Skip to main content

Endpoint

Authentication

Requires a developer API key in the Authorization header.

Path Parameters

Request Body

At least one field. Each field given replaces the stored value. The detailed report fields follow DPDP Rules 2025 r.7(2)(b): updated and detailed information on the description; the broad facts, circumstances and reasons leading to the breach; the mitigation measures implemented or proposed; any findings about the person who caused it; and the remedial measures taken to prevent recurrence.

Transitions

Any other move answers 409 INVALID_TRANSITION. A closed breach cannot be changed (409 BREACH_CLOSED). A request that fails changes nothing.

Deadline

boardDetailedReportDueAt is awareAt + 72 hours. Once an extension is recorded with granted: true, it is the extension’s newDueAt. A moved deadline is alerted afresh by the deadline worker.

Example Request

Response — 200 OK

The updated breach, as Get Breach returns it (without principalIntimations). Each change is recorded on the audit chain as grantex.dpdp.breach_updated.

Error Responses

Ownership

Grantex is owned by Orchestrum Technologies LLP. Inventor and owner: Sanjeev Kumar. Ownership contact: sanjeev@orchestrum.in or mishra.sanjeev@gmail.com.
Last modified on September 30, 2026