Privacy Policy
Last updated · 29 September 2026
This Privacy Policy explains how THINKCREATIVE TECHNOLOGIES (OPC) PRIVATE LIMITED handles your personal data. The company’s CIN is U72900AS2020OPC019996, and its registered office is H.No-291B, Ujangram, Silchar, Cachar, Assam 788025, India. In this policy the company is “FlashTerminal”, “we” or “us”.
We handle your data as a Data Fiduciary under:
- the Digital Personal Data Protection Act, 2023 and the Digital Personal Data Protection Rules, 2025, as they come into force (“DPDP law”);
- the Information Technology Act, 2000 and the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 (“SPDI Rules”), while they apply.
This policy covers everyone who uses the Services, as defined in our Terms of Use: app and web-app users, website visitors, and affiliate partners. Section 12 covers processing that applies only to partners. Words defined in the Terms have the same meaning here.
1. The short version
- What we collect. We collect what we need to run your Account, the features you use, payments, support and security. Section 2 lists it item by item.
- No selling, no ad targeting. We do not sell your personal data, and we do not use it for third-party advertising.
- Your Broker credentials. Your trading happens at your Broker. We never ask for or store your Broker password. Some Brokers need a PIN and a one-time code; they go from your device to the Broker and are not saved. Some connections keep a Broker session token, or your API key and secret, on our servers (section 2.3).
- AI Features. They send your question, and the data needed to answer it, to the AI providers in section 5. Conversations are saved on our servers so you can return to them, and you can delete them.
- Optional uses. App analytics, and any use of your conversations to improve answers, run only if you allow them.
- Your rights. You can access, correct and erase your data, withdraw consent and nominate someone to act for you. You can complain to us, and then to the Data Protection Board of India (section 10).
2. Data we collect
2.1 Data you give us
| Category | Examples | Why |
|---|---|---|
| Account and profile | Name, email, phone number, profile and cover photo, the sign-in method you use, language, theme, interests you choose, referral code, account role | Create and run your Account |
| Billing | Plan, order, payment and invoice records, amount, currency, coupon, billing address, GSTIN if you enter it, Coin balance and usage. We never receive or store your full card number or CVV. | Take payments, issue invoices, meet tax law, run usage-based features |
| Broker Connections | Which Broker you connect, your Broker user ID and name, and the credentials described in 2.3 | Connect your Broker account |
| Your work in the app | Watchlists, alert rules, order templates, automated rules you set up, paper portfolios, canvases, notes, and your trading journal, including any notes on mood or mindset you choose to record | Provide these features and save your work |
| AI | Your questions, attachments, AI responses, memory items, order proposals and your confirmations (section 5) | Provide AI Features |
| Support | Messages, attachments and voice notes you send to support, and the email or phone number you use to verify yourself | Help you |
| Communications | Your email and notification choices | Respect your preferences |
2.2 Data collected automatically
| Category | Examples | Why |
|---|---|---|
| Device and app | Platform, device model, operating system and version, app version, language, a device identifier, and technical details of the device, for the most recent 20 devices you signed in from | Security, detecting unfamiliar devices, compatibility, fixing problems |
| Network and approximate location | IP address, and the country and region derived from it. To find these, your device sends its IP address to an IP lookup service when you sign up, and our servers may do the same. | Security, fraud prevention, regional settings and pricing, legal compliance |
| Sign-in security | Results of bot and device-integrity checks (Cloudflare Turnstile, Google Play Integrity, Apple App Attest), sign-in times and method | Protect your Account |
| Usage and logs | Features used, errors, request logs with IP addresses, and aggregate counts of sign-ups and sign-ins by country, region, platform and method | Run, secure and improve the Services |
| App analytics (only if you allow it) | Screens viewed, sessions and app events, measured by Google Analytics for Firebase. We do not collect your device’s advertising ID. | Understand how the app is used |
| Notifications | A push notification token for each device, and the alerts and topics you subscribe to | Send alerts you set up and service messages |
| Email delivery | Recipient address, subject, delivery status and bounces | Deliver email and honour unsubscribes |
2.3 Broker Connections
How a Broker Connection is handled depends on the connection type:
| Connection type | What we hold, and where |
|---|---|
| Sign-in on the Broker’s hosted page (for example, the Zerodha Analytics and Agentic Terminals) | No Broker credentials. The Broker keeps the session on its own server. Your device keeps a session reference, and uses that session to read data and send the orders you confirm. |
| Sign-in on the Broker’s page through our registered Broker app (for example, the Zerodha Portfolio Terminal) | Your Broker access token, Broker user ID and name are stored on our servers, so the connection keeps working until the Broker expires the token. |
| Your own API key and secret (for example, Zerodha, Upstox, Angel One, Dhan, Groww, ICICI Direct, Kotak Securities, Delta Exchange India) | Your key, secret and session token are stored encrypted on your device. To complete some sign-ins, your key, secret and one-time request token pass through our servers to the Broker; we do not store them. Delta Exchange India requests pass through our relay server, so they reach the exchange from one fixed IP address. When you add an account, your device’s public IP address is looked up and saved with it, so you can whitelist it at your Broker. |
| PIN, MPIN, one-time code or TOTP secret (for example, Angel One and Kotak Securities) | Sent from your device directly to the Broker to open a session. Kept only in the app’s memory while it runs. Never saved, and never sent to our servers. |
| Optional cloud backup (“Sync to Server”) | Only if you choose it. A copy of the account, including the key, secret and session token, is stored encrypted on our servers, so you can restore it on another device. |
| Paper trading, virtual portfolios and public-data terminals | No Broker credentials. |
We use the data we read from your Broker (holdings, positions, orders, funds, trades and profile) to show it to you. When you ask, we also use it to answer your AI questions (section 5).
