Legal

Privacy Policy

Last updated: April 2026

Indian Data Residency

All data stored on Indian servers

AES-256 Encryption

Military-grade encryption in transit & at rest

Zero-Retention

Data purged after processing & export

1. Information We Collect

When you use StatementDekho, we collect information necessary to provide our bank statement analysis services:

  • Account registration details (name, email, phone number)
  • Bank statement files you upload for processing
  • Transaction data extracted during analysis
  • Usage analytics and feature interaction data
  • Payment and billing information (processed by Razorpay)

2. How We Use Your Information

We use your information exclusively to:

  • Process and analyze uploaded bank statements
  • Generate categorized transaction reports
  • Run forensic audit analyses when requested
  • Provide customer support and respond to inquiries
  • Send product updates and security notifications

3. Data Storage & Security

All data is stored on Indian servers located in the Mumbai (ap-south-1) region. We employ AES-256 encryption for data at rest and TLS 1.3 for data in transit.

🇮🇳 Indian Regulatory Compliance

StatementDekho complies with the Information Technology Act, 2000, the Digital Personal Data Protection Act, 2023, and all applicable RBI guidelines for financial data handling.

4. AI Processing

🤖 AI Processing Notice

Your bank statement data is processed by our proprietary AI models hosted exclusively on Indian infrastructure. No data is sent to third-party AI services. All model inference happens within our secure Indian data centers.

Our AI models are trained on synthetic and anonymized data. Your actual bank statement content is never used for model training purposes.

5. Third-Party Services

We integrate with select third-party services for specific functions: Razorpay for payment processing, AWS India (Mumbai) for cloud hosting, and Google Analytics for anonymous usage statistics. No financial data is shared with these parties.

6. Your Rights

Under the Digital Personal Data Protection Act, 2023, you have the right to:

  • Access all personal data we hold about you
  • Request correction of inaccurate data
  • Request deletion of your account and all associated data
  • Withdraw consent for data processing at any time
  • File a grievance with our Data Protection Officer

7. Data Retention

Uploaded bank statements are processed and the extracted data is retained only until you export or download the results. Original files are automatically deleted within 24 hours of processing. Account data is retained as long as your account is active and for 30 days after deletion request.

8. Changes to This Policy

We may update this privacy policy from time to time. We will notify you of any material changes via email and by placing a prominent notice on our platform at least 30 days before the changes take effect.

9. Contact Us

For privacy-related questions, data access requests, or to reach our Data Protection Officer, contact us at privacy@statementdekho.com.