Privacy promise

Your ownership document never stays with us.

We read two fields off your receipt — your name and your flat number — and then the file is destroyed. Sixty seconds, enforced by the system, not by a policy page.

Watch it happen on the right before you upload anything.

Deletion demo Sample file · sped up
builder-payment-receipt-B704.pdf 1.2 MB · uploaded over TLS
Uploaded over TLS
Name + flat number extracted
Matched to RERA unit list*
Verified — status saved
Receipt permanently deleted
The whole life of your file

Five steps, then nothing is left

Every step below is something the backend does automatically. No step involves a person opening your document.

1

You upload

Allotment letter or payment receipt, sent over an encrypted connection.

2

Two fields are read

Automated text extraction pulls your name and flat number. Nothing else is parsed or kept.

3

Matched to RERA data

Your flat is checked against the community's RERA-registered unit list, not against a neighbour's word.

4

Status recorded

We keep first name, tower, unit and a verified flag. That is the entire record.

5

File destroyed

Deleted within 60 seconds of the check finishing — and the deletion itself is logged.

One exception

If your flat number is already claimed, the request is not auto-approved. We ask you first: keep the receipt for 72 hours so a human admin can review it, or decline — in which case the file is deleted immediately and only the attempt is recorded.

The real question

“Who in my building can see my number?”

Your admin is a neighbour, not a company. So contact details are hidden from them by default, and every single reveal is written to an audit trail with their name on it.

Misuse is not a matter of trust. It is a matter of record.

DataYouCommunity adminPublic search
Your receipt fileYours onlyNeverNever
First nameVisibleVisibleHidden
Tower & unitVisibleVisibleHidden
Mobile numberVisibleMasked — reveal is loggedHidden
Email addressVisibleMasked — reveal is loggedHidden
Verified member countVisibleVisibleCount only
Append-only

Even we cannot edit the log

The audit collection is create-only at the database permission level. Not “we promise not to delete it” — the delete permission does not exist for our own service account.

Sample of the events recorded against a single request.

2026-08-24 19:04:02REQUEST_SUBMITTEDreq_8f2a · Vipina · B-704
2026-08-24 19:04:09RECEIPT_PARSEDfields=[name, unit]
2026-08-24 19:04:11RERA_MATCH_OKunit B-704 · My Home Vipina
2026-08-24 19:04:38RECEIPT_DELETED29s after parse · sha256 purged
2026-08-26 08:12:44ADMIN_REVEAL_MOBILEadmin: r.krishnan · member #0142
DELETE / UPDATE on this collectionpermission denied
Straight answers

What owners ask us before they upload