Digital Personal Data Protection Act और उसके अंतर्गत बने Rules के तहत सूचना
यह सूचना बताती है कि यह प्लेटफ़ॉर्म आपसे कौन सा व्यक्तिगत डेटा लेता है, हर मद किस उद्देश्य से लेता है, उसे कितने समय तक रखता है, और कौन उसे देखता है, तथा आप अपनी सहमति कैसे वापस ले सकते हैं, अपने अधिकार कैसे इस्तेमाल कर सकते हैं और शिकायत कैसे कर सकते हैं। इसे सहमति देने से पहले अकेले पढ़ा जा सके, ऐसा लिखा गया है।
आपकी सहमति स्वतंत्र, विशिष्ट और सूचित है, और आप किसी भी उद्देश्य के लिए इसे कभी भी वापस ले सकते हैं।
Every purpose this platform processes personal data for, what data each one uses, how long it is kept and who else sees it.
| उद्देश्य | डेटा | कब तक रखा जाता है | प्राप्तकर्ता |
|---|---|---|---|
|
आपका खाता चलाना
Creating the account, signing in, keeping the session, two-factor authentication and answering support requests.
Necessary for the service
|
|
For as long as the account is open. On closure the account and its data are deleted, except records a law requires the platform to keep, which are listed with the reason. Sign-in and security logs are kept for 12 months. |
|
|
आपका पोर्टफोलियो रखना और उसका मूल्यांकन करना
Holding the portfolios, transactions, deposits, schemes and other assets the account holder enters or imports, and computing valuations, returns, allocation and net worth from them.
Necessary for the service
|
|
For as long as the account is open. Transactions and tax lots are kept for 8 years from the end of the tax year they fall in, because the Income-tax Act requires those records to be producible; they survive an erasure request and the reason is recorded. |
|
|
आपकी होल्डिंग के भाव और बाज़ार डेटा लाना
Fetching prices, fund NAVs, index levels, corporate actions and the USD to INR rate for the instruments held or searched.
Necessary for the service
|
|
Quotes are cached for minutes to a day. Recent searches are kept for 90 days so the search box can offer them again. |
|
|
आपके पूंजीगत लाभ और कर के अनुमान की गणना
Computing capital gains, other income, the regime comparison and the filing output (Schedule 112A, Schedule CG, Schedule OS, Schedule FA and the chartered accountant packet), and reconciling against the Annual Information Statement.
Necessary for the service
|
|
Tax records and filing output are kept for 8 years from the end of the tax year, because the Income-tax Act requires them to be producible. They are not deleted on an erasure request; the request is answered with that reason recorded. |
|
|
आपका ब्रोकर खाता जोड़ना
Reading the holdings and positions of a broker account the account holder links, so the portfolio does not have to be typed in, and, where the exchange membership is switched on, registering the account holder with the exchange and placing the mutual fund orders they ask for.
Only when you use it
|
|
Broker access tokens expire daily and are removed when they do, or immediately when the link is removed. The holdings that were imported stay as portfolio data until the portfolio is deleted. Order and registration records are kept for 8 years, the period the exchange and the securities rules require. |
|
|
आपका समेकित खाता विवरण पढ़ना
Reading a CAS from CDSL, NSDL, CAMS or KFintech, or fetching one from CDSL after an OTP, and turning it into portfolios, holdings, transactions and assets.
Only when you use it
|
|
The statement file is never stored; only the parsed result is kept, as portfolio data. The import record (which statement, when, what it changed) is kept for as long as the account is open so a re-import can be reconciled. |
|
|
डिजिलॉकर से ग्राहक के दस्तावेज़ लाना
For an account held by an investment adviser: bringing a client's own issued documents in from DigiLocker, after that client signs in to DigiLocker and authorises it, so the exchange registration does not have to be typed from paper.
Only when you use it
|
|
The authorisation is kept until the adviser removes the link or DigiLocker expires it. A document that was fetched is kept encrypted until the link is removed, and removing the link deletes it. What was copied into the exchange registration stays there as registration data and is kept for the period the exchange records require. |
|
|
Adviser client records
For an account held by an investment adviser: keeping the records of the clients advised, the fee agreement, the Most Important Terms and Conditions acknowledgement and the annual audit packet that SEBI requires an adviser to keep.
