Skip to main content

gopathik.com

This policy explains what GoPathik collects, why, and what you can do about it. It applies to the GoPathik Android app and this website, operated by [Legal Entity Name Pvt. Ltd.], India. We follow the Digital Personal Data Protection Act, 2023 and Google Play's User Data policy.

The short version. We collect what is needed to verify who you are, match you with a traveller, record a handover, and settle payment. We do not sell your data. We do not run ads on your data. You can delete your account from inside the app or from this page.

1. What we collect

CategoryExamplesWhy
AccountName, mobile number, email, password hash, profile photoCreate and secure your account
IdentityGovernment ID document, ID number, selfie or liveness checkVerification and the blue tick; fraud prevention
TripPickup and drop addresses, route, mode of travel, weight, item description, receiver's name and numberMatch Senders with Carriers and complete a Trip
Handover mediaPhotograph of the item at handover, with timestampRecord of the handover; evidence in a dispute
LocationApproximate or precise device location, when the app is in useShow nearby trips and matches; record handover location
PaymentWallet balance, transaction history, payout bank or UPI referenceHold, settle and pay out Trip amounts
CommunicationsIn-app chat, calls placed through masked numbers, support ticketsCoordination, safety and dispute review
Device & usageDevice model, OS version, app version, IP address, crash logs, app eventsSecurity, abuse detection, fixing bugs

We do not knowingly collect data from anyone under 18. If you believe a minor has registered, write to us and we will remove the account.

2. Permissions the app asks for

  • Camera — to photograph the item at handover and to capture ID documents. Optional, but a Trip cannot proceed without the handover photo.
  • Location — to show trips near you and record handover location. You can decline and enter addresses manually, with reduced matching quality.
  • Notifications — trip updates, OTP alerts, chat messages.
  • Storage / photos — to attach an existing image to a trip or dispute.

You can withdraw any permission in Android settings at any time.

3. How we use your data

  • To operate matching, chat, OTP confirmation and Wallet settlement
  • To verify identity, issue the blue tick, and detect fraud, impersonation and misuse
  • To investigate disputes using handover photographs, OTP logs and chat records
  • To provide support and send service messages
  • To improve reliability and safety, using aggregated or de-identified data
  • To comply with law, tax obligations and lawful requests from authorities

We rely on your consent, on the necessity of performing our contract with you, and on our legal obligations.

4. What other users see

When a Trip is matched, the other user sees your first name, profile photo, rating, verification status, and the pickup or drop details needed to complete it. Your full ID document, ID number, email, payment details and exact home address are never shown to other users. Calls are connected through masked numbers where supported.

5. Who we share with

  • Payment providers — a licensed payment aggregator and payout partner. They handle card and bank details directly; we do not store full credentials.
  • Identity verification providers — to check ID documents.
  • Cloud, analytics and crash reporting — hosting, notifications, diagnostics, under contract and limited to these purposes.
  • Law enforcement and regulators — where legally required or where we believe in good faith it is needed to prevent harm or a crime.
  • An acquirer — if the business is merged or acquired, with notice to you.

We do not sell your personal data and we do not share it with data brokers or advertisers.

6. How long we keep it

DataRetention
Account profileDeleted within 30 days of a verified deletion request
ID and verification recordsRetained as required for KYC and fraud prevention, up to [5] years
Trip and handover photographs[12] months after the Trip, then deleted
Payment and tax recordsUp to 8 years, as required by Indian law
Chat and support records[24] months
Records under legal holdUntil the matter concludes

7. Security

Data is encrypted in transit with TLS and at rest. Access is restricted to staff who need it, and is logged. Passwords are stored hashed. No system is perfectly secure; we will notify you and the Data Protection Board of a breach as required by law.

8. Your rights

  • Access a copy of your data, and correct anything inaccurate
  • Withdraw consent, and delete your account
  • Nominate someone to exercise your rights if you cannot
  • Complain to us, and then to the Data Protection Board of India

To exercise any of these, write to privacy@gopathik.com. Deletion is described in full at Delete your account.

9. Data outside India

Our servers are located in [India / region]. Where a service provider processes data outside India, we transfer it only to jurisdictions permitted under Indian law and under contractual safeguards.

10. Changes and contact

Material changes will be notified in the app or by email before they take effect.

Data Protection Officer
[Name], [Legal Entity Name Pvt. Ltd.]
[Registered address, City, State, PIN]
privacy@gopathik.com

Note for the operator, remove before publishing. Every row here must match your Play Console Data Safety declaration exactly, or the listing will be rejected. Fill all [bracketed] values and confirm the retention periods your systems actually implement.