Legal

Privacy Policy

This policy explains how information is collected, used, protected and shared while operating Foundation services.

1. Scope

This Privacy Policy explains how SUPER FOUNDATION collects, uses, stores and protects information when a person uses the public website, member portal, agent portal, registration process, payment services, OTP services, requests, notifications or Foundation programs.

2. Information We May Collect

Depending on the service, we may collect name, member ID, mobile number, email, address, date of birth or age group, scheme information, nominee details, photographs, identity documents, Aadhaar-related verification data, payment and receipt information, bank details where required, uploaded documents, requests, feedback and account activity.

3. Aadhaar and Identity Security

Where Aadhaar is used for identity and duplicate-membership controls, the system may use validation, masking, encrypted storage, last-four-digit display and a one-way hash for duplicate checks. Full Aadhaar information should not be displayed publicly. Identity data is used only for legitimate registration, verification, security and administration purposes.

4. How Information Is Used

Information may be used to register and manage members and agents; determine scheme eligibility; calculate installments and benefits; process and reconcile payments; generate receipts; maintain ledgers; handle requests; prevent fraud; secure accounts; send service notifications; administer programs; and comply with lawful obligations.

5. Payments

Payments may be processed through authorized payment gateways, banks, UPI or approved agent collection methods. Payment providers may process transaction information under their own privacy and security terms. SUPER FOUNDATION records transaction references, status, amount and reconciliation information needed for administration.

6. OTP and Communications

Mobile numbers and other contact information may be shared with authorized communication providers only as necessary to send OTPs, payment alerts, due reminders, program notices, security messages or other Foundation communications. Delivery logs may be retained for operational and audit purposes.

7. Agents and Authorized Personnel

Authorized administrators and agents may access only the information reasonably required for their role. Access should be controlled through authenticated accounts and role-based permissions. Sensitive information should not be used for personal or unrelated purposes.

8. Data Sharing

SUPER FOUNDATION does not sell member personal data. Information may be shared with service providers such as payment gateways, SMS/OTP providers, hosting or technical providers when necessary to operate the service, and with government, regulatory or law-enforcement authorities when legally required.

9. Public Information

Information intentionally published for transparency, such as Foundation contact details, scheme descriptions or approved public program information, may be visible on the public website. Private member identity, Aadhaar, passwords, OTPs and confidential account information are not intended for public display.

10. Data Retention

Records may be retained for as long as reasonably necessary for membership administration, payment and receipt history, benefit records, dispute handling, audit, fraud prevention and legal or regulatory requirements. Some financial and audit records may need to remain after membership ends.

11. Security

Reasonable technical and organizational safeguards are used to protect information, including authenticated sessions, access controls, masked sensitive data and secure processing practices. No online system can guarantee absolute security, so users should also protect their passwords, OTPs and devices.

12. User Responsibilities

Users must provide accurate information, keep login credentials confidential, avoid sharing OTPs and promptly report suspected unauthorized access or incorrect records. Users should upload only genuine documents that they are authorized to provide.

13. Corrections and Requests

A member or agent may use available portal request features or official support channels to request correction of eligible profile or account information. Certain identity, financial or audit records may require verification and may not be editable directly.

14. Cookies and Session Data

The portal may use necessary cookies or similar session technologies to keep users securely signed in and to operate authentication. These are used for service functionality and security rather than for selling personal information.

15. Third-Party Services

Links to WhatsApp, Instagram, Facebook, Google Maps, payment gateways or other third-party services are governed by the privacy practices of those services. SUPER FOUNDATION is not responsible for the independent privacy practices of external platforms.

16. Changes to This Policy

This policy may be updated when services, legal requirements or security practices change. The current version published on the website will apply from its stated or published effective date.

17. Contact

Privacy or account-related questions may be sent to support@superbmr.org or raised through the official Foundation support process.

Scheme-specific rules, approved payment records and applicable law remain controlling where relevant.