Compliance at QueChains

Trade compliance built
into your workflow

Customs declarations, sanctions screening, audit trails, and retention policies, so your team meets regulatory expectations without bolting on spreadsheets after the fact.

Customs Sanctions Audit logs GDPR

Compliance where work happens

QueChains embeds controls in procurement, shipments, warehouse, and customs modules, not in a separate compliance portal your team will ignore.

Customs & declarations

Manage import/export declarations with validated data and document attachments.

  • Declaration workflows with line-item HS codes and values
  • Incoterms, country, and declarant fields with validation
  • Status tracking from draft through cleared or held
  • Supporting documents linked to each declaration

Document management

Centralised document storage with versioning, expiry tracking, and sharing controls.

  • Upload, tag, and link documents to shipments and POs
  • Version history and audit trail per document
  • Expiry alerts for certificates and compliance docs
  • Secure signed-URL sharing with external partners

Audit & traceability

Every material action is logged for regulators, internal audit, and dispute resolution.

  • Immutable PostgreSQL audit logs for write operations
  • Actor, tenant, timestamp, and resource on each event
  • Shipment and customs event timelines
  • Exportable records for compliance reviews

Privacy & data governance

Privacy controls aligned with GDPR and CCPA for personal and operational data.

  • Data Processing Agreements for enterprise customers
  • Defined retention schedules by record type
  • Sub-processor transparency on request
  • Data subject rights workflows via privacy team

Day-to-day controls

Our customers use QueChains to run repeatable compliance workflows across global corridors, with evidence attached when auditors ask why a shipment cleared or a partner was approved.

  • Validate declaration data before submission to customs authorities
  • Screen new suppliers and carriers against sanctions lists
  • Maintain document packs (B/L, invoices, packing lists) per shipment
  • Track held, rejected, and cleared customs cases with notes
  • Role-based access so only authorized users approve declarations
  • Coordinate with security team for enterprise compliance questionnaires

Regulations we align with

We design for international trade, privacy, and security requirements. Certification status varies, contact us for current attestations.

πŸ‡ͺπŸ‡Ί
GDPR
EU personal data protection
πŸ‡ΊπŸ‡Έ
CCPA Ready
California consumer privacy
πŸ’³
PCI DSS
Card data via Stripe only

How long we keep records

Retention periods reflect trade law, tax obligations, and security needs. Full details are in our Privacy Policy.

Record typeRetentionRationale
Shipment & operations records7 yearsTrade compliance and operational audit requirements
Customs declarations10 yearsRegulatory mandate in most jurisdictions
Financial records & invoices7 yearsTax and accounting obligations
Audit logs5 yearsSecurity and compliance investigations
Account dataSubscription + 90 daysPost-termination purge window

Security program

Encryption, access control, and vulnerability disclosure, technical safeguards that support your compliance posture.

View security β†’

Privacy policy

How we collect, use, retain, and share personal data, including your rights under GDPR and CCPA.

Read privacy policy β†’

Compliance inquiries

Request a DPA, sub-processor list, or schedule a compliance review with our team.

[email protected]

QueChains provides tools to support compliance workflows, your organization remains responsible for meeting applicable laws and filing obligations with customs and trade authorities.

Need a compliance review?

Enterprise teams can request our security overview, data processing agreement, and trade compliance feature walkthrough.