Sense runs inside apps that handle money, so the question of what we collect is one we expect to be asked. This is the plain answer, without the clauses.
This policy explains what we collect when you use our website, and what we process on behalf of the businesses that install our SDKs in their apps.
Two relationships matter here. When you visit gosense.ai, we are the data fiduciary. When our SDK runs inside a customer's banking, payment or lending app, that business is the fiduciary and we are the data processor acting on its instructions.
We collect the minimum needed to run the service. On the website that is limited to what you give us and what your browser reports.
The SDK is built to answer a security question, not to build a profile of you. It does not read your messages, contacts, photos, files, clipboard or keystroke content, and it does not track you across unrelated apps or websites for advertising.
Website data is processed to respond to enquiries, to understand which pages are useful, and to keep the site secure. SDK data is processed to detect fraud and protect the app you are using — the purpose our customer has specified in its contract with us.
Signals generated in India are processed and stored in India by default. Where a customer's contract requires processing elsewhere, that is documented in the contract and remains subject to the residency and repatriation obligations the customer's own regulator imposes.
Website enquiry data is retained while the enquiry is live and for a reasonable period afterwards. SDK data is retained for the period the customer instructs, and deleted or returned when that instruction ends or the contract terminates.
Under the Digital Personal Data Protection Act, 2023 you may ask for access to your data, correction of it, and erasure, and you may withdraw consent you have given. You may also nominate someone to exercise these rights on your behalf.
If your data reached us through a customer's app, we will refer your request to that business, because it decides what happens to it. Write to privacy@gosense.ai and we will route it and tell you where it went.
Data is encrypted in transit and at rest, access is limited to staff who need it, and our controls are independently assessed. If a breach affects your data we will notify you and the relevant authority within the timelines the law sets, including CERT-In's six-hour reporting requirement where it applies.
Our service is sold to businesses and is not directed at children. We do not knowingly collect data from anyone under eighteen through this website.
We will post any material change to this policy on this page and update the date at the top. For questions, requests or complaints, write to privacy@gosense.ai. Our Grievance Officer can be reached at the same address.
Write to us and a person will answer. For data-subject requests, include the account or app the request relates to.
This document is a plain-language summary prepared for the website. Please have counsel review it against your contracts and DPDP obligations before publication.