Privacy Policy
Your trust and privacy are paramount to us. Last Updated: August 13, 2026.
Our Commitment to Your Privacy
Welcome to VyajPay ("we," "us," or "our"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application ("App") and related services (collectively, the "Services").
VyajPay is a digital khata (bookkeeping) and record-keeping application for shopkeepers, small businesses and anyone who keeps a hisab. VyajPay does not provide loans, credit, loan applications, loan matching, payments, banking, underwriting, collection services or financial advice. We do NOT process payments, transfer money, or facilitate financial transactions. Users manually enter their own records, for their own reference only.
Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access or use the Services.
We reserve the right to make changes to this Privacy Policy at any time. We will alert you about any changes by updating the "Last Updated" date of this Privacy Policy. You are encouraged to periodically review this Privacy Policy to stay informed of updates.
Information We Collect
We collect information that you provide directly to us and information that is automatically collected when you use our App. The information we collect includes:
1. Personal Information
- Account Information: Name, email address, phone number (for authentication and account management)
- Authentication Data: Phone number verification status, authentication tokens (stored securely)
2. Financial Record Data (User-Entered)
You manually enter the following data for record-keeping purposes:
- Borrower Information: Names, contact details, notes, tags, UPI IDs (optional)
- Loan Records: Loan amounts, interest rates, start dates, payment schedules, reminder dates
- Payment Records: Payment amounts, dates, notes
- Customer/Khata Records: Customer names, transaction history (gave/got), amounts, dates, notes
- Reminders: Reminder dates, notes, dismissal status
Important: We do NOT process payments or handle money. All financial data is entered manually by you for record-keeping only.
3. Device Information
- Device Identifiers: Device ID, device model, device name (for multi-device sync)
- Push Notification Tokens: FCM (Firebase Cloud Messaging) tokens for each device (enables notifications and multi-device sync)
- App Usage Data: App version, operating system version (for compatibility and support)
4. Usage and Analytics Data
- App Analytics: Feature usage, sync events, conflict resolution events (collected via Firebase Analytics)
- Crash Reports: Error logs, crash reports (collected via Firebase Crashlytics to improve app stability)
- Performance Data: App performance metrics, loading times (for optimization)
- Advertising Identifier: Your device's advertising ID (Android Advertising ID) and basic ad-interaction data, processed by Google AdMob to display ads (see the "Advertising" section below). This is never linked to your financial records.
5. Documents and Files
- Digital Locker Documents: Documents you upload (receipts, agreements, images) associated with customers or borrowers
- Document Metadata: Document names, types, upload dates, file sizes
How We Use Your Information
We use the information we collect to:
- Provide Core Services: Enable you to record, manage, and track your financial transactions
- Multi-Device Sync: Synchronize your data across multiple devices so you can access your records from any device
- Cloud Backup: Securely backup your data to enable data recovery and device migration
- Push Notifications: Send you reminders about due payments, payment receipts, and important updates
- Account Management: Create and manage your account, authenticate your identity
- Improve App Functionality: Analyze usage patterns to improve features and fix bugs
- Support Services: Respond to your inquiries, provide customer support, troubleshoot issues
- Security: Detect and prevent fraud, unauthorized access, and security threats
- Legal Compliance: Comply with applicable laws, regulations, and legal processes
Data Storage and Security
Where Your Data is Stored
- Local Storage: Your data is stored locally on your device using encrypted local database (Room Database with encryption)
- Cloud Storage: Your data is securely backed up to Google Firebase (Firestore database) for multi-device sync and backup purposes
- Document Storage: Documents you upload are stored in Firebase Storage (encrypted in transit and at rest)
Security Measures
We implement industry-standard security measures to protect your data:
- Encryption: Data is encrypted in transit (HTTPS/TLS) and at rest (Firebase encryption)
- Authentication: Access to your data requires secure authentication (phone number or email verification)
- Access Controls: Each user can only access their own data (enforced by Firebase security rules)
- Secure Backups: Cloud backups are stored in secure, encrypted databases
- Regular Security Updates: We regularly update our security practices and infrastructure
Note: While we implement strong security measures, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security.
Third-Party Services
We use the following third-party services to provide core functionality. These services are necessary for the App to function:
Google Firebase Services
We use Google Firebase services for essential app functionality:
- Firebase Authentication: Secure user authentication (phone number and email verification)
- Firebase Firestore: Cloud database for data sync and backup (your financial records are stored here)
- Firebase Storage: Secure file storage for documents you upload
- Firebase Cloud Messaging (FCM): Push notifications and multi-device sync
- Firebase Analytics: App usage analytics (anonymous, aggregated data)
- Firebase Crashlytics: Crash reporting and error tracking (to improve app stability)
Firebase services are provided by Google LLC. Your data stored in Firebase is subject to Google's privacy policy and security practices. You can review Google's privacy policy at: https://policies.google.com/privacy
Data Sharing Policy
We do NOT sell or rent your personal or financial records, and we never share your khata, borrower, or transaction data with advertisers or data brokers. To keep the App free, we show ads through Google AdMob, which processes your device's advertising identifier to serve those ads (see the "Advertising" section below). This does not give any advertiser access to your financial records.
We only share data with:
- Google Firebase: Only for core app functionality (authentication, storage, sync, notifications) as described above
- Google AdMob: To display ads in the App. AdMob may process your device advertising identifier and general ad-interaction data for this purpose; it does not receive your khata, borrower, or transaction records.
