1. Purpose
This policy explains how long different categories of data are retained on the Stayvora Technologies platform, and why.
2. Retention Periods by Data Type
- Account data (Center/staff/Super Admin login details): retained for as long as the account remains active, and for a limited period afterward in case of reactivation.
- Customer application data & documents: retained for as long as the Center's account remains active, since this is the operational record a Center relies on for its own customer service — and thereafter for the period required by applicable financial and tax record-keeping law.
- Payment and billing records: retained for the minimum period required under Indian financial record-keeping and tax law, typically several years, even after an account is closed.
- Communication logs (WhatsApp/SMS/email delivery records): retained for a limited operational period sufficient for delivery troubleshooting and dispute resolution, then periodically purged.
- Security & access logs: retained for a limited period sufficient for fraud detection and incident investigation.
- Backups: retained on a rolling basis per our infrastructure provider's standard backup cycle, primarily for disaster recovery.
3. Legal & Regulatory Retention
Where applicable law requires a longer retention period than our normal operational period (for example, financial transaction records under tax law), we retain that data for the legally required period even if a Center requests earlier deletion or closes its account.
4. Deletion After Retention Period
Once the applicable retention period expires and no legal obligation requires further storage, data is securely deleted or irreversibly anonymized. See our Data Deletion Policy for how to request earlier deletion of specific records.