This Policy is published in compliance with the following:
- Section 43A of the 2000 Information Technology Act ("Act").
- Regulation 4 of the 2011 IT (Reasonable Security Practices and Procedures and Sensitive Personal
Information) Rules ("SPI Rules").
Definitions
Personal Information
Personal Information" is the term defined by the SPI Rules and refers to
any data that pertains to an individual and, either directly or in conjunction with other
information held by a corporate entity, can be used to identify that individual. This category
encompasses details like a person's name, address, phone number, and similar particulars.
Sensitive Personal Data Or Information
As per the SPI Rules, "Sensitive Personal Data" encompasses information
concerning an individual's
- Passwords: Information related to access credentials.
- Sexual Orientation: Data indicating a person's sexual orientation.
- Biometric Information: Data that includes unique biometric identifiers.
- Financial Information: Such as bank account numbers, credit card details,
debit card details, or other payment instrument particulars.
- Physical, Physiological, and Mental Health Conditions: Information
regarding an individual's well-being, encompassing their physical, mental, or physiological
health.
- Medical Records and History: Information pertaining to an individual's
medical records and health history.
If our entity receives data under these categories for processing or storage in
accordance with a legal contract, we will do so exclusively for the intended purposes.
Exclusions : Notably, public records or information disclosed in accordance with the Right to
Information Act, 2005, or any other applicable law will not be categorized as sensitive personal
information or data.
We value your privacy and are committed to protecting your information in accordance with the above
definitions.
Payment information
We define "Payment Data" as comprehensive transaction details and data
associated with a payment or settlement transaction. This encompasses all data collected,
transmitted, or processed as part of a payment message or instruction. Payment Data includes various
categories, such as:
- Customer Data: This includes information like the customer's name, mobile
number, email address, Aadhaar number, PAN number, and other relevant details.
- Payment Sensitive Data: This category involves both customer and beneficiary
account details, ensuring secure and accurate transactions.
- Payment Credentials: This pertains to essential security elements like OTPs,
PINs, passwords, and similar safeguards.
- Transaction Data: This category covers transaction specifics, including
originating and destination system information, transaction references, timestamps, and
transaction amounts.
Consent for personal information collection
Our Website provides users with the option to access, browse, or utilize our
services without requiring the disclosure, storage, possession, handling, or dealing of their
Personal Information.
Users willingly grant their explicit consent for the use, disclosure, storage,
possession, receipt, handling, or dealing of their Sensitive Personal Data or Information. This
consent is provided during the account creation process on the Website, aligning with SPI Rules.
Wegofin Digital assumes that when a minor shares Personal Information or
Sensitive Personal Data or Information, adequate and lawful parental consent has been obtained.
We adhere to these principles while safeguarding your information in order to
ensure your privacy.
Information we collection
To create an account, engage in transactions, and access customer support
services, users should provide their specific & sensitive Personal Information to create an account,
engage in transactions, & access customer support services. We may collect the following types of
data.
- Name and Age: Your personal identification details.
- Password and Username: For account security.
- PAN (Permanent Account Number): Required for specific transactions.
- User's Account Password: Ensuring secure access.
- Address Postale: Your postal address details.
- Email Address: For communication purposes.
- Phone Number: Contact information.
- IP Addresses (via Cookies): For website analysis.
- Website URLs: Information regarding your online journey.
- Card Number, Expiry Date, and Payment Instrument Details: For payment
processing.
- Feedback, Queries, Emails and Suggestions: User-generated input.
- Third-Party Information: Details about a user's activities or postings.
- Mobile/Tab Device Identifier: Information about the device where the app is
installed.
We may also request additional information as needed to access and use our
Website.
Purpose collection
Please be aware that we collect sensitive personal data or information
for specific, transparent, and lawful purposes, including.
- Providing a secure, efficient, and personalized user experience on our Website.
- Enhancing our products and services.
- Addressing general inquiries or complaints.
- Sending emails about products, services, newsletters, and policy changes.
- Analyzing website traffic and conducting demographic, interest, and behavior research.
- Developing new products and services.
- Offering customer support.
- Detecting and preventing errors, fraud, criminal activity, abuse of services, and technical
issues.
