal of unused templates per TRAI guidelines, are tracked through the approval flow. The same maker-checker logic that governs templates extends to all system configuration, ensuring that no single individual can make changes that affect live communication flows without oversight.

How does Fyno's governance model support RBI IT audits?

Fyno provides three things RBI auditors look for. First, an immutable audit trail that traces every communication event back to its template, approval chain, and execution details. Second, version control with tamper-evident change records that show the complete history of every template and configuration. Third, maker-checker approvals that demonstrate segregation of duties: the person who creates a template is not the person who approves it. All records are timestamped, retained according to your data retention policy, and exportable for audit review.

How does Fyno’s SLA Enforcement Engine track vendor performance?

Fyno measures every message against the SLA category it belongs to: OTPs at 5 seconds, transactional at 15 seconds, service messages at 30 seconds, marketing within its declared window. Each delivery is timestamped at vendor handoff and at final delivery callback. The platform compares actual delivery time against the SLA threshold per category, per vendor, per channel. A monthly report surfaces every breach with the message ID, vendor, channel, expected SLA, and actual delivery time attached. Banks use this report in two ways. First, to enforce contractual SLA penalties with their CPaaS vendors using objective platform-side evidence. Second, to make data-backed routing decisions, shifting traffic to better-performing vendors before customers feel the impact. The SLA report runs automatically and is included in the audit trail for regulatory review.

How does the suppression list or internal blacklist work?

Suppression list is a bank-owned blocklist that Fyno checks before every send across every channel. Banks upload mobile numbers or email addresses they want to suppress, with an optional reason tag (fraud complaint, customer request, account closure, regulator instruction). Every campaign send, every triggered alert, and every transactional message is checked against the suppression list at the routing layer in real time, before reaching any vendor. Blocked messages are logged with the recipient, the reason code, and the timestamp, and surface in the audit trail. This protects against three scenarios. First, mistyped numbers that risk sending bank data to the wrong person. Second, customers who lodged a complaint but whose preferences may not yet have propagated to every source system. Third, accounts closed in CBS but still active in marketing databases.

Book a demo

Personalized onboarding and integration help to make the most of Fyno for your workflows.

Get Started

Discover insights

Learn how teams streamline communication, manage templates, and scale faster with Fyno.

Explore Fyno Blogs