PRIVACY POLICY

Last Updated: 16/11/2025

Company: AARTHVEDAA ("we", "us", "our")
Website: https://wealthihq.com
App: WealthiHQ / WealthTag App ("Service")
Address: 22 Cannonbury Avenue, Pinner, HA5 1TS, United Kingdom
Contact: wealthiInfo@wealthihq.com

We are committed to protecting your privacy and handling your data transparently and safely. This Privacy Policy explains how we collect, use, store, and protect your information in compliance with the UK General Data Protection Regulation (UK GDPR), UK Data Protection Act 2018, EU GDPR (for applicable users), and India's Digital Personal Data Protection Act, 2023 (DPDP Act). By using our website or mobile app, you consent to the practices described in this Privacy Policy.

1. WHAT DATA WE COLLECT

1.1 Personal Identification Data: We may collect the following personal identification information: Name, Email address, Phone number (optional), Date of birth (optional). 1.2 Financial Inputs (User-Entered Data): You may enter financial information voluntarily including but not limited to: Income, expenses, Assets and liabilities, Investments, Goals and timelines, Budgets and projections. We do NOT access or pull this data automatically unless you connect third-party services with your explicit consent. 1.3 Technical and Device Data: We collect technical information including: Device ID, operating system, browser type, IP address, App usage analytics, Crash logs and error reports. 1.4 Third-Party Data (Optional): If you choose to connect third-party services such as Open Banking APIs, Investment platforms, or Payment subscriptions, we may receive data via secure, consent-based integrations in accordance with the terms and conditions of such third-party services.

2. HOW WE USE YOUR DATA

We use your data for the following purposes: To provide and personalise your wealth planning experience; To generate projections and calculators based on your inputs; To improve app performance and user experience; To respond to support queries and customer service requests; To ensure regulatory compliance where applicable under UK and Indian law; To send feature updates or optional marketing communications with your explicit consent where required by law. We do not sell your personal data to anyone. We may share anonymised, aggregated data with third parties for analytics purposes, provided such data cannot be used to identify you personally.

3. LEGAL BASIS FOR PROCESSING (UK & EU USERS)

Under the UK GDPR and EU GDPR, our lawful bases for processing your personal data are: (a) Performance of contract – processing is necessary to provide the app and services you have requested; (b) Legitimate interest – we process data for analytics, service improvement, fraud prevention, and security purposes where we have determined our legitimate interests are not overridden by your rights; (c) Consent – for marketing communications and optional data sources, we rely on your freely given, specific, informed and unambiguous consent; (d) Legal obligation – to comply with legal and regulatory requirements including tax, accounting, and anti-money laundering obligations.

4. LEGAL BASIS FOR PROCESSING (INDIA DPDP ACT COMPLIANCE)

For Indian users, data is processed under the following legal bases in accordance with the Digital Personal Data Protection Act, 2023: (a) User Consent which is freely given, specific, informed, unambiguous, and withdrawable at any time; (b) Legitimate Uses under the DPDP Act including service provision, security, fraud prevention, and legal compliance; (c) Purpose Limitation whereby we process data only for specified, explicit, and legitimate purposes; (d) Data Minimisation ensuring we collect only the minimum data necessary for the stated purposes. You may withdraw your consent at any time by contacting us at wealthiInfo@wealthihq.com. Upon withdrawal of consent, we will cease processing your data for purposes requiring consent, subject to legal retention requirements.

5. COOKIES AND TRACKING TECHNOLOGIES

We use cookies and similar tracking technologies for: Website functionality and session management, Analytics and performance monitoring, Remembering user preferences and settings. You can control cookies through your browser settings. Please note that disabling cookies may affect the functionality of our website. For detailed information, please refer to our separate Cookie Policy available on our website.

6. DATA STORAGE AND CROSS-BORDER TRANSFERS

Data is stored securely using Amazon Web Services (AWS) and Google Cloud Platform, which may host data in multiple regions including but not limited to: United Kingdom, European Union, India, United States of America (protected by appropriate safeguards including Standard Contractual Clauses). We apply the following safeguards: GDPR-compliant Standard Contractual Clauses (SCCs) for transfers outside the UK/EU; Encryption in transit using TLS 1.2+ and at rest using AES-256; DPDP Act-compliant transfer safeguards for data transfers involving Indian users; Contractual obligations on all processors and sub-processors to maintain equivalent levels of data protection. By using our services, you acknowledge and consent to the transfer, processing, and storage of your data in these jurisdictions.

7. DATA RETENTION

We retain personal data only as long as necessary for the purposes outlined in this Privacy Policy and as required by applicable law. Specific retention periods are as follows: Account data is retained while your account remains active and for a period of up to 12 months after account closure unless you request immediate deletion; Backups are maintained for up to 90 days for disaster recovery and business continuity purposes; Financial inputs entered by users are deleted immediately upon user request or within 30 days of account deletion; Account deletion results in permanent, irreversible deletion of your personal data within 30 days, subject to legal retention requirements; Transaction records and logs may be retained for up to 7 years to comply with financial record-keeping obligations under UK and Indian law.

