Better Credit. Better Future.
Partner With Us
Legally Binding & DPDP Act 2023 Compliant

PRIVACY POLICY & DATA TERMS

Your data is protected with bank-grade security. Read how we collect, use, and safeguard your personal information under Indian law.

Read Policy
256
Bit SSL Encryption
Full
Data Confidential
DPDP
Act 2023 Compliant
RBI
Guidelines Followed
Privacy At a Glance
Updated October 2026
🔒
Data Security
256-bit SSL encryption always active
Active
📋
Legal Compliance
IT Act 2000 & DPDP Act 2023
Verified
🤝
Data Sharing
Only with credit bureaus & banks
Limited
📧
Grievance Officer
grievance@corvantafinserv.com
30 Days
🔐
Bank-Grade Security
256-bit SSL encryption protects every data transfer and storage
⚖️
Fully Compliant
IT Act 2000, DPDP Act 2023 & applicable credit bureau regulations followed
🙅
No Data Selling
Your personal data is never sold to third parties for profit
📬
Easy Opt-Out
Unsubscribe from marketing at any time via email or phone
📅 Last Updated: October 2, 2026
⚠️
Legal Notice — Please Read Carefully

By accessing or using Corvanta Financial Services's website and services, you expressly consent to the collection, storage, processing, and transfer of your personal information as described in this Privacy Policy. If you do not agree, please discontinue use of our services immediately.

At Corvanta Financial Services ("Company", "we", "us", "our"), we value your privacy and are committed to protecting your personal information. This Privacy Policy constitutes a legally binding agreement between you ("User", "you", "your") and the Company, governed by the laws of India.

01
Information We Collect

We collect only the information necessary to provide you with our credit report review services. By using our platform, you acknowledge and agree that we may collect the following categories of data:

🪪Identity & Verification

Full name, date of birth, PAN, Aadhaar, Voter ID, Passport, Driver's License, and other government-issued identification documents.

📞Contact Information

Email address(es), phone number(s), WhatsApp number, postal address, and any alternate contact details you provide.

💳Financial & Credit Data

Credit reports from all four bureaus (Credit Report, Experian, Equifax, CRIF High Mark), loan details, repayment history, outstanding balances, and settlement records.

💻Technical & Device Data

IP address, device ID, browser type, operating system, location data (GPS where permitted), cookies, tracking pixels, and browsing behavior on our site.

💬Communication Data

Call recordings (with prior consent), chat transcripts, email correspondence, WhatsApp messages, and any other communication you have with our team.

🔐Sensitive Personal Data

As defined under the DPDP Act 2023 and IT Rules 2011, you expressly consent to collection of sensitive data including financial information and government identifiers.

02
How We Use Your Information

By providing your information, you authorize us to use it for the following purposes:

  • Providing credit repair, dispute resolution, and financial advisory services tailored to your specific situation.
  • Verifying your identity and conducting background checks required for regulatory compliance.
  • Processing payments, service fees, and refunds as per our published Refund Policy.
  • Sending marketing and promotional communications — you may opt out of these at any time.
  • Sharing with affiliated companies, partners, and service providers strictly for service delivery.
  • Transferring data in the event of a business sale, merger, or acquisition (you will be notified).
  • Legal compliance, fraud detection, and enforcement of our contractual rights.
  • Creating anonymized, aggregated data for internal business analytics and service improvement.

We will never sell your personal data to third-party marketers. Any sharing is strictly for the purpose of delivering your credit report review services.

03
Legal Basis & Consent

We process your personal data on the following legal grounds as defined under Indian law:

  • Your Express Consent — By using our services, you provide consent which remains valid until withdrawn in writing.
  • Contractual Necessity — To fulfill our service obligations as agreed with you.
  • Legitimate Business Interests — Including fraud prevention, service improvement, and business optimization.
  • Legal Obligations — Compliance with RBI, SEBI, Income Tax Act, and Consumer Protection Act requirements.

Withdrawal of consent may result in immediate termination of our services. Work already performed on your case will not be eligible for refund as per our Refund Policy.

04
Information Sharing

We share your personal information only as necessary to deliver our services. You authorize us to share with the following parties:

  • Credit Bureaus — Credit Report, Experian, Equifax, and CRIF High Mark, to file disputes and obtain your credit reports.
  • Financial Institutions — Banks, NBFCs, lenders, and collection agencies as needed for dispute resolution and settlement.
  • Service Providers — Payment gateways, cloud storage providers, CRM systems, legal consultants, and technology partners under strict confidentiality agreements.
  • Government & Regulatory Authorities — When required by law, court order, or legal process.
  • Business Successors — In the event of a business transfer, merger, or acquisition.

