Reference

How 2iim Handles Your Personal Data

At 2iim, we are clear about what data we collect from your account, why we collect it, and exactly how long we keep it.

Account data protected at rest and in transitUPI, Paytm, PhonePe payment details handled securelyRight to access your data on requestData retention periods clearly definedContact our privacy team any time
2iim How 2iim Handles Your Personal Data
PRIVACY CONTACT PATHS

Reach Our Privacy Team Directly

If you have a question about how your personal data is stored, want to request a copy of your records, or need to raise a concern about data handling, our dedicated privacy…

Email Privacy Request Send your data access, correction, or deletion request to our privacy inbox. Include your registered account email so we can verify your identity before processing any change to your records.
Live Chat Support Our support agents are available via live chat for initial privacy queries. They can log a formal request on your behalf and confirm the reference number so you can track its progress through resolution.
Written Postal Notice For formal legal notices regarding data processing, you may submit a written request by post. Our team acknowledges postal notices and routes them to the privacy officer within three working days of receipt.
DATA HANDLING PRACTICES

How We Protect and Manage Your Data

Each measure below reflects an active practice we apply to every account, not an aspiration.

Encryption in Transit and at Rest

All data exchanged between your device and our servers uses TLS 1.2 or higher. Stored records, including payment references from UPI, Paytm, and PhonePe, are encrypted using AES-256 so they cannot be read if storage media is ever compromised.

Cookie Use and Your Choices

We use strictly necessary cookies to keep your session active, and optional analytics cookies to understand which pages you visit. You can withdraw consent for optional cookies at any time through the cookie preference panel in your account settings.

Account Access Security

Login attempts are monitored in real time. After a defined number of failed attempts, your account is temporarily locked and you receive an alert at your registered email address. Two-factor authentication is available and strongly encouraged for all accounts.

Data Retention Schedule

Transaction records linked to UPI or Paytm are retained for the period required by Indian financial regulations. Profile data is removed or fully anonymised within ninety days of account closure, unless law requires a longer retention window.

Who Can Access Your Data

Internal access to personal data is restricted to roles that require it — account verification, fraud review, and customer support. We carry out regular access audits and revoke permissions when a team member changes role or leaves the organisation.

How to Request Changes or Deletion

You may ask us to correct inaccurate data, receive a portable copy of your records, or delete your account data at any time. Submit your request via the privacy email channel and we will respond within the timelines set out in the contact section above.

Your Privacy Questions, Addressed Clearly

The questions below cover the data rights and privacy practices we are asked about most frequently by account holders in India. If your question is not listed here, our privacy team is reachable through the contact paths above.

We collect your name, email address, date of birth, mobile number, and identity documents needed for verification. We also record device identifiers, IP addresses, and payment references from UPI, Paytm, or PhonePe to secure your account and process transactions.

Yes. Send a data access request to our privacy email with your registered account email for identity verification. We will compile a portable copy of your records and deliver it to you within thirty days of confirming your identity.

Transaction records tied to UPI, Paytm, or PhonePe are retained for the period prescribed by applicable Indian financial regulations. Once that mandatory window closes, records are deleted or fully anonymised unless an active legal matter requires us to keep them longer.

We share only the minimum data that payment processors like Paytm or PhonePe need to complete your transaction. We do not sell personal data. Regulatory bodies may receive data where Indian law compels us to disclose it; we do not make voluntary disclosures beyond that.

Contact our privacy team via the email channel listed on this page. Include your account email so we can verify you before acting. We will delete or anonymise your profile data within ninety days of account closure, subject to any legal retention requirements.

We use strictly necessary cookies to maintain your login session and optional analytics cookies to measure page performance. Open the cookie preference panel in account settings at any time to review or withdraw consent for optional cookies; necessary cookies cannot be disabled.

Contact our support team immediately via live chat or the privacy email. We will lock your account, review access logs, and notify you of our findings within five working days. Two-factor authentication on your account reduces the risk of unauthorised access significantly.