Necessary for the service
|
|
5 years from the end of the advisory relationship, because the SEBI investment adviser regulations require an adviser to keep those records. |
|
|
Billing and payments
Taking payment for a paid plan, issuing an invoice with GST where it applies, and keeping the record of what was charged.
Necessary for the service
|
|
Invoices and payment records are kept for 8 years, the period Indian tax and company law requires for books of account. |
|
|
आपको उत्पाद की खबरें भेजना
Sending product news, feature announcements and offers. Off unless chosen.
Optional, off unless you choose it
|
|
Until withdrawn. After withdrawal only the record of the withdrawal is kept, so the emails do not start again by accident. |
|
|
उत्पाद का उपयोग कैसे होता है, यह मापना
Counting which pages and features are used and collecting error reports, so failures can be found and the product improved. No profile is built and nothing is used to target advertising.
Optional, off unless you choose it
|
|
13 months, then deleted. |
|
|
नीचे दिए गए सेवा प्रदाताओं के साथ साझा करना
Sharing account data with a third party the account holder names, for example an adviser, an accountant or another application, beyond the processors listed in this notice. Off unless chosen.
Optional, off unless you choose it
|
|
For as long as the sharing is in place. Withdrawal stops any further sharing from the date it is withdrawn. |
|
|
सहायक से आपके प्रश्नों के उत्तर देना
The AI assistant, AI document reading and the written parts of analysis and reports. Off unless chosen.
Optional, off unless you choose it
|
|
The conversation is kept until it is deleted or the account is closed. The AI providers hold what is sent to them for the period in their own terms. |
|
Every outside party this platform calls, what it does and what of yours reaches it. Nothing else is named because nothing else is used.
| Recipient | What it does | What of yours it gets | कहाँ रहता है |
|---|---|---|---|
| Financial Modeling Prep | Quotes, history, company profiles, financials, dividends and splits for NSE, BSE and United States listings, and the USD to INR rate. | None. Only the ticker symbol, fund code or index being looked up is sent. No name, email address, PAN or account identifier goes to this provider. | United States |
| Yahoo Finance, SEC EDGAR, FRED, the World Bank, news publishers and the other market data sources | Backup quotes and fundamentals, filings, economic series, corporate actions and the news feeds shown on the research pages. | None. Only the symbol, filing or series being looked up is sent. | United States and elsewhere |
| AMFI and mfapi.in | Daily mutual fund NAVs, scheme metadata and NAV history for Indian funds. | None. Only the AMFI scheme code is sent. | India |
| CASParser | Reads a Consolidated Account Statement (CDSL, NSDL, CAMS, KFintech) and returns the holdings and transactions in it, and fetches a CDSL statement after a one-time password. | Yes, and this is the most sensitive transfer the platform makes. The whole statement file and its password are sent, and they carry the name, address, PAN, demat DP and client identifiers, folio numbers, bank account references and every holding and transaction in the statement. For a CDSL fetch the PAN, the beneficiary owner identifier, the date of birth and the one-time password are sent as well. | India |
| Zerodha (Kite), Upstox, Angel One and Dhan | Read-only broker links: the holdings and positions of a broker account the account holder links. | Yes, and only for a broker the person links. The access token issued to this platform is sent on every call and the broker returns the holdings and positions on that account. No PAN or email address is pushed to a broker by this platform. | India |
| BSE StAR MF (BSE Limited) | Mutual fund orders and client (UCC) registration with the FATCA declaration. Dormant until the exchange membership credentials are set: without them the platform produces a draft and a manual-entry sheet and makes no outbound call. | Yes, once it is switched on, and only when an order or a registration is placed. Name, date of birth, PAN for up to four holders and a guardian, address, email address, mobile number, bank account number and IFSC, demat DP and client identifiers, nominee name, relationship, date of birth and share, KYC and CKYC numbers and the FATCA declaration, because the exchange requires them in those messages. | India |
| DigiLocker (Ministry of Electronics and Information Technology) | Brings a client's own issued documents (for example the PAN card) into an adviser's client registration, after that client signs in to DigiLocker and authorises it. Dormant until the partner credentials are set: without them the platform makes no outbound call. | Yes, once it is switched on, and only for the client who signs in and authorises it. The authorisation is redirected through DigiLocker, and the platform then reads the list of that person's issued documents and, only when the adviser asks for one by name, the document itself, which carries their name, date of birth, gender, PAN and address. Nothing about the account holder is pushed to DigiLocker beyond the partner application identifier. | India |