- Enforcing our Terms and Conditions.
- Providing co-branded services in partnership with corporate entities.
The lawful purpose for collecting Personal Information or Sensitive Personal
Information will always be disclosed during the data collection process.
How information is collected
We collect information when users access, browse, and use our Website, interact
with our social media profiles, or contact our online customer support. Information is obtained both
through voluntary user input and automatic data collection methods, such as analysis of online
behavior using cookies.
Users have the option to decline to provide certain information or withdraw their
consent to provide specific data at any time, as outlined in this Policy. In case of consent
withdrawal, we will retain your Personal Information or Sensitive Personal Data or Information for a
period determined by us or as required by law. Please note that revoking consent may result in
limited access to certain features and services on our Website.
Disclosure Of Information
Sharing of Personal and Sensitive Data
This Privacy Policy grants permission for the sharing of your Personal
Information and Sensitive Data or Information with our trusted affiliates and other third parties,
but only to the extent necessary and for the lawful purposes outlined in this Policy. We do not
disclose any Personal Information or Sensitive Personal Data or Information to government
institutions or authorities unless such disclosure is mandated by law, authorized by a government
entity, required by a judicial order, essential for safeguarding legal rights, pursuing remedies,
defending against charges, or facilitating a change in ownership, merger, restructuring, or sale of
our business assets, where the transfer of your Personal Information or Sensitive Personal Data or
Information to a third party may occur.
Use of cookies and technologies
We employ "cookies" and similar technology to enhance your experience on our
Website. Each visitor is assigned a unique random number, known as a User Identification (User ID),
through these technologies. This aids us in understanding user interests and improving the
effectiveness and usability of our Website. When you visit our Website, our web servers
automatically collect limited information about your computer, including your IP address, which
guides data transmission over the internet.
Our Website may contain "cookies" or similar devices placed by third parties. We
disclaim all responsibility for the use of cookies by third parties.
Links to other websites
Our Website may contain links to external websites that collect information from
users. Please note that we are not responsible for the privacy policies, practices, or content of
these linked websites. This Privacy Policy does not cover the data collection and usage practices of
such external sites.
Correction and updation of information
Users are encouraged to promptly inform us if any provided Personal
Information or Sensitive Personal Data or Information is inaccurate, incomplete, or misleading.
Users also have the option to review, update, or modify their information by accessing their account
on our Website. It is the user's responsibility to ensure the accuracy and truthfulness of their
information.
Retention information
Your Personal Information and Sensitive Personal Data or Information may be
retained and used until the following conditions are met:
- The purposes for using your information, as described in this Policy, no longer apply.
- There is no legal requirement or obligation for us to retain your information, either due to
applicable laws, regulations, contractual commitments, or legitimate business objectives.
- The retention of your information is not necessary for the establishment, exercise, or defense
of any legal claims.
Mailers
We may send direct mailers to users at the email addresses they provide. Users
can opt-out of receiving such mailers by clicking the provided link at the bottom of each mailer or
through other appropriate means. Upon choosing to opt out, we will take all necessary steps to
remove the user from our mailing list. Users can also manage their contact information and
preferences on the "Profile" page of their account with us.
Advertising
When you visit our Website, third-party advertising companies may serve ads.
These companies may use anonymized information (information that excludes your name, address, email
address, or mobile number) to display ads related to products and services you may find interesting.
This anonymized data is typically presented as aggregated statistics regarding traffic to various
pages on our Website.
Data Localization
All entities within the payments ecosystem, including system participants,
service providers, intermediaries, payment gateways, and third-party vendors engaged by Wegofin
Digital to provide payment services, must store all Payment Data in India-based systems.
However, a copy of the domestic component may be stored abroad for
cross-border transaction data involving both foreign and domestic components.
Security measures
We have implemented robust security measures to prevent misuse, unauthorized
access, modification, disclosure, or destruction of your Personal Information and Sensitive Personal
Data or Information in our possession. Your information is stored on servers protected by firewalls,
with stringent password protection and restricted access on a need-to-know basis. We regularly
review and update our security safeguards to maintain the integrity of your information. In the
event of a security breach that may harm a user, we will promptly notify the affected user and take
steps to mitigate immediate harm.