1. Information We Collect
Touch Khata collects the following information to provide our service:
- Account Information: Mobile number (for login via OTP), name
- Business Data: Customer names, phone numbers, transaction amounts, descriptions, and dates that you enter
- Transaction Images: Photos you attach to transactions (receipts, bills)
- Voice Notes: Audio recordings you attach to transactions
- Device Information: Device model, OS version, app version (for technical support)
2. How We Use Your Information
- To provide the core ledger/khata service — storing and syncing your transaction data
- To send OTP for login authentication
- To generate PDF reports of your business transactions
- To provide public transaction pages when you share via SMS (only the data you choose to share)
- To send daily business summary notifications on your device
3. SMS Permission
Touch Khata requests SMS permission to send transaction notifications to your customers directly from your phone number. This is an optional feature that you can enable or disable at any time from the app settings. We never read your incoming SMS messages.
4. Data Storage & Security
- Your data is stored locally on your device (SQLite) and synced to our secure cloud servers (MongoDB on AWS)
- All communication uses HTTPS encryption
- Transaction PIN and biometric authentication protect sensitive actions
- Your PIN is stored as a one-way hash — we cannot see your PIN
- Database backups are encrypted and stored on AWS S3
5. Data Sharing
We do NOT sell, trade, or share your personal data with third parties. Your data is shared only in these cases:
- When YOU send an SMS notification to your customer (initiated by you)
- When YOU share a transaction/ledger link (the public page shows only the specific data you shared)
- When required by law or legal process
6. Third-Party Services
- MSG91: Used for OTP delivery to your registered mobile number
- AWS: Cloud hosting and data storage
7. Data Retention
Your data is retained as long as your account is active. You can request deletion of your account and all associated data by contacting us. Upon deletion, all your data will be permanently removed from our servers within 30 days.
8. Your Rights
- Access your data anytime through the app
- Export your data as PDF reports
- Delete your account and all data
- Enable or disable SMS notifications
- Enable or disable biometric authentication
9. Children's Privacy
Touch Khata is designed for business use by adults (18+). We do not knowingly collect information from children under 13.
10. Changes to This Policy
We may update this privacy policy from time to time. Changes will be reflected on this page with an updated date.
11. Contact Us
For any questions about this privacy policy or your data:
- Email: chhotelal.saini@tkhata.in
- App: Profile > Help & Support