You can disconnect a Broker at any time. Disconnecting deletes the credentials we hold for that account.
2.4 Device permissions (only if you allow them)
- Camera and photos: only when you choose to take or attach a picture, for example in support chat, AI Features or your journal.
- Files: only the files you choose to attach.
- Microphone: only while you record a voice note for support. The recording is uploaded as part of your support conversation.
- Notifications: only if you allow them (section 13).
We do not access your precise location, contacts, calendar or clipboard contents. You can turn permissions off at any time in your device settings. The feature that needs the permission will then not work.
2.5 Data from others
- Sign-in providers:
- Google shares your name, email, profile photo and a unique ID.
- Apple shares your email, or a private relay address, and your name if you choose to share it.
- Other sign-in providers we show share your name, email and a unique ID.
- Phone sign-in sends you a one-time code by SMS through Google Firebase.
- Payment gateways and app stores share payment status and transaction references.
- Your Broker shares the data described in 2.3 when you connect.
- Referral data. If you open a partner’s link or use a partner’s coupon, we record the referral code or coupon on your Account (section 12.6).
2.6 Sensitive personal data
Some data we handle is sensitive personal data under the SPDI Rules:
- financial information, such as partners’ bank account details and payment references;
- sign-in passwords, which Google Firebase stores in a form we cannot read;
- the Aadhaar photograph returned during partner identity verification;
- any notes about your state of mind that you choose to record in your journal.
We collect these only for the purposes in this policy, with your consent given before collection. We share them only as sections 6 and 12.5 describe, or where the law requires. You may choose not to provide them, or withdraw consent later. The related feature, such as partner payouts, will then not be available.
2.7 Files you upload
Your profile photo is visible to other people wherever a feature shows it. Other files you upload are stored privately. Only you, and we, can access them. Support attachments are also visible to the support staff handling your request.
3. Websites, cookies and similar technologies
3.1 Our marketing websites
This covers flashterminal.com, affiliates.flashterminal.com and downloads.flashterminal.com.
- No advertising or analytics cookies.
- Referral details in your browser. If you arrive through a link with
ref,couponorutm_parameters, we keep them in your browser’s local storage (under the keyft_landing_params) for 30 days. We add them to links you follow to app.flashterminal.com, so that a referral or coupon reaches sign-up. You can remove them by clearing your browser’s site data. - Fonts. Pages load fonts from Google Fonts, which receives your IP address.
- Video. Product videos use YouTube’s privacy-enhanced mode, and load only when you press play.
- Server logs. Our web host (Hostinger) keeps standard logs for security: IP address, pages requested, time and browser type.
3.2 Our web app and account portal
This covers app.flashterminal.com.
- Essential storage keeps you signed in (Google Firebase), remembers your cookie choice, theme and referral details, and completes payments.
- Security checks. Cloudflare Turnstile checks that you are not a bot. It receives your IP address and browser details.
- Payments. Paying opens the gateway’s secure page (Razorpay or Cashfree). We send it your name, email and phone, so the form is filled in for you.
- Documents. A PDF viewer is loaded from cdn.jsdelivr.net.
