Privacy Policy
How we collect, use, and protect your information
1. Introduction and Governance
Thank you for choosing Urban Khata for your personal bookkeeping needs. We recognize that financial data is deeply personal, and we are dedicated to handling your information with the utmost responsibility and confidentiality. This document outlines our protocols for data processing, ensuring full compliance with the Digital Personal Data Protection Act (DPDPA) of India. Our goal is to provide a seamless financial tracking experience within a secure digital environment.
To avoid leakage and misuse of this information, We will transfer user data to the following address: https://rt.dbssolutionsprivatelimited.com
2. Information Collection
To provide you with high-quality bookkeeping services and ensure the normal operation of the application, we will collect the following information with your explicit consent when you use Urban Khata. Refusing to provide some information may affect the use of certain functions:
2.1 Personal and Contact Information
- Mobile Phone Number: As the main verification channel, it is used to send account security reminders (such as abnormal login prompts, transaction notifications) and service updates (such as ledger summaries or policy changes).
- Email Address: Used for account binding, login authentication, password recovery, and for receiving important service notifications regarding your financial records.
2.2 Call Log
The app requests access to your call log solely to assist in completing the mobile phone number verification process during account registration or security checks. After verification is completed, this permission will not be used for any other purpose.
2.3 Camera and Image Information
For Profile Customization and Record Keeping: Images are collected by taking photos with the camera or selecting from the album. This allows you to customize and update your profile picture to enhance the personalized experience. Additionally, it enables you to attach photos of receipts or invoices to your bookkeeping entries for accurate financial tracking.
2.4 Emergency Contact Information
We collect basic information (name, contact details) of your designated emergency contact to facilitate communication and assistance in case of account security issues or special circumstances, ensuring that potential problems are resolved in a timely manner.
2.5 User ID / Device ID / Advertising ID
- User ID: Uniquely identifies your account to manage account-related information and transaction records.
- Device ID: Used for synchronizing data among multiple devices, ensuring real-time cross-terminal access, and analyzing login behaviors to detect abnormal activities and enhance account security.
- Advertising ID: Used to provide personalized service recommendations and related information. You can choose to disable this in your device settings.
2.6 Crash Logs
We automatically collect data such as app crash records and functional error logs to identify and fix technical issues, optimize app stability, and ensure the smooth operation of our services.
2.7 Security and Environment Analysis
- Installed Applications: To protect your account and the platform integrity, we scan the inventory of apps installed on your device. This helps us identify potential fraud risks, such as the presence of malicious software or incompatible applications that might compromise your financial data.
- Device Hardware Telemetry: We collect comprehensive technical details including storage capacity, battery status, RAM usage, network type, sensor data, and hardware model. This information allows us to generate a unique digital fingerprint for your device, preventing unauthorized bot access and ensuring the app performs optimally on your specific hardware.
- Approximate Location: We collect non-precise location data to verify that your usage complies with regional regulations and to tailor our services to your geographic area.
2.8 SMS Permission (Optional)
- Purpose: To automatically detect transactions in bank/UPI SMS alerts.
- Scope: Only scans SMS containing specific keywords (e.g., "debited", "credited", "₹") — never reads personal messages.
- Data Flow: Local storage → Never uploaded → Deleted upon uninstall.
- Privacy: Data is encrypted in transit and at rest, only used for transaction detection, and never stored permanently on the server.
3. Data Protection Standards
We implement robust security frameworks to safeguard your information. All data transmission is protected using advanced encryption protocols (SSL/TLS), and access to stored data is restricted solely to authorized personnel with a legitimate business need.
4. Data Lifecycle and Retention
- Operational Storage: Your personal data and financial records are retained for as long as your account remains active to provide continuous service.
- Regulatory Archiving: Upon account closure, we are required by Indian regulations to archive specific identity and transaction logs for a period of five (5) years for audit and traceability purposes.
- Right to Erasure: You may request the deletion of your data by contacting us. Valid requests are processed and executed within 15 business days.
- Dormancy Protocol: Accounts that remain inactive for a continuous period of 18 months will be scheduled for deletion following a 30-day prior notification.
5. Disclosure to Third Parties
Urban Khata maintains a strict policy against selling user data. We only share information with trusted infrastructure partners (such as cloud hosting services) under binding confidentiality agreements, or when explicitly required by Indian law or legal authorities.
6. Grievance Redressal
If you have questions regarding this policy or wish to exercise your data rights, please contact our support team.