చట్టపరమైన పత్రాలు English లో ప్రచురించబడ్డాయి. ఏదైనా తేడా ఉంటే English version చెల్లుతుంది.
This Privacy Policy explains how Synvertix Technologies Private Limited (“Synvertix”, “we”, “us”) processes personal data when you use the SafeCaller mobile applications, website and related services (the “Services”). We act as a Data Fiduciary under the Digital Personal Data Protection Act, 2023 and the rules made under it (“DPDP law”).
1. Our core privacy commitment
- We do not upload your contact list / address book. Contacts are matched only on your device.
- We do not read your call log, SMS messages or call audio for the Services.
- We do not offer “who viewed my profile” features and we do not build a record of who searched whom.
- We do not sell personal data and we do not use call or search history for behavioural advertising.
2. Data we process
| Category | Examples | Purpose |
|---|---|---|
| Account data | Mobile number, name (optional), language, device identifier | OTP login, account security, preventing abuse |
| Caller lookup data | The incoming unknown number, converted to a keyed token (HMAC) on our server | Showing identity, spam risk and verification for that call |
| Reports & feedback | Spam category, optional comment, “not spam” feedback | Community spam intelligence and moderation |
| Claim & appeal data | Number ownership OTP, requested name correction, evidence you submit | Letting you control how your own number is shown |
| Business verification data | Legal name, GSTIN / CIN / Udyam, domain proof, authorised representative details, documents | Verifying businesses before showing a verified badge |
| Payment data | Plan, invoices, transaction reference (card/UPI details are handled by our payment gateway) | Billing and GST compliance |
| Technical & security data | App version, crash reports (with phone numbers masked), security logs | Reliability, fraud and abuse prevention, legal compliance |
3. How a lookup works
When an unknown number calls, the app sends that number to us over an encrypted (TLS) connection. Our server converts it into a keyed token and uses only the token to find reputation data. Raw numbers are not written to lookup logs. Lookup logs are kept for a short period and then aggregated. We describe this honestly: it is a protected lookup, not an anonymous or end-to-end encrypted one.
4. Where names come from
Names shown on caller cards come only from (a) verified businesses, (b) people who verified ownership of their own number and chose to be visible, (c) official public sources such as published helplines, and (d) community suggestions clearly labelled “unverified”. If we have no reliable information, we show “Unknown” and never invent a name.
5. Consent and legal basis
We process personal data on the basis of your consent given through clear notices in the app (available in English, తెలుగు and हिन्दी), or for legitimate uses permitted under DPDP law (for example, complying with law or responding to emergencies). You can withdraw consent at any time in Settings → Privacy; withdrawal does not affect processing already carried out.
6. Your rights
- Access a summary of your personal data and processing activities.
- Correct, complete or update your data, including how your own number is displayed.
- Erase your data and delete your account (see Delete Account).
- Nominate another person to exercise your rights in case of death or incapacity.
- Unlist your number from caller identification (see Claim / Unlist).
- Raise a grievance with our Grievance Officer and, if unresolved, approach the Data Protection Board of India.
7. Retention
| Data | Retention |
|---|---|
| Tokenized lookup logs | 7 days, then aggregated |
| OTP records | 30 days |
| Security logs | 180 days or as required by law (e.g. CERT-In directions) |
| Spam reports | Up to 24 months; reporter link anonymised after 12 months |
| Deleted accounts | Purged within 30 days, except where law requires retention |
| Business KYC documents | While verification is active and as required by law |
8. Sharing
We share data only with service providers acting on our instructions (cloud hosting in India, SMS/OTP delivery, payment gateway, KYC verification vendors, crash reporting), under contracts that require confidentiality and security. We disclose data to authorities only on valid legal process, reviewed by our compliance team, and we disclose the minimum necessary. Enterprise API clients receive risk and verification responses only — never bulk directories.
9. Security
We use TLS encryption in transit, encryption of sensitive fields at rest, keyed tokenization with key rotation, role-based access with multi-factor authentication for staff, audit logs for every moderation action, and regular security testing. In the event of a personal data breach we will inform the Data Protection Board and affected users as required by law.
10. Children
The Services are intended for users aged 18 and above. We do not knowingly process children’s data without verifiable parental consent.
11. Emergency numbers
Emergency numbers (112, 100, 101, 102, 108, 1091, 1098, 181, 1930) are never blocked, silenced or scored by the Services.
12. Changes
We will notify you in the app before material changes take effect.
13. Contact & Grievance Officer
Grievance Officer (Managing Director)
Name: Palakolanu Swamireddy
Email: contact@synsafecaller.com
Address: H No 26, Krishna Reddy Layout, Konappana Agrahara, Electronic City Phase 2, Near Varasiddi Vinayaka Temple, Bengaluru, Karnataka 560100, India
Privacy questions: support@synsafecaller.com