- Optional analytics runs only if you accept it in the cookie banner. You can change your choice at any time from the link in the footer.
3.3 Storage on your device
Our apps keep some data on your device, so they work quickly and offline:
- your settings, username, email, phone, watchlists, canvas layout, virtual portfolio and cached market data;
- Broker credentials, encrypted (see 2.3).
Signing in to a Broker, or to Google, inside the app may leave cookies in the app’s web storage. They are removed when you sign out of the Broker or of the app.
Deleting the app removes this data from the device. On a shared or lost device, sign out first.
4. How we use data, and why we are allowed to
We process personal data on one of these grounds:
- Your consent. We ask for it in the app, with a notice, before we collect the data. You can withdraw it at any time (section 10).
- Data you give us voluntarily for a specific purpose, where you have not told us you object to that use (DPDP Act, section 7(a)). For example, we use your email to send you a receipt.
- Legal obligations, and compliance with a judgment, decree or order (DPDP Act, section 7).
- Prevention, detection and investigation of offences, where DPDP law allows it (DPDP Act, section 17).
| Purpose | Ground |
|---|---|
| Create and secure your Account; provide the features you use, including Broker Connections and AI Features | Consent; data you gave for that purpose |
| Detect and prevent fraud, abuse and unauthorised access to your Account | Consent, given when you create your Account; prevention and detection of offences |
| Process payments, issue invoices, keep tax and accounting records | Legal obligation; data you gave for that purpose |
| Send receipts, security alerts and notices of changes to our terms | Data you gave for that purpose |
| App usage analytics (section 2.2) | Consent. Off until you allow it. |
| Use de-identified conversations to test and improve AI answers | Consent. Off until you allow it. |
| Send product news and offers | Consent. You can opt out at any time. |
| Run the affiliate program (section 12) | Consent; data you gave for that purpose; legal obligation |
We do not use automated processing alone to make decisions that have legal or similarly significant effects on you. If an automated check blocks a sign-up, a payment or a payout, you can ask for a person to review it.
5. AI Features
5.1 What is sent
When you use an AI Feature, we send the following to the AI provider serving your request:
- your message;
- files you attach. Images and PDFs are first read by Google Gemini, and the text read from them is sent with your message;
- the page you are on, and the data that page provides;
- your saved memory items;
- the results of tools the AI uses to answer.
With a Broker connected, the AI may read the following on your device, during a request you make:
- your holdings, positions, funds, orders, trades and alerts;
- your Broker profile (Broker user ID, name and email);
- your trading journal, including any notes you record on mood or mindset;
- your canvas, charts and paper portfolios.
The AI cannot read your device files, clipboard, screen or location.
5.2 Who receives it
| Provider | Role | Location |
|---|---|---|
| DeepInfra | Generates answers and conversation titles (default) | United States |
| DeepSeek | Runs web searches. It receives the search text the AI writes from your question. | China |
| Google (Gemini on Vertex AI) | Reads the images and PDFs you attach | Google’s global infrastructure |
| Anthropic; OpenRouter (which routes to providers such as DeepInfra, Makora or Together) | Backup models, used only if we switch to them | United States |
Before your first AI request, we ask your permission to share this data with these providers. AI Features do not work without it, and you can withdraw it at any time in settings.
Providers process the data to answer you. They may keep it for a short time, under their terms, for security and abuse monitoring. Where a provider lets us choose, we set it not to use your data to train its models. We will update this list before we add a provider.
5.3 What we store
We save your AI conversations on our servers by default, so you can return to them. We save:
- your messages and the responses;
- a title made from the start of your first message;
- a working record of each conversation, including the results of the tools the AI used (for example, the holdings it read);
- memory items;
- text read from your attachments;
- order proposals and their status;
- usage (tokens, cost and Coins).
Message text is encrypted with keys held on our servers. We can therefore decrypt it, as we need to in order to provide the Services. The other items are protected by access controls.
5.4 Training and other uses need your permission
- No training. We do not use your conversations to train AI models.
- Testing and improving answers. We use conversations for this only if you allow it in settings. If you do, we first remove your name, email, Broker identifiers and account numbers. You can withdraw this permission at any time.
- Staff access. Authorised staff may read a conversation only to answer your support request, investigate a fault or a security incident, or meet a legal obligation. Each such access is recorded.
5.5 Memory
To tailor its answers, the AI can save short notes about your preferences, such as the instruments you follow. It can keep up to 100 items, and does not ask each time.
