Privacy Policy

Effective Date: 28/08/2026•Last Updated: 28/08/2026 (August 28, 2026)

Operated by Mastroke Enterprises Pvt Ltd (www.mynila.in). Learn how we collect, use, protect, and process your personal data across the Nila platform.

2. AGE RESTRICTION & CHILD SAFETY (18+ ONLY)

18+ ONLY
Strict Age Restriction & Child Safety: Nila is strictly restricted to individuals who are 18 years of age or older. We do not knowingly collect, solicit, or process personal data from anyone under the age of 18.

We enforce an absolute zero-tolerance policy against Child Sexual Abuse Material (CSAM), Child Sexual Abuse and Exploitation (CSAE), grooming, and the sexualization of minors. If we discover or reasonably suspect that an account belongs to a minor under 18, we will immediately delete that account, purge associated personal data, and report the incident to statutory law enforcement authorities (including NCMEC and cybercrime units) as required by law.

For complete details on our safety protocols, please review our dedicated Child Safety Standards.

4. HOW WE COLLECT YOUR INFORMATION

We collect personal information through three primary channels:

  • Direct Collection: When you register an account, fill in your profile, upload photos, grant permissions, make in-app purchases, initiate calls, or communicate with our support desk.
  • Automated Collection: When you access Nila or browse www.mynila.in, our systems automatically collect device telemetry, IP addresses, log data, and session cookies.
  • Third-Party Integrations: When you authenticate via Google or Apple sign-in, or when payment status notifications are received from authorized payment aggregators.

5. DEVICE PERMISSIONS REQUESTED

DEVICE PERMISSIONS

To provide interactive audio and video calling features, Nila requests access to specific device capabilities. You can manage or revoke these permissions at any time through your device settings:

PermissionPurposeMandatory / Optional
CameraRequired for real-time video calls and capturing a live verification selfie to confirm profile authenticity.Required for video calling; optional for basic browsing.
MicrophoneRequired to capture and transmit your voice during audio and video calls.Required for audio/video calling.
LocationUsed to show nearby user profiles and calculate proximity distances.Optional (can be disabled; app will use regional defaults).
Push NotificationsTo notify you of incoming calls, new chat messages, match suggestions, and safety alerts.Optional (recommended for real-time call reception).
Storage / PhotosTo allow you to pick and upload profile photos from your device gallery.Optional (required only when uploading profile photos).

6. PURPOSES & LEGAL GROUNDS FOR DATA PROCESSING

We process your personal information for the following legitimate business, contractual, and legal purposes:

  • To Provide Core Services: Setting up accounts, facilitating user discovery, connecting real-time WebRTC audio and video calls, and managing in-app messages.
  • To Manage Virtual Wallet & Billing: Processing credit coin purchases, tracking wallet balances, maintaining digital ledgers, and fulfilling statutory tax obligations (such as GST).
  • To Protect User Safety & Prevent Fraud: Authenticating real users via selfie verification, detecting fake profiles, filtering spam/bots, moderating offensive content, and preventing financial scams, harassment, blackmail, and impersonation.
  • To Comply with Statutory Legal Obligations: Cooperating with lawful requests from law enforcement agencies, cybercrime cells, and judicial courts pursuant to the IT Act 2000, IT Rules 2021, and DPDP Act 2023.
  • To Improve Platform Experience: Analyzing aggregated technical metrics, diagnosing crashes, optimizing call latency, and enhancing website performance at www.mynila.in.
  • To Provide Customer Support: Resolving user grievances, responding to support tickets, and addressing refund or billing inquiries.

7. AUDIO & VIDEO CALL PRIVACY

CALL PRIVACY
Encrypted Real-Time Communications: Audio and video calls on Nila utilize WebRTC technology with industry-standard encryption (DTLS/SRTP) during transmission.

Our call privacy commitments:

  • No Call Audio/Video Recording: Mastroke Enterprises Pvt Ltd does not record, intercept, or store the contents of your live audio or video calls on our servers.
  • Strict Anti-Recording Rule for Users: Users are strictly prohibited from screenshotting, recording, capturing, publishing, or sharing other users' video calls, audio feeds, or private photos without express mutual consent. Violators will face immediate account termination and legal action under applicable cyber privacy laws.
  • Metadata Retention: We only log call metadata (start time, end time, duration, user IDs, network connection quality) for diagnostic, billing, and anti-abuse verification purposes.

8. DATA SHARING & THIRD-PARTY DISCLOSURES

We do not sell, rent, trade, or monetize your personal data to third-party advertisers or data brokers.

