ConnecktorHome

Legal

Privacy policy

Connecktor (www.connecktor.com) is a platform connecting creators with the people who follow them for paid one-to-one video calls. It is operated by Elvora AI Technology (“we”, “us”). This policy explains what personal data we collect, why, who we share it with, how long we keep it, and the rights you have under India’s Digital Personal Data Protection Act, 2023.

Last updated 4 October 2026

1. Who this applies to

It applies to creators, who publish a booking page and take calls, and to guests, who book and pay for a call without creating an account. By using Connecktor you agree to the processing described here. We are the data fiduciary for the personal data we process to run the service.

2. What we collect

If you are a creator:

  • Your name, email address and account identifier from Google or Meta when you sign in with Google or Facebook, or your email address when you sign in with a one-time code.
  • What you publish: display name, page link, the line about your sessions, time zone, prices and weekly availability.
  • Payout details: account holder name, IFSC, bank, phone number and PAN. We store the full account number, PAN and phone number encrypted for bank verification and creator payouts. Authorized Connecktor administrators can view bank destinations to review and process manual bank transfers; these accesses and payout decisions are audited. Your creator dashboard shows the account using its last four digits; these details are never shown publicly.

If you are a guest:

  • Your name, email address and phone number, and the question you share with the creator when booking.
  • The email address you verify with a one-time code. We store a one-way hash of each code, never the code itself, and codes expire after 10 minutes.
  • Your booking: creator, time, length, price, status and reference.

For everyone:

  • Payment records: the amount, status and the payment and order references from the payment gateway. We never see or store your card, UPI or net-banking credentials. Payment happens in the gateway’s own secure window.
  • Call attendance: when each side joined and left a call, as reported by our video provider. We use this to apply the refunds and cancellations policy.
  • Technical data: IP address, browser type and request logs, kept to run the service securely and to investigate faults and abuse.

3. What we do not collect

  • We do not record calls. Audio and video go between the participants through our video provider and are not stored by us. In-call chat messages and images are not stored by us either.
  • We do not use advertising or analytics trackers, and we do not sell your personal data.

4. Why we use it

  • To create and run creator accounts and booking pages.
  • To take bookings, verify guests, collect payments, pay creators and issue refunds.
  • To send the emails a booking needs: confirmations, calendar invites, reminders, changes and refunds.
  • To connect the two sides of a video call.
  • To keep the service safe: preventing fraud, enforcing our terms, and acting on reports of prohibited content.
  • To meet our legal, tax and accounting obligations.

We process your data on the basis of the consent you give by using the service, and for the legitimate uses the Act allows, such as complying with the law or responding to a legal request.

5. Who we share it with

We share personal data only with those who need it to provide the service, under contracts that limit their use of it:

  • The creator you book sees your name, your booking and the question you shared. Guests see the creator’s public page.
  • Cashfree processes customer payments and refunds. Connecktor processes weekly creator bank transfers through its bank. When provider verification or automated settlement is enabled, we share the required creator bank, PAN, contact and identity details with Cashfree.
  • Video providers (LiveKit, 100ms) carry the call.
  • Messaging providers: Resend delivers our emails, and Meta’s WhatsApp delivers a one-time code if you ask for it there.
  • Google and Meta, when you choose to sign in with Google or Facebook.
  • Hosting (Cloudflare, Vercel), which runs our servers and database.
  • Authorities, when the law requires it: a court order, a lawful request from a government agency, or a report of illegal content we are obliged to make.

Some of these providers process data outside India. Where they do, we rely on their contractual commitments to protect it, and we do not transfer data to any country the Government of India restricts.

6. How long we keep it

  • One-time codes expire after 10 minutes.
  • Booking, payment and payout records are kept for as long as Indian tax and accounting law requires, which can be up to eight years.
  • A creator’s profile is kept while the account is open. When you ask us to delete your account, we delete or anonymise your personal data unless we must keep a record by law, or to resolve a dispute or investigate abuse.
  • Records relating to prohibited or illegal content may be preserved for as long as an investigation or the law requires.

7. How we protect it

All traffic is encrypted in transit (HTTPS). Sign-in sessions use signed tokens that expire. One-time codes and bank account fingerprints are stored only as one-way hashes. Card details never reach our servers. Access to production data is limited to the people who need it to run the service. No system is perfectly secure; if a breach affects your personal data, we will tell you and the Data Protection Board of India as the law requires.

8. Cookies and browser storage

We do not use advertising or analytics cookies. We store two things in your browser: your sign-in session, if you are a creator (in local storage, until you log out), and an unfinished creator page while you set it up (in session storage, cleared when the tab closes). The payment gateway’s checkout window may set its own cookies while you pay.

9. Your rights

Under the Digital Personal Data Protection Act, 2023 you can:

  • ask for a summary of the personal data we hold about you;
  • ask us to correct, complete or update it;
  • ask us to erase it, unless we must keep it by law;
  • withdraw your consent, which stops future processing;
  • nominate someone to exercise these rights if you die or become incapable of doing so;
  • have a grievance heard by us, and if you are not satisfied, complain to the Data Protection Board of India.

To use any of these rights, email [email protected] from the address on your account or booking. We will reply within 30 days.

10. Children

Connecktor is for people aged 18 and over. We do not knowingly collect personal data from anyone under 18. If you believe a child has used the service, write to us and we will delete their data.

11. Changes to this policy

When we change this policy we will update the date at the top. If a change materially affects how we use your data, we will tell creators by email before it takes effect.

12. Contact and grievances

For any question or complaint about your personal data, contact our Grievance Officer, Connecktor at [email protected]. We acknowledge grievances within 24 hours and resolve them within 15 days.

Services and pricingContact UsTerms and ConditionsRefunds and CancellationsPrivacy policy

Powered by Elvora AI Technology