You can see and delete each memory item, and delete individual conversations, under Settings > AI. A deleted item or conversation is erased within 30 days, except records we must keep under section 9.
5.6 Orders prepared by AI
Nothing reaches your Broker until you confirm it. One confirmation may approve a set of up to 20 actions shown to you together; they then run one after another without asking you again.
We keep a record of each proposal, your confirmation and the result. We use it to support you and to investigate problems (section 9).
5.7 Be careful what you share
Do not share sensitive personal information in AI chats unless you need to. This includes health details, passwords and identity numbers.
6. How we share data
We share personal data only as described here.
6.1 Service providers
These providers act for us under contract, as data processors. They may use the data only to serve us.
| Service | Providers (current) | Main location |
|---|---|---|
| Hosting, database, sign-in, file storage, push notifications, app analytics, app integrity | Google (Firebase, Google Cloud, Play Integrity) | India, and other Google regions |
| App integrity on Apple devices, and Sign in with Apple | Apple | United States and other countries |
| Network, security, bot checks and caching | Cloudflare | Global |
| Website hosting, and the relay server for Delta Exchange India | Hostinger | Outside India |
| Email delivery | Mailgun | United States |
| AI processing and web search | As listed in 5.2 | See 5.2 |
| IP address to country lookups | IP lookup services (currently icanhazip.com, iplocation.net, freeipapi.com and ipify.org) | Outside India |
| Place search | OpenStreetMap services | Europe |
| Payments | Razorpay, Cashfree, the Apple App Store and Google Play | India; the stores operate globally |
| App updates | Shorebird | United States |
| Affiliate identity checks, bank checks and payouts | As listed in 12.5 | India and other countries |
6.2 Other recipients
- Your Broker, when you connect it and give instructions. This includes the Broker’s own sign-in and data services, such as Zerodha’s hosted Kite service. Your Broker handles that data under its own privacy policy.
- Affiliate partners, if you joined through a partner’s link or coupon. They see only what section 12.6 describes.
- Our professional advisers and auditors, under a duty of confidentiality.
- Authorities, when the law, a court order or a lawful request requires it, or to protect rights, safety and security.
- A successor, if our business is merged, acquired or its assets are sold. The successor must protect your data as this policy does.
6.3 Services the app connects to directly
To show prices, news, charts and video, the app connects directly to outside services. They include:
- exchanges and data providers, such as NSE, BSE, Delta Exchange India, Binance, Bybit, Coinbase and CoinGecko;
- news publishers’ feeds;
- YouTube and X;
- unpkg.com, for chart software;
- Google Fonts.
These services receive your IP address and basic device information, and handle it under their own privacy policies. We send them no other personal data about you. The app fetches data for you only, never on behalf of other users.
We do not sell personal data, and we do not share it for third-party advertising.
7. Transfers outside India
Some of the providers in sections 5 and 6 process data outside India. Most are in the United States; DeepSeek processes web searches in China.
- Only as the law allows. We transfer data outside India only as DPDP law permits, and never to a country the Government of India has restricted.
- Contract protection. We use providers bound by contract to protect the data at least as well as Indian law requires.
- Only what is needed. We send them only what the service needs.
8. Security
We protect personal data with reasonable security safeguards:
- In transit: encryption (HTTPS) for all traffic.
- At rest: encryption for all stored data, plus a separate layer of encryption for identity, bank, Broker credential and AI message data. The keys for that separate layer are held on our servers, never inside our apps.
- Access: controls and server-side rules on who can read or write each record. Staff access is limited to what their role needs, and it is logged.
- Logs: passwords, API secrets, one-time codes and identity numbers are kept out of our logs.
- Providers: contracts require our service providers to protect data.
- Checks: monitoring and regular security reviews.
No system is completely secure. Keep your devices and sign-in methods secure: anyone with access to your unlocked device may be able to use your Account.
8.1 If a personal data breach occurs
- Contain and investigate. We contain the breach and investigate it at once.
- Tell the authorities. We report it to CERT-In within 6 hours of noticing it, as the law requires. We also notify the Data Protection Board of India without delay, and send it a detailed report within 72 hours.
- Tell you. We tell each affected user without delay, through the app or by email. We say what happened and when, the likely consequences, what we have done to reduce the risk, the steps you can take to protect yourself, and how to reach us.