We share personal data strictly with trusted service providers under confidentiality agreements to operate the Platform:

  • Cloud Infrastructure & Hosting: Reputable cloud hosting providers (such as Amazon Web Services, Google Cloud Platform, or Cloudflare) for secure database storage, server hosting, and DDoS mitigation.
  • Real-Time Communication Providers: WebRTC signaling and media infrastructure providers for establishing audio and video calling pipelines.
  • Payment Gateways & App Stores: Google Play In-App Billing, Apple Store Billing, Razorpay, Cashfree, or RBI-authorized payment aggregators for processing credit purchases securely.
  • SMS & OTP Verification Services: Telecom messaging gateways for delivering login verification codes.
  • Law Enforcement & Statutory Authorities: We may disclose data when legally required by a binding court order, government directive, police notice under Section 91 of the Code of Criminal Procedure / Bharatiya Nagarik Suraksha Sanhita, or emergency circumstances involving imminent threat to life or child safety.

9. COOKIES & TRACKING ON WWW.MYNILA.IN

When you visit our website at www.mynila.in, we may use cookies and similar browser storage technologies to:

  • Essential Cookies: Maintain secure user sessions and remember essential platform preferences.
  • Analytics & Performance: Collect aggregated, non-personally identifiable traffic metrics to analyze page load speeds and visitor demographics.
  • Cookie Management: You can manage or disable cookies through your browser settings. However, disabling essential cookies may impact the proper functionality of the website.

11. YOUR DATA PROTECTION RIGHTS

USER RIGHTS

Under applicable Indian data protection laws (including the DPDP Act 2023), you have the following rights regarding your personal information:

Right to Access:Request confirmation of whether your data is being processed and obtain a summary of personal data held.
Right to Correction:Request correction or updating of inaccurate, outdated, or incomplete profile details.
Right to Erasure:Request permanent deletion of your personal data and account.
Right to Withdraw Consent:Withdraw consent previously granted for location tracking, notifications, or promotional communications.
Right to Grievance Redressal:File a grievance with our designated Grievance Officer regarding any privacy concern or data handling practice.

To exercise any of these rights, please write to our Privacy & Data Protection team at support@nila.app or grievance@nila.app.

12. DATA SECURITY & PROTECTION MEASURES

SECURITY

Mastroke Enterprises Pvt Ltd implements robust technical, operational, and organizational security measures in compliance with Rule 8 of the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011:

  • Encryption in Transit: All data transmitted between your device, the Nila app, www.mynila.in, and our backend servers is encrypted using modern TLS 1.3 / HTTPS protocols.
  • Encryption at Rest: Databases storing sensitive user information, credentials, and verification tokens are encrypted using AES-256 standards.
  • Access Controls: Strict role-based access control (RBAC), multi-factor authentication (MFA), and audit logging for all internal engineering and operational personnel.
  • Vulnerability Management: Regular security audits, penetration testing, automated dependency scanning, and firewall rules to protect against unauthorized intrusion.

13. CROSS-BORDER DATA TRANSFERS

Your personal data is primarily hosted and processed on secure servers in India. Where third-party cloud infrastructure or communication relay servers require international routing, such transfers comply with Indian data protection regulations (DPDP Act) ensuring equivalent safeguards, confidentiality, and security standards.

14. CHANGES TO THIS PRIVACY POLICY

We may update this Privacy Policy from time to time to reflect changes in our platform features, operational practices, or legal requirements. When updates occur, we will revise the “Last Updated” date at the top of this page.

For material changes, we will provide prominent notice via in-app alerts, email notification, or an announcement banner on www.mynila.in. Continued use of Nila after the effective date of an updated Privacy Policy signifies your agreement to the revised terms.

15. GRIEVANCE REDRESSAL MECHANISM

IT RULES 2021

In compliance with Rule 3(2) of the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021 and the Digital Personal Data Protection Act, 2023, Mastroke Enterprises Pvt Ltd has designated a Grievance Officer to address privacy, safety, and data protection concerns.

Grievance Officer Details

Company: Mastroke Enterprises Pvt Ltd
Designation:Grievance Officer, Trust, Safety & Data Protection
Postal Address:Mastroke Enterprises Pvt Ltd
2nd Floor, Suite 589, 24/1701
KC Arcade, Near TV Centre
Cochin Special Economic Zone
Kakkanad, Ernakulam
Kerala – 682037
Website: www.mynila.in

Turnaround Time: The Grievance Officer will acknowledge receipt of your grievance within 24 hours and resolve or address the matter within 15 days in accordance with statutory guidelines.