Privacy & data handling

Privacy Policy

This production draft describes the intended website-level approach. It should be reconciled with the final app data map, vendors and lender agreements before launch.

Data we may collect

Contact details, application information, uploaded documents, device/session information, support communications and analytics data can be processed where required for the service.

Why data is used

Data may be used to provide the requested service, verify information, coordinate applications, communicate status, prevent abuse, improve the platform and comply with legal/contractual obligations.

Lender and service-provider sharing

Application information may be shared with applicable banks/NBFCs and authorized service providers when required to process the user's request and subject to appropriate consent and agreements.

Sensitive documents

Users should upload financial and identity documents only through official Metal Card channels. OTPs, passwords and card PINs should never be shared with Metal Card staff.

Retention and security

Retention periods and security controls should be documented against the final production architecture, applicable agreements and legal requirements.

Privacy contact

Privacy or data-handling questions can be sent to hello@metalcard.loan.