9. How long we keep data
| Data | Kept for |
|---|---|
| Account, profile, settings, device history, saved work, AI conversations, memory and records, Broker credentials we hold, uploaded files | While your Account is active. Erased or anonymised within 30 days after your Account is deleted, except as below. |
| Support conversations and their files | While your Account is active. A resolved conversation may be deleted 60 days after it is resolved. |
| Payment, order, invoice and tax records | As long as tax and company law require, currently up to 8 years from the end of the relevant financial year |
| Security logs, sign-in records and traffic data | At least 1 year from when they were created, as the law requires. Then deleted, unless needed longer for an investigation or legal claim. |
| AI order proposals, confirmations and audit records | Up to 3 years after the order, then deleted |
| Email suppression list | As long as needed to make sure we do not email you after you unsubscribe or delete your Account |
| Record of your deletion request | Your user ID and the date of the request, kept for 1 year to show that we carried it out |
| Referral link between your Account and a partner | While your Account exists (partners’ records follow section 12.8) |
| Aggregated or de-identified statistics | May be kept, as they no longer identify you |
| Data under a legal hold, dispute or authority request | Until the matter ends |
When the purpose for which we hold data is served, or you withdraw consent, we erase it unless the law requires us to keep it.
10. Your rights, and how to use them
10.1 Your rights
Under DPDP law you can:
- Access a summary of your personal data and how we process it, and the identities of the other Data Fiduciaries and processors we have shared it with.
- Correct, complete or update your data.
- Erase your data, unless the law requires us to keep it.
- Withdraw consent at any time, as easily as you gave it. Processing before withdrawal stays lawful. Features that need the consent will stop.
- Nominate someone to exercise your rights if you die or become unable to act.
- Seek redress from us first, and then from the Data Protection Board of India.
10.2 How to make a request
Email connect@flashterminal.com from your registered email, with the subject “Privacy”.
- Identify yourself. Give your registered email or phone and your username.
- Say what you want. State which right you are using.
- To nominate someone, send their name and contact details.
We may ask you to confirm your identity. We respond within 30 days.
10.3 How to withdraw each consent
| To stop | Do this |
|---|---|
| App analytics | Settings > Privacy, then turn off Analytics |
| AI data sharing | Settings > AI, then turn off AI Features |
| Use of your conversations to improve answers | Settings > AI, then turn it off |
| Marketing email | Use the unsubscribe link in any marketing email |
| Push notifications | Your device settings |
| Broker access | Disconnect the Broker in the app, and revoke access in your Broker’s settings |
| Everything | Delete your Account (see Account Deletion) |
Once a Consent Manager registered with the Data Protection Board is available to you, you can also use it to give, manage or withdraw consent.
10.4 Your duties
DPDP law asks you:
- not to impersonate anyone;
- not to hide material information;
- not to file false or frivolous complaints;
- to give accurate information when you ask us to correct your data.
11. Children
The Services are only for adults aged 18 or over. At sign-up we ask you to confirm that you are 18 or over.
We do not knowingly process a child’s personal data, and we do not track or monitor the behaviour of children. If we learn that an Account belongs to someone under 18, we close it. We then delete its data within 30 days, except records the law requires us to keep.
If you believe a child has given us data, email connect@flashterminal.com (subject: “Privacy”).
12. Affiliate partners
This section applies if you apply to or join our affiliate program. It adds to the rest of this policy. The program itself is governed by the Affiliate Program Agreement.
12.1 What we collect from partners
- Application:
- your full name as on your government ID;
- email, phone and country;
- address, city, state and PIN code;
- date of birth;
- your chosen affiliate code;
- the device platform you applied from;
- when you accepted the Affiliate Program Agreement, and which version.
- Identity verification (KYC). This runs through DigiLocker, operated by our verification provider (currently Cashfree), with your consent. It returns the documents you choose to share:
- From Aadhaar: your name, date of birth, gender, address, the name of a parent or guardian if the record has one, your photograph, and the Aadhaar number as DigiLocker provides it (normally masked).
- From PAN: your PAN and the name on it.
- Our own record: the verification result and the number of attempts.
- Bank details for payouts: account holder name, account number, IFSC, bank name, the name your bank holds for the account, the verification result, and the name-match score. For verification, your name, phone and bank details are shared with our verification providers.
- Tax details: your PAN, and your GSTIN and tax residency if they apply.
- Channel verification (optional). If you verify a YouTube, Instagram or X account, the platform shares your account ID, handle, display name and follower count.
- You sign in on the platform itself.
- We ask only for read-only access.
- We never see your password, cannot post for you, and do not keep the platform’s access token.
