Reference

How sattai Handles Your Personal Data

At sattai, we take the handling of your personal data seriously — this page sets out exactly what we collect, why we collect it, how long we keep…

Data collected with your consentStored on secured serversAccessible to you on requestGoverned by Indian data lawContact us to update your record
sattai How sattai Handles Your Personal Data
REACH OUR PRIVACY TEAM

Contact Us About Your Data

If you want to see the data we hold about you, request a correction, or ask us to delete your record, our privacy team is reachable through the channels below. We aim to respond to all data-related requests within five working days of receipt.

Team online

Email Privacy Team

Send your data request or correction query to our dedicated privacy address at sattai.net. Include your registered email so we can locate your account record without delay and respond within five working days.

Live Chat Support

Open the chat widget inside your account dashboard and select the Privacy or Data topic. Our support agents are available during extended hours to log your request and escalate it to the privacy team immediately.

Written Request Form

Fill in the data-request form available in your account settings under the Privacy section. The form captures your identity details so we can verify the request is from the account holder before processing any changes.

DATA HANDLING STANDARDS

Explore How We Protect and Manage Your Information

We apply a layered approach to data security — encryption in transit, access controls on stored records, and scheduled data-retention reviews.

Encryption in Transit and at Rest

Every data exchange between your device and sattai servers travels over TLS encryption. Records stored in our databases are encrypted at rest, meaning raw account data is never readable without the correct decryption keys held by authorised personnel only.

Cookie Use and Your Choices

We use session cookies to keep you logged in and analytics cookies to understand how pages are used. You can adjust cookie preferences in your browser settings at any time; disabling analytics cookies does not affect your ability to access the platform or complete transactions.

Account Security Practices

Your account is protected by password hashing and optional two-factor authentication via your registered mobile number. We will never ask for your password by email or chat — if you receive such a request, treat it as unauthorised and contact our support team at once.

Data Retention Schedule

We keep account records for as long as your account remains active and for a defined period after closure as required by applicable Indian regulation. Once the retention window closes, records are deleted from our systems or anonymised so they can no longer identify you.

Who Can Access Your Data

Internal access to personal data is restricted to staff who need it to perform their role — account operations, fraud review and payment reconciliation teams. Access is logged and reviewed quarterly. No department outside these three has standing access to raw personal records.

How to Request Changes to Your Record

Submit a correction or deletion request through the privacy form in your account settings or via email to our privacy team. We verify your identity first, then action the request within five working days and confirm completion by email to your registered address.

Switch Through Common Privacy Questions

The questions below cover the data rights and privacy practices we are asked about most frequently. If your question is not answered here, reach out through the support channels listed on this page and our privacy team will respond directly.

We collect your name, email address, phone number, date of birth and payment identifiers — for example, the UPI VPA or Paytm handle you use to fund your account. We also log your device type, IP address and session timestamps each time you access the platform.

Payment identifiers are shared only with the payment processor completing your transaction — UPI rails, Paytm or PhonePe gateways as applicable. We do not store full transaction credentials on our own servers; only reference IDs needed for reconciliation and dispute resolution are retained.

Yes. Submit a data-access request through the form in your account settings or by emailing our privacy team. After we verify your identity, we will provide a summary of the personal data held in your account record within five working days.

Use the deletion request form in your account settings or email the privacy team with your registered email address in the subject line. We will verify your identity, close your account if it is still active, and delete or anonymise your data within the applicable retention window.

No. We do not sell or rent your personal data to advertisers or data brokers. The only third parties who receive your data are payment processors handling your transactions and service providers who operate our infrastructure — all bound by data-processing agreements with us.

We retain your data for the period required under applicable Indian regulation after account closure. Once that period expires, records are permanently deleted from our live systems or anonymised so they can no longer be linked back to you as an individual.

Contact our support team immediately via live chat or email. Change your account password and enable two-factor authentication if you have not already. We will investigate the activity on our end and inform you of findings within two working days of your report.