RecoverOS

Legal

Privacy Policy

Last updated: June 2026

This Privacy Policy explains how RecoverOS, operated by Trustera Services, New Delhi, India ("RecoverOS", "we", "us"), collects, uses, stores and protects information when you use our receivables, collections and settlement management platform. This policy is aligned with the principles of India's Digital Personal Data Protection Act, 2023 (DPDP Act).

RecoverOS is a SaaS software provider

RecoverOS is not a lender, recovery agency, collection agency or financial institution. RecoverOS provides workflow and communication-integration software. The tenant is solely responsible for:

  • Obtaining all necessary customer communication consents
  • Regulatory and legal compliance applicable to its business
  • The content and frequency of all communications it sends

1. Information We Collect

  • Tenant & account data: organization name, industry, contact details and subscription information.
  • User data: name, work email, role and authentication credentials (passwords are stored only as salted hashes).
  • Customer/borrower data entered by the tenant: account, loan, payment, settlement, follow-up and activity records uploaded or created by the tenant within their workspace.
  • Usage & security data: login events, audit logs, IP/device metadata and timestamps used for security and reliability.

2. Purpose of Collection

We process data only to deliver and operate the service, including: authenticating users, providing role-based access, enabling recovery workflows, generating reports the tenant requests, maintaining audit trails, ensuring security, and providing customer support. We use data minimization and purpose limitation — we do not use personal data for purposes incompatible with the above.

3. Data Retention

Tenant data is retained for as long as the subscription is active. After termination, data is retained for 90 days to allow the tenant to export it, after which it is permanently deleted or anonymized, unless a longer period is required by law.

4. Security Measures

  • Encrypted data transfer over HTTPS/TLS
  • Strict multi-tenant isolation — every query is filtered by tenant
  • Role-based access control (Admin / Manager / Agent)
  • Salted password hashing; no plain-text passwords
  • Immutable audit logs and rate-limited authentication

See our Security page for details.

5. Data Ownership

Data Ownership

  • All customer data belongs to the tenant (the customer organization).
  • RecoverOS does not sell tenant data.
  • RecoverOS does not share tenant data with other tenants.
  • RecoverOS does not disclose tenant-level performance metrics.
  • Tenants can export their data at any time.

6. Your Rights (DPDP Principles)

Subject to applicable law, data principals may request access to, correction of, or erasure of their personal data, and may withdraw consent. Tenants act as the Data Fiduciary for the customer data they upload; RecoverOS acts as a Data Processor on the tenant's instructions. Requests relating to customer data should be directed to the relevant tenant; requests relating to your RecoverOS user account may be sent to us.

7. Grievance & Contact

For privacy questions, data requests, or grievances, contact our team: