Privacy Policy
How NumTrade collects, uses and protects your data under the IT Act 2000, GDPR & CCPA.
1. Policy Objective and Scope
This Policy governs the processing of personal and sensitive data for anyone who accesses or uses the NumTrade platform or related services.
2. Categories of Data Collected
- Personally Identifiable Information (PII) — e.g. name, government-issued ID, contact details.
- Device & Network Metadata — IP address, device identifiers, browser information.
- Behavioral Analytics — wager logs, wallet activity, on-site actions.
- Tracking Technologies — cookies, pixels and analytics SDKs.
3. Purpose of Processing
- Operating the platform and executing game rounds.
- Meeting statutory duties including AML, KYC and CFT checks.
- Customer support, dispute resolution and service communication.
- Fraud detection, risk monitoring and internal audits.
- Product analytics and performance optimisation.
4. Lawful Basis for Processing
- Consent (where expressly obtained).
- Performance of a contract (e.g. processing withdrawals).
- Compliance with legal obligations.
- Legitimate interests such as security logging and service integrity.
5. Data Sharing and Disclosures
- Authorised service providers bound by data-processing agreements.
- Regulators or law-enforcement bodies when legally mandated.
- Corporate affiliates in connection with mergers, acquisitions or audits.
- External counsel and independent auditors.
6. Cross-Border Transfers
When data is transferred outside India, NumTrade implements safeguards (e.g. Standard Contractual Clauses or equivalent) to maintain adequate protection.
7. Data Retention
Financial and identity records are retained for up to eight (8) years or longer where required by law. Data is securely deleted or anonymised after the retention period.
8. Your Rights
- Right of access, rectification and erasure.
- Right to restrict or object to processing.
- Right to data portability (where applicable).
- To exercise any right, email privacy@numtrade.com.
9. Security Practices
- TLS 1.3 encryption in transit; AES-256 at rest.
- Multi-factor authentication and role-based access controls.
- Quarterly penetration tests and automated vulnerability scans.
- Annual SOC 2 Type II audits.
10. Automated Decision-Making
Certain security and fraud-monitoring workflows rely on automated scoring. All such processes include human oversight and manual review options.
11. Cookies and Analytics
NumTrade uses essential cookies for session management and first-party analytics for performance measurement. Optional third-party analytics are disclosed in our Cookie Notice.
12. Policy Updates
We may update this Policy to reflect legal, technical or business changes. Material revisions will be notified via email or prominent in-app messages.
13. Contact & Grievance Redressal
- Grievance Officer: Ms. Nira Shah
- Email: grievance@numtrade.com
- Office Hours: Mon–Fri 10:00-18:00 IST
- Address: NumTrade Labs, Legal Unit, Green Glen Tech Park, Bangalore