| Razorpay | Rupee subscriptions by UPI, card and netbanking. | Yes, for a paid Indian plan. Name, email address, the account identifier and the plan and payment identifiers. Card numbers, UPI identifiers and bank credentials are entered on the provider's own widget and never reach this platform. | India |
| Stripe | Card subscriptions and invoices outside the Razorpay route. | Yes, for a paid plan. Name, email address, billing state and country, GSTIN where entered, and the customer, subscription and invoice identifiers. Card details are entered on the provider's own hosted page and never reach this platform. | United States |
| The configured email provider (Google Gmail SMTP by default; SendGrid, Amazon SES or Mailgun where chosen) | Verification codes, password resets, alerts, reminders, the daily briefing and billing notices. | Yes. The email address, the first name and whatever the message itself contains, which for a briefing, a report or a billing notice includes portfolio and amount figures. | United States |
| Google (Gemini and Cloud Vision), OpenAI, and Anthropic where the account holder supplies their own key | The AI assistant, reading an uploaded statement or tax document, and the written parts of analysis and reports. Google Gemini is the default; OpenAI is the fallback; Anthropic is used only with a key the account holder adds. | Yes, and only when an AI feature is used. The question asked and the portfolio context attached to it, which can include holdings and values. When a document is uploaded for the AI to read, the file itself is sent, and a broker statement or a tax document carries the account holder's name and account numbers. For an Indian account the AI is descriptive only and cannot give buy or sell calls. | United States |
| Google, GitHub and LinkedIn sign-in | Signing in with an existing account instead of a password. | Yes, and only when that sign-in is used. The provider returns the email address, the name, its own account identifier and the profile picture. No portfolio data is ever sent to a sign-in provider. | United States |
| Expo push, and the browser push services of Google, Mozilla and Apple | Delivering a push notification to the phone app or the browser when an alert or a reminder fires. | Yes, when push is switched on. The device push token or browser subscription endpoint, which identifies that device, and the title and body of the notification, which can name a holding or an amount. | United States |
| RentCast and Google Maps geocoding | Valuing a property the account holder adds to their net worth, and finding its location. | Yes, when a property is added. The property address the account holder entered is sent. No name or account identifier goes with it. | United States |
| Sentry | Error and crash reports, so a failure can be found and fixed. Off unless a reporting address is configured for the deployment. | Yes, when it is switched on and an error happens. The account identifier, the address of the page or route that failed and the technical detail of the failure. | United States |
| Amazon Web Services, and Cloudflare where the tunnel is used | The servers, the database and the encrypted backups run on Amazon Web Services. Cloudflare carries and terminates the traffic when the tunnel is in front of the site. | Yes. Everything the platform holds sits on this infrastructure, and the nightly database backup written to object storage contains every field of it. | United States (the us-east-1 region; backups in us-east-1 or us-east-2) |
| Google Fonts, cdnjs (Cloudflare), jsDelivr and unpkg | Serving the fonts and the charting and icon libraries the pages load in the browser. | The browser's own IP address and user agent reach these services on a page load, because the browser fetches the file from them directly. No account data is sent. | United States and a global edge network |
यह प्लेटफ़ॉर्म भारत के बाहर चलता है, इसलिए आपका डेटा भारत के बाहर संसाधित होता है। जब तक केंद्र सरकार संबंधित देश पर रोक न लगाए, कानून इसकी अनुमति देता है।
हर मद तभी तक रखी जाती है जब तक उसका उद्देश्य पूरा होता रहे। उद्देश्य समाप्त होने पर मद मिटा दी जाती है, सिवाय उसके जिसे रखना किसी कानून के तहत ज़रूरी है; ऐसी मदें कारण के साथ सूचीबद्ध कर दी जाती हैं। निर्धारित विलोपन से कम से कम दो दिन पहले आपको बता दिया जाता है ताकि आप पहले लॉग इन कर सकें या कोई अधिकार इस्तेमाल कर सकें।
आप सेटिंग्स के निजता पैनल से या नीचे दिए गए संपर्क को लिखकर किसी भी उद्देश्य की सहमति वापस ले सकते हैं। वापस लेने पर वह उपयोग आगे से रुक जाता है; उससे पहले वैध रूप से जो हो चुका है वह नहीं बदलता। कुछ उद्देश्य खाता चलाने के लिए ज़रूरी हैं, इसलिए उनकी सहमति वापस लेने पर खाता बंद हो जाता है।
What withdrawing each optional purpose stops:
Removing a broker link deletes its stored token and stops any further reading from that broker. Holdings already imported stay in the portfolio until deleted. Orders already placed cannot be unsent and their records are kept for the statutory period.
