Privacy Policy
This Privacy Policy applies to all users of RAFT Advisory (www.raftadvisory.in), including residents of India and Non-Resident Indians (NRIs), and governs how we collect, use, share, and protect your personal information in accordance with the Information Technology Act, 2000, and SEBI (Investment Advisers) Regulations, 2013.
By using our services, you agree to the practices outlined below. If you do not agree with this policy, please do not use our services.
1. Information We Collect
We collect the following categories of personal information:
Identity Information: Name, email address, phone number, nationality, PAN, and date of birth
Financial Data: Income, expenses, net worth, investment preferences, and KYC documents
Device & Usage Data: IP address, device type, browser type, cookies, usage logs
Communication Data: Records of emails, phone calls, and messages
Additionally, we may collect any information you voluntarily provide while using the Platform, subscribing to services, or interacting with advisors.
2. How We Use Your Information
Your information is used to:
Facilitate access to SEBI-registered advisors and financial professionals
Assess suitability for advice and comply with SEBI-mandated risk profiling
Personalize services and communication
Fulfill legal and regulatory requirements (e.g. tax reporting, KYC)
Improve platform functionality and user experience
We may also use aggregated or anonymized data for analytics and reporting.
3. NRI and Cross-Border Data Handling
If you are accessing RAFT Advisory from outside India, including as a Non-Resident Indian (NRI), you acknowledge that your personal data will be stored and processed in India. By using our services, you consent to such transfer and processing, including disclosures required under SEBI and FEMA compliance frameworks.
4. Information Sharing and Disclosure
We do not sell, rent, or trade your personal information. We may share your data:
With SEBI-registered advisors (only upon your request or consent)
With trusted service providers (e.g., cloud platforms, payment processors, analytics tools)
With regulators or government authorities as required by law
All service providers are bound by confidentiality obligations and data protection standards.
5. Data Security
We follow industry-standard security practices, including:
SSL encryption
Secure server infrastructure
Limited access controls