Legal

Privacy Policy

Grace Global Fintech Private Limited (Website)

Effective Date: June 18, 2026Last Updated: June 18, 2026

Grace Global Fintech Private Limited ("Company," "we," "us," or "our"), a private limited company incorporated in India (CIN: U82990AS2026PTC030212), is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal data when you visit and interact with our company website (the "Website").

This Policy is specifically for users of our Website and forms part of our overall privacy framework. It is governed by the Digital Personal Data Protection Act, 2023 ("DPDP Act"), the Information Technology Act, 2000, and other applicable Indian laws.

By accessing or using our Website, you consent to the practices described in this Policy. If you do not agree, please do not use the Website.

1. Information We Collect

We collect the following types of information through our Website:

  • Personal Information: Name, email address, phone number, date of birth, address, and other contact details you provide when filling forms, subscribing to newsletters, or contacting us.
  • KYC and Identity Data: Government IDs (PAN, Aadhaar, etc.) if you initiate account opening or services through the Website.
  • Financial Information: Bank details or transaction-related data if you use any financial features available on the Website.
  • Technical and Usage Data: IP address, browser type, device information, operating system, referring URLs, pages visited, time spent, and clickstream data.
  • Cookies and Tracking Data: As detailed in our Cookie Policy.
  • Communication Data: Messages, queries, or feedback you send via contact forms or email.

We collect only the data necessary for the purposes stated below.

2. Purpose of Collection and Processing

We process your personal data for the following purposes:

  • To provide and improve the Website experience.
  • To respond to your inquiries, requests, and customer support needs.
  • To verify identity and perform KYC/AML checks where you apply for our services.
  • To send administrative notices, updates, and marketing communications (with your consent where required).
  • To analyze Website usage, troubleshoot issues, and enhance security.
  • To comply with legal and regulatory obligations (RBI, SEBI, or other authorities).
  • For internal business purposes such as audits and analytics.

3. Legal Basis for Processing

We rely on:

  • Your consent (where required);
  • Performance of a contract;
  • Legitimate business interests; or
  • Compliance with legal obligations under Indian law.

4. Consent and Withdrawal

We obtain your consent through clear affirmative actions (e.g., ticking a box or clicking "Submit"). You may withdraw your consent at any time by contacting us. Withdrawal may affect your ability to use certain features of the Website.

5. Sharing of Personal Data

We may share your data with:

  • Service Providers: Hosting providers, analytics tools (e.g., Google Analytics), payment processors, and KYC verification partners — under strict data processing agreements.
  • Affiliates: Within the Grace Global group for operational purposes.
  • Regulatory Bodies: When required by law or for compliance.
  • Business Transfers: In the event of merger, acquisition, or sale of assets.

We do not sell your personal data to third parties.

6. Cookies and Tracking Technologies

Our Website uses cookies and similar technologies. For detailed information, please refer to our Cookie Policy.

You can manage cookie preferences via your browser settings or our consent banner.

7. Data Security

We implement reasonable security measures including encryption, access controls, and secure servers to protect your data. However, no method of transmission over the internet is 100% secure. In case of a data breach, we will notify you and the Data Protection Board of India as required under the DPDP Act.

8. Data Retention

We retain your personal data only as long as necessary to fulfill the purposes outlined or as required by law. Once no longer needed, we securely delete or anonymize it.

9. Your Rights under DPDP Act

You have the right to:

  • Access your personal data.
  • Correct or update inaccurate data.
  • Erasure of data (subject to legal requirements).
  • Withdraw consent.
  • Grievance redressal.
  • Nominate another person.

To exercise these rights, contact our Grievance Officer (details below). We will respond within prescribed timelines.

10. International Data Transfers

Data is primarily stored and processed in India. Any cross-border transfer will comply with DPDP Act requirements.

11. Children's Privacy

Our Website is not intended for children under 18 years. We do not knowingly collect data from minors.

12. Third-Party Links

Our Website may contain links to external sites. We are not responsible for the privacy practices of those sites. Please review their policies.

13. Changes to This Privacy Policy

We may update this Policy periodically. The revised version will be posted on the Website with the updated "Last Updated" date. Continued use of the Website after changes constitutes your acceptance.

14. Grievance Redressal

If you have any questions, concerns, or complaints regarding this Privacy Policy or data processing, please contact:

Grievance Officer

Grace Global Fintech Private Limited
Shoppers Point Building, 5th Floor, Fancy Bazar,
Guwahati, Assam, India
Email: privacy@graceglobalfintech.com

We will address your grievance within one month (or as extended under law).


This Privacy Policy is governed by the laws of India. Any disputes shall be subject to the exclusive jurisdiction of courts in Assam, India.

By using our Website, you acknowledge that you have read, understood, and agreed to this Privacy Policy.

Grace Global Fintech Private Limited