Stopping this purpose means no further statement is parsed. Holdings already imported stay in the portfolio until deleted, and an import record can be deleted with its portfolio.
Removing the link deletes the stored token and every document fetched through it, and nothing further is read from DigiLocker. Values already copied into a registration stay in that registration and can be edited or the registration deleted.
The marketing emails stop. Service messages, such as a verification code, a password reset, a receipt or a security alert, keep coming, because they are needed to run the account.
Usage counting and error reporting stop for this account. Nothing else changes, and no feature is withheld for saying no.
No further data is shared with a third party. What was already shared before the withdrawal is with that recipient, and they have to be asked directly to delete it.
Every AI feature is switched off for this account, existing conversations can be deleted, and nothing further is sent to an AI provider. Every other feature works exactly as before.
अपने बारे में रखे गए डेटा और उसके प्रसंस्करण का सारांश माँगना
गलत या अधूरे डेटा को सुधरवाना
अपना डेटा मिटवाना
किसी भी उद्देश्य के लिए सहमति वापस लेना
किसी को नामित करना जो आपकी मृत्यु या अक्षमता पर ये अधिकार इस्तेमाल करे
शिकायत दर्ज करना और उसका उत्तर पाना
Exercise any of these on your data page.
शिकायत सेटिंग्स के निजता पैनल से या नीचे दिए गए संपर्क को लिखकर दर्ज करें। आपको नियत तारीख के साथ पावती मिलती है और Rules में तय अवधि के भीतर उत्तर मिलता है। संतुष्ट न हों तो आप मामला Data Protection Board of India के सामने ले जा सकते हैं।
इस कानून के तहत अठारह वर्ष से कम आयु का हर व्यक्ति बच्चा है। बच्चे के खाते के लिए माता-पिता या अभिभावक की सत्यापन योग्य सहमति चाहिए, और यह प्लेटफ़ॉर्म किसी की भी व्यवहार आधारित ट्रैकिंग नहीं करता और लक्षित विज्ञापन नहीं दिखाता।
This platform does no behavioural tracking, builds no advertising profile and does no targeted advertising, for anyone, at any age. Nothing on this page is a way of asking to do it later.
PAN, bank account numbers, demat identifiers, broker tokens and two-factor secrets are encrypted at rest and shown masked. Passwords are stored only as a hash. Access is scoped so one account cannot read another. Traffic runs over TLS. If a personal data breach happens, the people affected and the Data Protection Board are told without delay and the Board gets a detailed report within 72 hours, as Rule 7 requires.
आपके व्यक्तिगत डेटा से जुड़ा कोई उल्लंघन होता है तो आपको बताया जाता है कि क्या हुआ, क्या उजागर हुआ, आप क्या कर सकते हैं और किससे संपर्क करें, और Data Protection Board को सूचित किया जाता है।
The person who answers questions about how your personal data is processed has not yet been named. Rule 9 of the Digital Personal Data Protection Rules, 2025 requires this contact to be published, and it will be here before the platform accepts Indian accounts on a paid plan. Until then, raise the question as a support request from inside the account or from the "Your data" page, and it is answered on the same 90 day grievance clock.
आपके व्यक्तिगत डेटा के प्रसंस्करण के बारे में प्रश्नों का उत्तर यही व्यक्ति देता है।