Legal

Privacy Policy

This explains what personal data Fleek Finance collects across our website and platform (client portal and advisor portal), how we use it, who we share it with, and the choices you have.

Last updated: 14 July 2026

1. Who we are

Fleek Finance ("Fleek," "we," "us") operates fleekfinance.in and the Fleek platform — a financial planning product used through two portals: a client portal (client.fleekfinance.in) for individuals and families working with an advisor, and an advisor portal (advisor.fleekfinance.in) used by the financial advisors and mutual fund distributors who serve those clients.

Fleek is a technology platform. It is not itself a SEBI-registered investment adviser; advisors and mutual fund distributors using Fleek are separately responsible for their own regulatory registrations and the advice they give. This policy covers data handled by the Fleek platform itself, across both portals.

2. Data we collect

Depending on whether you use Fleek as a client or as an advisor, we collect:

CategoryExamples
Identity & contactName, email, phone number, date of birth, PAN
Account credentialsPassword (stored as a salted hash, never in plain text)
Financial holdingsMutual fund portfolios (from CAS statements you upload), other investments, fixed deposits, EPF/PPF/NPS, bonds, loans (including linked bank account numbers), insurance policies
Goals & planning dataFinancial goals, risk-profile questionnaire answers, cash-flow and net-worth figures
DocumentsUploaded bank statements and CAS statements, and data extracted from them
Meeting dataScheduled meeting times, agendas, advisor notes, and — only when you or your advisor turns on transcription with a video provider — the meeting transcript
Usage & audit dataLogin sessions, and a record of actions taken on your account for security and compliance purposes

We collect this directly from you (forms, uploads, meeting scheduling) and, where you connect them, from the third-party services described below.

3. Google user data

Fleek offers two separate, optional Google integrations. We only request the minimum access each one needs, and we ask for it separately from each other and from anything else.

Sign in with Google

If an advisor chooses to sign in using their Google account, we verify their identity via Google's standard sign-in flow. We receive only their name, email address, and profile photo — enough to create and log in to their Fleek account. We do not request any other Google data at sign-in.

Google Meet & Calendar (optional, advisor-only)

An advisor may separately choose to connect their Google account under Settings → Video Providers so that Fleek can create a Google Meet link and calendar event for a scheduled client meeting. This is a distinct, explicit action — it is never triggered by signing in. If connected, we request:

  • meetings.space.created — to create a Google Meet video-call link for a scheduled meeting.
  • calendar.events — to create the corresponding calendar event so the meeting link is attached to a specific time slot.

If the advisor has enabled meeting transcription in Google Meet for a given call, Fleek reads the transcript text only after the meeting ends, so it can be shown back to the advisor and used to help prepare for the client's next meeting. Fleek never accesses meeting recordings, video, or audio — only the text transcript, and only when the host has separately enabled it in Google Meet.

Limited Use. Fleek's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Data obtained through Google integrations is used only to provide or improve the specific scheduling and meeting-intelligence features described here — never for advertising, never sold to third parties, and never read by a human at Fleek except where necessary for security, to comply with the law, or with your explicit permission.

You can disconnect Google Meet/Calendar access at any time from Settings → Video Providers in the advisor portal, or directly from your Google Account permissions page. Disconnecting stops new meeting links and transcript access; it does not delete data already stored in Fleek (see Section 8).

4. Other integrations

The same optional, advisor-initiated pattern applies to the other services Fleek can connect to a scheduled meeting:

  • Zoom — creates a Zoom meeting link, and (only if the advisor's Zoom plan and settings support it) reads the meeting transcript after the call. Never the recording.
  • Microsoft Teams — creates a Teams meeting link, and (only if enabled) reads the meeting transcript after the call. Never the recording.
  • WhatsApp Business API (Meta) — used to send appointment reminders and updates you've opted into. Gated by your explicit consent (Section 9); we never send WhatsApp messages without it.
  • Brevo — our email delivery provider, used to send account and meeting-related emails.
  • Anthropic (Claude) — powers AI-generated insights inside the platform (for example, summarizing a financial plan). Requests are gated on your consent, and client-identifying details are removed before anything is sent — see Section 5.

5. How we use data

We use the data described above to:

  • Provide the core service — build and maintain your financial plan, dashboard, and goal tracking
  • Let your advisor prepare for and follow up on meetings
  • Send the account, meeting, and (where consented) WhatsApp notifications you'd expect
  • Generate AI-assisted insights, where you've given consent — client-identifying details (name, contact info, account numbers) are stripped before any data is sent to our AI provider; AI never communicates directly with clients
  • Maintain security, prevent fraud, and keep an audit trail of who took what action on an account
  • Meet our own legal and record-keeping obligations

We do not sell personal data, and we do not use your financial data for advertising.

6. Sharing & disclosure

We share data only as needed to run the service:

  • With your advisor — a client's financial data is visible to the advisor(s) assigned to that family, since that's the purpose of the platform.
  • With service providers listed in Sections 3–4, strictly for the purpose described there, under contractual confidentiality terms.
  • For legal reasons — if required by law, regulation, or a valid legal process.
  • With your explicit consent — for anything not covered above.

We never sell personal data to data brokers or advertisers, and we never share Google user data for purposes outside what's described in Section 3.

7. Security & encryption

Sensitive fields — including PAN, phone number, email, and bank account numbers — are encrypted at rest using envelope AES-256-GCM encryption, not stored in plain text. Where this data appears in the product interface, it is masked by default (e.g. a PAN shows as ABCDE***1F). Application logs are automatically scrubbed of PAN, Aadhaar, email, and phone-number patterns before being written, as a backstop against accidental exposure. Advisor and client accounts use separate, independent authentication systems, so a compromise of one does not expose the other.

8. Retention & deletion

We keep financial records for as long as your account is active and for a reasonable period afterward to meet standard financial record-keeping practice. Records are never hard-deleted outright — closed or removed accounts are marked inactive rather than erased, which protects the audit trail everyone on the platform relies on. If you'd like your personal data erased (name, contact details, PAN, account numbers, uploaded documents) while keeping the underlying record structure intact for compliance purposes, contact us using the details in Section 13 and we will process that request.

Fleek asks for your consent separately for each of the following, and you can withdraw any optional consent at any time from your account settings:

  • Platform processing (required to use the service at all)
  • CAS import — pulling your mutual fund holdings from your Consolidated Account Statement
  • WhatsApp communication — reminders and updates over WhatsApp
  • AI-assisted insights — using AI to help generate planning insights
  • Advisor client-lens — letting your advisor preview what you see in your own client app
  • Guardian data — where a family member is a minor, their guardian's consent for that dependant's data

10. Your rights

You can request access to, correction of, or erasure of your personal data by contacting us (Section 13). If you're a client, many of these actions — reviewing your data, managing consent, updating contact details — are also available directly inside the client portal.

11. Children's data

Fleek is not directed at children. Where a family's financial plan includes a dependant under 18, that dependant's data is entered and managed by their parent or guardian under the family's own account, gated by the guardian-data consent described in Section 9 — a minor does not independently create a Fleek account.

12. Changes to this policy

We may update this policy as the platform evolves. Material changes will be reflected in the "Last updated" date above, and where a change affects how we use Google user data or requires new consent, we will ask for that consent again rather than applying it retroactively.

13. Contact us

Questions about this policy or your data can be sent to contact@fleekfinance.in, or by post to The Woods, Kalewadi Phata, Pune — 411057, India.