- Legal Requirements: If required by law, court order, or government regulation
- Protection of Rights: To protect our rights, privacy, safety, or property, or that of our users
Advertising
VyajPay is free to use and is supported by ads. We display ads inside the App using Google AdMob, an advertising service provided by Google LLC.
What AdMob Collects
To serve and measure ads, Google AdMob and its ad partners may collect and process:
- Advertising Identifier: Your device's Android Advertising ID (a resettable identifier).
- Device & Connection Data: Device type, operating system, IP address, and approximate (coarse) location derived from it.
- Ad Interaction Data: Which ads are shown, viewed, and tapped.
AdMob does not receive your khata, borrower, loan, or transaction records. Your financial data stays in your account and is never shared with advertisers.
Personalized vs. Non-Personalized Ads
Depending on your consent and region, ads may be personalized (based on your advertising identifier) or non-personalized (based only on general context). Where required by law (for example, in the EEA/UK), we ask for your consent before showing personalized ads.
Your Choices
- Opt out of ad personalization: On Android, go to Settings → Google → Ads and turn on "Opt out of Ads Personalization," or delete/reset your Advertising ID.
- Remove ads entirely: Upgrading to VyajPay Pro removes ads from the App.
Google's use of advertising data is governed by Google's policies. Learn more at https://policies.google.com/technologies/ads and https://policies.google.com/privacy.
Multi-Device Sync and Cloud Backup
VyajPay supports multi-device sync, allowing you to access your data from multiple devices. Here's how it works:
Why We Sync Your Data
- Multi-Device Access: Access your records from any device (phone, tablet, etc.)
- Data Backup: Automatic cloud backup protects against data loss
- Device Migration: Easily transfer your data when you get a new device
- Real-Time Sync: Changes made on one device appear on all your devices
What Data is Synced
All data you enter in the App is synced to enable multi-device functionality:
- Borrower information and loan records
- Payment records and transaction history
- Customer/Khata records
- Reminders and notifications
- Uploaded documents (Digital Locker)
- App settings and preferences
Device Information Collection
To enable multi-device sync, we collect:
- Device ID: Unique identifier for each device
- FCM Token: Push notification token for each device (enables notifications and sync)
- Device Model: Device name and model (for support and compatibility)
- Last Seen: When you last used the app on each device
This information is necessary to deliver notifications to the correct device and synchronize your data across devices.
Analytics and Crash Reporting
Firebase Analytics
We use Firebase Analytics to understand how users interact with our App. This helps us improve features and fix issues.
What We Track:
- Feature usage (which features are used most)
- Sync events (when data is synced)
- Conflict resolution events (when data conflicts are resolved)
- App performance metrics
What We DON'T Track:
- Your financial data (loan amounts, payment details, etc.)
- Personal information (names, phone numbers, etc.)
- Specific transaction details
Analytics data is aggregated and anonymized. It cannot be used to identify you or your specific financial records.
Firebase Crashlytics
We use Firebase Crashlytics to automatically collect crash reports and error logs. This helps us:
- Identify and fix bugs quickly
- Improve app stability
- Prevent data loss
Crash reports may include device information (model, OS version) and error details, but do NOT include your personal or financial data.
Your Rights and Choices
Access and Update Your Data
You can access and update your data directly in the App at any time. You can:
- View, edit, or delete your financial records
- Update your profile information
- Manage notification preferences
- Delete uploaded documents
Data Deletion
You can delete your account and all associated data at any time:
- In-App Deletion: Use the "Delete Account" feature in Settings → Danger Zone
- Grace Period: Deleted accounts have a 30-day grace period for recovery
- Permanent Deletion: After 30 days, all data is permanently deleted from our servers
Note: Deleting your account will permanently delete all your data, including financial records, documents, and backups. This action cannot be undone after the grace period.
Notification Preferences
You can control notifications in the App settings:
- Enable or disable notifications
- Set quiet hours
- Choose notification categories
- Manage per-device notification settings
Data Export
You can export your data at any time:
- Export to JSON format (Settings → Backup & Restore)
- Generate PDF reports (for loans, transactions, etc.)
- Export to Excel/CSV format (for wallet/transaction data)
Data Retention
We retain your data for as long as your account is active or as needed to provide you services.
- Active Accounts: Data is retained while your account is active
- Deleted Accounts: Data is retained for 30 days (grace period) then permanently deleted
- Backups: Cloud backups are retained until account deletion
- Analytics Data: Aggregated analytics data may be retained longer for analysis purposes (does not include personal data)
- Legal Requirements: We may retain certain data longer if required by law
Children's Privacy
Our Services are not intended for children under the age of 13. We do not knowingly collect personal information from children under 13.
If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately. If we become aware that we have collected personal information from a child under 13, we will take steps to delete such information from our servers.
International Data Transfers
Your data may be stored and processed in servers located outside India, including in the United States and other countries where Google Firebase operates.
By using our Services, you consent to the transfer of your data to these locations. We ensure that appropriate safeguards are in place to protect your data in accordance with this Privacy Policy.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by:
- Updating the "Last Updated" date at the top of this Privacy Policy
- Posting a notice in the App (for significant changes)
- Sending you an email notification (for material changes)
You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when posted on this page.
Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
We will respond to your inquiry within 30 days.
This Privacy Policy is effective as of the "Last Updated" date shown above and applies to all users of the VyajPay mobile application.
By using VyajPay, you acknowledge that you have read and understood this Privacy Policy and agree to the collection, use, and disclosure of your information as described herein.
For the rules and guidelines governing your use of VyajPay, please review our Terms & Conditions.