Privacy · Last updated August 2026
Privacy policy
Overview
Cognance provides governed AI decision infrastructure for regulated financial institutions. This policy explains what we collect from visitors to this website and, separately, how we handle data processed through our KYC service on behalf of client institutions.
Website visitors
If you submit the pilot-access form, we collect the details you provide — such as your name, work email, company, role, and any message — solely to respond to your enquiry and evaluate a potential pilot. We do not sell this information. Form submissions are handled by our form provider on our behalf.
Data processed through the KYC service
For the KYC service, we deliberately minimize the personal data we receive. Client institutions send us only an application reference and two name strings (the name as recorded on a PAN and on an Aadhaar). We do not receive Aadhaar or PAN numbers, dates of birth, addresses, document images, biometrics, or financial information.
Name strings are retained for a maximum of 7 days and are then scrubbed. The resulting non-personal decision record — status, confidence score, reasoning, model version, and timestamps — is retained for up to 5 years to meet PMLA and RBI record-keeping expectations. Data is encrypted in transit and at rest.
Where data is processed
Processing currently takes place on Amazon Web Services infrastructure in the Asia Pacific region. India-region data residency is on our roadmap. We will confirm the applicable residency arrangements in writing as part of client onboarding.
Your rights
For website enquiries, you can ask us to access or delete the information you submitted by emailing us. For data processed through the KYC service, the client institution is the data controller; requests from individuals should be directed to that institution, and we support it in fulfilling them as a processor.
Contact
Questions about this policy can be sent to syedobaidullah@cognance.in.