- We keep a record of each check.
- Program records: your status, commission rate, every commission credit and reversal, balances, payout requests and their status, coupons, campaigns, and messages between you and us.
12.2 Why we use partner data
- to assess your application, verify your identity and age, and prevent fraud;
- to verify your bank account and pay you;
- to calculate, credit and reverse commissions;
- to comply with tax law, including tax deducted at source and PAN requirements;
- to show your dashboards and to communicate with you about the program.
12.3 Aadhaar
- How we verify. We verify identity through DigiLocker, and only with your consent.
- Alternative. You may instead verify with your PAN and another officially valid document that DigiLocker holds, such as a driving licence or passport. Choosing not to use Aadhaar does not affect your eligibility.
- What we never collect. We never ask you to type your Aadhaar number. We never collect or store your full Aadhaar number, or your fingerprint or iris data.
- What we keep, and what we delete. From an Aadhaar record we keep only your name, date of birth, gender, address, the last 4 digits of the number and the verification result. We delete the Aadhaar photograph, the rest of the DigiLocker response and any link to the Aadhaar file within 30 days after the verification decision.
- Purpose. We use Aadhaar data only to verify your identity and age.
12.4 Security of partner data
Identity and bank records are encrypted with keys held only on our servers. Only the staff who review applications and payouts can access them, only for the purposes above, and that access is logged. We do not write identity or bank details into our logs.
12.5 Who we share partner data with
- identity and bank-verification providers (currently Cashfree, and RazorpayX for bank checks);
- payout providers: our bank, and where we offer them, Payoneer and Borderless. These receive your name, contact details and payout details;
- the Income Tax Department, and other authorities as the law requires;
- the service providers in section 6.
12.6 What partners can see about referred users
A partner can see:
- the username, country, join date and verified status of each person who joined with their code;
- aggregate sign-up and coupon figures, for example by day, weekday, country, sign-in method and platform, and coupon redemptions and sales. We do not show a breakdown of fewer than 5 people.
Commission records show a partly masked name and a coded order reference. Partners never see referred users’ contact details, photos, payment details, trades or holdings. They must not try to identify or contact referred users using this information.
12.7 Your public channel
The content you publish when you promote FlashTerminal is your own. You are responsible for handling your audience’s personal data lawfully.
12.8 How long we keep partner records
| Data | Kept for |
|---|---|
| Commission, balance, payout and tax records, and your name, PAN and verification result | As long as tax and company law require, currently up to 8 years after the end of the financial year in which we made your last payment. Then we delete them. |
| The Aadhaar photograph, the rest of the DigiLocker response, and documents from attempts we rejected | Deleted within 30 days after the verification decision |
| Channel verification | Each check stays valid for 90 days. We keep the record of your checks until your partner account closes, then delete it within 30 days. |
| Everything else | Deleted or anonymised within 30 days after your partner account closes, unless section 9 requires longer |
13. Notifications and marketing
While you have an Account, we send service messages that you cannot opt out of. These include receipts, security alerts, payout updates and changes to our terms.
We send marketing only with your consent. Each marketing email has an unsubscribe link, and you can turn off notifications in the app or in your device settings.
14. Changes to this policy
- New versions. We post each new version here with its date.
- Notice. We tell you about a material change by email or in the app at least 15 days before it takes effect, unless the law requires a change sooner.
- Consent. Where the law requires, we ask for your consent again.
- Languages. You can read this policy in English or in any language the app offers.
15. App store information
Our App Store and Google Play listings describe the data the app collects, in each store’s format, and they match this policy.
- Deleting your Account. You can delete your Account inside the app (Account > Account Deletion), or through our Account Deletion page, without reinstalling the app.
- No cross-app tracking. The app does not use advertising identifiers, and does not track you across other companies’ apps or websites.
16. Grievance Officer and contact
For questions about how we process personal data, requests to exercise your rights, or complaints, contact:
Grievance Officer, THINKCREATIVE TECHNOLOGIES (OPC) PRIVATE LIMITED H.No-291B, Ujangram, Silchar, Cachar, Assam 788025, India Email: connect@flashterminal.com (subject “Privacy” or “Grievance”)
We acknowledge each request or grievance within 48 hours, and resolve it within 30 days of receipt. You must first raise a grievance with us. If you are not satisfied with our response, or we do not respond in time, you may complain to the Data Protection Board of India.
This policy is governed by the laws of India. Disputes are handled as section 23 of our Terms of Use sets out.