All third-party service providers are contractually bound to use your data only for the purposes specified and must maintain appropriate security measures.

05
Data Security

We deploy industry-standard security measures to protect your information at every step:

  • 256-bit SSL/TLS encryption for all data in transit and at rest.
  • Role-based access controls — only authorized personnel access your data.
  • Regular security audits and vulnerability assessments.
  • Intrusion detection systems and real-time monitoring.
  • Secure, compliant data centers with physical security protocols.

No data transmission over the internet is Full secure. While we use best-in-class security, we cannot guarantee absolute security against all cyber threats. Our liability for any verified data security incident is limited to fees paid by you in the preceding 3 months.

06
Data Retention

We retain your personal information as follows:

  • For the full duration of our active relationship with you.
  • Up to 10 years after service completion — as required for legal and business record-keeping under Indian law.
  • Longer periods where required by specific legislation, regulation, or legitimate legal proceedings.
  • Indefinitely in anonymized, aggregated form for analytical and statistical purposes.

You may request deletion of your data by contacting our Grievance Officer. Requests will be reviewed and fulfilled where no legal or legitimate business interest overrides the request.

07
Data Retention Period

We retain personal data only as long as necessary for the purposes for which it was collected:

  • Credit reports & case documents — 90 days after case closure, then permanently deleted.
  • Consent records — 3 years from date of consent (for legal compliance and dispute resolution).
  • Contact information — 1 year after last interaction, unless an active case exists.
  • Financial transaction records — 8 years as required under Indian tax and company law.
  • Website analytics — 26 months (standard analytics retention).

When retention periods expire, data is permanently deleted or irreversibly anonymised. You may request early deletion by contacting our Grievance Officer.

Your Rights Under DPDP Act 2023

As a data principal under the Digital Personal Data Protection Act 2023, you have the following rights:

  • Right to Access — Request a summary of personal data we hold about you.
  • Right to Correction — Request correction of inaccurate or incomplete personal data.
  • Right to Erasure — Request deletion of your data where no legal obligation to retain exists.
  • Right to Grievance Redressal — File complaints with our Grievance Officer within the prescribed timelines.
  • Right to Nominate — Nominate another individual to exercise your rights in the event of death or incapacity.

To exercise any of your rights, email grievance@corvantafinserv.com. We will respond within 30 days. Identity verification may be required. We reserve the right to decline requests that are excessive, repetitive, or manifestly unfounded.

08
Cookies, Tracking & Marketing

By using our website, you consent to our use of cookies, tracking pixels, and similar technologies. We use these to:

  • Maintain your session and preferences across visits.
  • Analyze traffic patterns and improve our website experience.
  • Serve retargeted advertisements on third-party platforms (Google, Facebook, etc.).
  • Measure campaign effectiveness and conversion rates.

You may receive marketing communications via email, SMS, and WhatsApp. You can opt out of marketing at any time by replying "STOP" to SMS, clicking "Unsubscribe" in emails, or contacting us directly. Note that service-critical communications cannot be opted out of.

09
Third-Party Links

Our website may contain links to third-party websites, including credit bureau portals and financial institution sites. We are not responsible for the privacy practices, content, or security of any external website. We strongly recommend reviewing the privacy policy of any third-party site you visit. You access external links entirely at your own risk.

10
International Data Transfers

Your data may be transferred to and processed in countries outside India — including the USA, EU member states, and Singapore — where our cloud service providers and technology partners operate. By using our services, you consent to such transfers. You acknowledge that data protection standards may vary from those in India, though we require all processors to maintain adequate safeguards.

11
Children's Privacy

Our services are strictly intended for individuals aged 18 years and above. We do not knowingly collect personal data from minors. If we discover that data from an individual under 18 has been collected, we will delete it immediately. By using our services, you confirm that you are at least 18 years of age.

12
Changes to This Policy

We may update this Privacy Policy periodically to reflect changes in our practices, technology, or legal requirements. The "Last Updated" date at the top of this page indicates when changes were last made. We will make reasonable efforts to notify registered users of material changes via email.

Your continued use of our services after changes to this policy are posted constitutes your unconditional acceptance of the revised terms. Please review this policy periodically.

13
Governing Law & Dispute Resolution

This Privacy Policy is governed by the laws of India, including but not limited to the Information Technology Act 2000, the DPDP Act 2023, and applicable RBI regulations. Any disputes arising from or relating to this policy shall be subject to the exclusive jurisdiction of the courts in Hirapur, Dhanbad, Jharkhand, India. You irrevocably waive any objection to this venue on grounds of inconvenience or otherwise.