8. YOUR RIGHTS (UK/EU USERS)

Under the UK GDPR and EU GDPR, you have the following rights: (a) Right of access – to obtain confirmation of whether we process your data and to receive a copy of your personal data; (b) Right to rectification – to correct inaccurate or incomplete personal data; (c) Right to erasure ('Right to be Forgotten') – to request deletion of your personal data where there is no compelling reason for its continued processing; (d) Right to restrict processing – to limit how we use your data in certain circumstances; (e) Right to object to processing – to object to processing based on legitimate interests or for direct marketing purposes; (f) Right to withdraw consent – where processing is based on consent, you may withdraw it at any time; (g) Right to data portability – to receive your data in a structured, commonly used, machine-readable format and to transmit it to another controller; (h) Right to lodge a complaint – with the Information Commissioner's Office (ICO) in the UK or your local supervisory authority. To exercise these rights, please contact us at wealthiInfo@wealthihq.com. We will respond to your request within one month of receipt, which may be extended by two further months where necessary, taking into account the complexity and number of requests.

9. YOUR RIGHTS (INDIA DPDP ACT)

Indian users have the following rights under the Digital Personal Data Protection Act, 2023: (a) Right to confirmation and access regarding data processing; (b) Right to correction of inaccurate, incomplete, or out-of-date personal data; (c) Right to erasure of personal data, subject to legal retention requirements; (d) Right to grievance redressal through our designated Grievance Officer; (e) Right to nominate another individual to exercise rights in the event of death or incapacity; (f) Right to withdraw consent at any time. Our Grievance Officer can be contacted at: wealthiInfo@wealthihq.com. We will acknowledge receipt of your grievance within 24 hours and resolve it within 30 days from the date of receipt.

10. CHILDREN'S PRIVACY

Our service is not intended for and may not be used by individuals under the age of 18 years. We do not knowingly collect personal data from children under 18. If we become aware that we have collected personal data from a child under 18 without verification of parental consent, we will take steps to delete that information immediately. If you believe we might have any information from or about a child under 18, please contact us at wealthiInfo@wealthihq.com.

11. DATA SECURITY

We implement industry-standard technical and organisational security measures to protect your personal data against unauthorised access, alteration, disclosure, or destruction. These measures include but are not limited to: AES-256 encryption for data at rest; TLS 1.2+ encryption for data in transit; Multi-factor authentication for administrative access; Role-based access controls with principle of least privilege; Regular security audits and penetration testing; Audit logs and monitoring for suspicious activities; Employee training on data protection and security; Incident response procedures and breach notification protocols. Despite these measures, no method of transmission over the internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your personal data, we cannot guarantee its absolute security. You are responsible for maintaining the confidentiality of your account credentials.

12. CHANGES TO THIS PRIVACY POLICY

We reserve the right to modify this Privacy Policy at any time. Changes will be effective immediately upon posting the updated Privacy Policy on our website and app. We will notify you of material changes through the app, email, or by posting a prominent notice on our website. The "Last Updated" date at the top of this Privacy Policy indicates when it was last revised. Your continued use of our services following the posting of changes constitutes your acceptance of such changes. We encourage you to review this Privacy Policy periodically.

13. INTERNATIONAL USERS

Our services are provided from the United Kingdom and India. If you are accessing our services from outside these jurisdictions, please be aware that your information may be transferred to, stored, and processed in the UK, India, EU, USA, or other countries where our service providers operate. These countries may have data protection laws that differ from those in your country of residence. By using our services, you consent to the transfer of your information to countries outside your country of residence, which may have different data protection rules than your country.

14. THIRD-PARTY LINKS AND SERVICES

Our website and app may contain links to third-party websites, services, and applications that are not owned or controlled by us. This Privacy Policy applies only to our services. We are not responsible for the privacy practices of third-party websites or services. We encourage you to read the privacy policies of any third-party websites or services that you visit or use. When you connect third-party services to our app, you are subject to the terms and privacy policies of those third parties.

15. DATA BREACH NOTIFICATION

In the event of a personal data breach that is likely to result in a risk to your rights and freedoms, we will notify you and the relevant supervisory authority without undue delay and, where feasible, within 72 hours of becoming aware of the breach, as required by applicable law. The notification will include: the nature of the breach, the categories and approximate number of data subjects affected, the likely consequences of the breach, and the measures taken or proposed to address the breach and mitigate its possible adverse effects.

16. AUTOMATED DECISION-MAKING AND PROFILING

Our services may use automated decision-making processes including algorithms and artificial intelligence to generate financial projections and recommendations. These automated processes do not produce legal effects concerning you or similarly significantly affect you. You have the right to object to automated decision-making and to request human intervention in the decision-making process. All outputs from our calculators and AI tools are estimates and suggestions only, and you retain full control over all financial decisions.

17. MARKETING COMMUNICATIONS

With your consent, we may send you marketing communications about our products, services, and features. You may opt out of receiving marketing communications at any time by: (a) clicking the "unsubscribe" link in any marketing email; (b) adjusting your communication preferences in your account settings; (c) contacting us at wealthiInfo@wealthihq.com. Please note that even if you opt out of marketing communications, we may still send you non-promotional communications related to your account and use of our services.

18. CONTACT INFORMATION AND DATA PROTECTION OFFICER

For any questions, concerns, or requests regarding this Privacy Policy or our data processing practices, please contact us at:

AARTHVEDAA
22 Cannonbury Avenue
Pinner, HA5 1TS
United Kingdom
Email: wealthiInfo@wealthihq.com
Website: https://wealthihq.com

For UK users, you have the right to lodge a complaint with the Information Commissioner's Office (ICO): Website: https://ico.org.uk. For Indian users, grievances may be directed to our Grievance Officer at the email address above, and you may escalate matters to the Data Protection Board of India once constituted.