01 — Our Commitment to Your Privacy
Anyone who entrusts information to SonaLine is entitled to a direct and complete account of its use. This Privacy Policy explains the information collected by our mobile application (the “App”), why each category is needed, the protections applied to it, and the choices you keep over your data.
Continued App use confirms that you have read and accepted this Policy. If any provision is unacceptable, uninstall the App. Review this document with our Terms of Service to understand the complete operation of your SonaLine account.
02 — Information We Collect
Operating a responsible credit service calls for defined information categories. The complete collection and purpose are set out below.
2.1 Account Registration Data
When an account is created, we receive your full legal name, birth date, mobile number, email address, and details contained in a government-issued identity document. Information is encrypted before it leaves the device and is stored only at server.sonaline.co.
2.2 Device Attributes
The device provides its model identifier, operating-system version, IP address, and Google Advertising ID. These technical details are used solely for platform stability and detection of security irregularities, never for credit decisions or advertising targeting.
2.3 Installed App Metadata
For fraudulent-application detection, the App may read package names and installation status for other apps. It never accesses their internal messages, passwords, transactions, or browsing information; fraud prevention is the only purpose.
2.4 Camera Access
Camera permission allows identity documents to be photographed for verification. Images are encrypted as they are captured, sent to server.sonaline.co, and permanently destroyed after verification. The camera operates only after you expressly begin an upload.
2.5 Approximate Location
If permission is granted, coarse location confirms that SonaLine is available in your region. Precise GPS coordinates are not recorded, and location stays separate from credit scoring and advertising.
2.6 Anonymised Usage Data
Aggregated and de-identified navigation routes, session duration, and error events help improve engineering and interface design. Those statistics cannot be used to reconstruct an individual user.
03 — How We Use Your Data
Each processing activity has a defined purpose. Information is used to verify identity and complete registration; administer the revolving credit facility and its transactions; detect fraud, impersonation, and security incidents; answer support enquiries accurately; improve App performance from anonymised usage patterns; and meet applicable Indian financial-regulatory duties.
An optional permission may be withdrawn through device settings. Doing so can limit a feature that depends on it, but the core account and credit facility continue to operate. Data covered by permission is never accessed unless that permission has been granted.
04 — Data Sharing
SonaLine does not sell, rent, or provide personal information to third parties for commercial use. Disclosure is limited to identity-verification specialists authenticating submitted documents, cloud providers hosting the Service, and regulators or law-enforcement bodies where the law requires it.
Every service partner is bound by a formal processing agreement and may use information only to deliver the specific service supplied to SonaLine.
05 — Security Measures
Security is built into the SonaLine infrastructure. Controls include TLS/HTTPS for all transmissions, role-based restrictions that limit personal-record access to authorised staff, scheduled independent penetration testing and audits, and continuous automated anomaly monitoring with immediate escalation.
If account activity appears suspicious, notify us immediately at support@sonaline.co. Security reports are treated as urgent.
06 — Retention Periods
Personal information is retained only for the period necessary to meet its collection purpose or the longer period required by law.
After account closure and expiration of mandatory retention, records are permanently erased or technically anonymised so identification is no longer possible. The precise period depends on the data category and governing requirements.
07 — Minimum Age
Only people aged 18 or older may hold a SonaLine account, and identity checks are designed to stop an underage applicant from registering.
If an account is found to belong to someone below 18, we will promptly close it, reverse pending transactions, and delete the related information. Report such a concern to support@sonaline.co for immediate investigation.
08 — Your Data Rights
You retain meaningful control over personal information held by SonaLine.
Send a written request to support@sonaline.co. We will confirm identity and respond within a reasonable period.
09 — Amendments
We review this Policy periodically to reflect service developments and regulatory changes. Material revisions will be announced through the App or by email before taking effect.
Routine corrections that do not materially change your rights apply immediately without advance notice. The effective month above identifies the current version, and continued App use after an update confirms acceptance.
10 — Privacy Enquiries
Contact us to ask about this Policy, exercise a data right, or raise a concern about information handling.