14
Limitation of Liability & Indemnification

To the maximum extent permitted by applicable law:

  • Our total aggregate liability shall not exceed the total fees paid by you to us in the 3 months preceding any claim.
  • We shall not be liable for any indirect, incidental, special, or consequential damages arising from use of our services.
  • You agree to indemnify, defend, and hold harmless Corvanta Financial Services and its officers, employees, and agents from any claims, losses, or expenses (including legal fees) arising from your violation of this policy.

The remaining provisions of this Privacy Policy shall continue in full force if any single provision is found invalid or unenforceable by a competent court.

15
Third-Party Service Providers (Sub-Processors)

We share limited data with the following categories of service providers, strictly for operational purposes:

  • Cloud hosting — Hostinger (servers in India/EU) for website and database hosting.
  • AI processing — Google Gemini API for credit report analysis (only when you use our AI tool).
  • Email delivery — SMTP providers for transactional emails and case notifications.
  • Payment processing — Razorpay / payment gateways (PCI-DSS compliant) for fee collection.
  • WhatsApp Business API — for customer communication where you have opted in.

All sub-processors are contractually bound to process data only for specified purposes and maintain security standards equivalent to our own.

Contact & Grievance Officer

In compliance with the Information Technology Act 2000 and the DPDP Act 2023, we have designated a Grievance Officer to address your data-related concerns:

⚖️
Grievance Officer
📧
Legal Queries
📞
Phone Support

Registered Address: Corvanta Financial Services, Hirapur, Dhanbad, Jharkhand, India. We aim to respond to all grievances within 30 days of receipt.

🔒 Your Data Is Safe With Us

Built on Trust & Compliance

Every data practice meets the highest standards of Indian legal compliance, security, and professional ethics.

⚖️

DPDP Act 2023 Compliant

All data practices strictly follow the Digital Personal Data Protection Act 2023 and IT Act 2000 requirements.

🔐

256-Bit SSL Encryption

Bank-grade encryption protects every bit of your data in transit and at rest, 24 hours a day.

🙅

Zero Data Selling

We have a strict no-sell policy on personal data. Your information is never monetized through third-party sales.

🏦

Documented Operations

All credit repair processes follow Reserve Bank of India guidelines and consumer protection laws.

📬

30-Day Grievance Response

Dedicated Grievance Officer responds to all data-related complaints within 30 days as mandated by law.

🔍

Regular Security Audits

Periodic third-party security audits and vulnerability assessments keep our infrastructure secure.

Ready to Fix Your Credit Score?

Join Numerous Indians who improved their credit report and unlocked home loans, business loans, and premium credit cards — safely and legally.

WhatsApp Us Call Now
Free initial consultation
Strictly confidential
Refund per written agreement
Results in documented process
📊

What is your current credit report?

This helps us recommend the right plan.

DPDP Act Compliance

Data Protection Notice

Additional disclosures under the Digital Personal Data Protection Act, 2023

Data Fiduciary

Under the Digital Personal Data Protection Act, 2023 ("DPDP Act"), Corvanta Financial Services is the "Data Fiduciary" responsible for determining the purpose and means of processing your personal data. We are committed to processing your personal data in accordance with the DPDP Act and its rules. Any questions about our role as Data Fiduciary may be directed to contact@corvantafinserv.com.

Cross-Border Data Transfer

Your personal data is primarily stored and processed on servers located within India. In limited circumstances, data may be transferred to or accessed from jurisdictions outside India for the purpose of:

  • Operating secure cloud infrastructure used by our service providers
  • Complying with legal or regulatory obligations
  • Processing payments through authorized payment gateways

Any such transfer is done only in accordance with the DPDP Act and any rules or notifications issued by the Central Government restricting transfers to specific countries or territories. We ensure that any third party receiving your data is bound by contractual obligations to maintain confidentiality and security.

Data Breach Notification

In the event of a personal data breach that is likely to result in harm to you, we will:

  • Notify the Data Protection Board of India in the prescribed manner and within the prescribed time
  • Notify you (the Data Principal) as soon as reasonably practicable, describing the nature of the breach and the likely impact
  • Describe the measures we have taken or propose to take to mitigate the breach
  • Provide contact information for further enquiries

We maintain incident response procedures to detect, investigate, and respond to data breaches promptly. Our internal team conducts regular reviews to strengthen our security posture.