DPDP Act 2023 Compliant

Banking-grade payments
for everyone

PayLite is a secure, RBI-regulated digital wallet that keeps your money moving and your data protected.

₹2Cr+
Transactions processed
50K+
Active users
99.9%
Uptime SLA
Live
Available Balance
₹12,450.00
send
Send
add_circle
Load
history
History
arrow_upward
Riya Sharma
Today 2:30 PM
−₹500
arrow_downward
Arjun Mehta
Yesterday
+₹1,200
gavel
DPDP Act 2023
Full compliance
account_balance
RBI Licensed
Payment aggregator
verified_user
ISO 27001
Security certified
lock
256-bit AES
End-to-end encrypted

Everything you need to move money

Built on modern infrastructure with privacy and security at its core.

flash_on

Instant Transfers

Send money to any PayLite user in under a second. Real-time settlement, zero delays.

shield

Bank-grade Security

Multi-factor authentication, device fingerprinting, and real-time fraud detection.

privacy_tip

DPDP Compliant

Granular consent controls. You choose exactly what data we collect and why.

history

Full Audit Trail

Every transaction logged with trace IDs. Dispute resolution within 24 hours.

science

Chaos Engineering Lab

Test failure scenarios in a sandbox. See how the system responds before it matters.

phone_iphone

Works Everywhere

Responsive design that works on any device. Offline-first with local storage fallback.

Built for the next billion users

PayLite was founded to solve the last-mile problem in digital payments — serving users who need reliable, low-cost financial services without sacrificing privacy or security.

We are fully compliant with RBI guidelines, PMLA requirements, and the Digital Personal Data Protection Act 2023. Your data is yours.

workspace_premium
RBI Authorised
Payment Aggregator Licence No. PA-2024-001
security
PCI DSS Level 1
Highest card data security standard
verified
NPCI Member
Integrated with UPI, NEFT, IMPS

Sign in to your account

Don't have an account? Create account

Create your account

🪪 KYC Information
Required under PMLA Rule 9 and the Income-Tax Act §139A to open any financial-services account in India.
📋
Privacy Policy & Consent Preferences
Click each consent to see exactly why we collect that data

Under DPDP Act 2023 §6, every piece of personal data must be tied to a specific purpose. Three consents below are required by law; three are optional and can be toggled anytime from the Preferences page.

Already have an account? Sign in

Welcome back, User

Here's your financial overview

hourglass_empty KYC: Pending
Available Balance
account_balance_wallet
Quick Actions
send
Send Money
Transfer to any PayLite user
add_circle
Load Wallet
Add ₹500 test funds
history
History
View past transactions
verified_user
KYC Status
Complete your verification
tune
Preferences
Manage DPDP consents
science
Chaos Lab
Test failure scenarios
Recent Transactions
arrow_downward
Received from Priya Sharma
Today, 3:42 PM  ·  Ref: TXN8821044
+₹1,200.00
arrow_upward
Sent to Rahul Verma
Today, 1:15 PM  ·  Ref: TXN8820891
-₹350.00
add_circle
Wallet Loaded
Yesterday, 9:00 AM  ·  Ref: TXN8819340
+₹500.00
arrow_upward
Sent to Anjali Singh
Yesterday, 6:30 PM  ·  Ref: TXN8819102
-₹800.00
arrow_downward
Received from Vikram Nair
2 days ago, 11:20 AM  ·  Ref: TXN8817765
+₹950.00
This Month
Total Sent
₹4,250
12 transactions
Total Received
₹7,800
8 transactions
Net Flow
+₹3,550
Since Aug 1
Security & Privacy
security
Account Security
Two-factor auth ✓ Enabled
Last login Today, 7:00 PM
Device trusted ✓ Yes
verified_user
DPDP Compliance
Consents given 3 active
Data requests None pending
Privacy notice ✓ v3.0
Notifications
warning
Complete your KYC
Your KYC verification is pending. Complete it to unlock higher transaction limits.
info
Privacy Notice Updated
PayLite updated its Privacy Notice to v3.0 on 1 Jan 2025. View notice
check_circle
Wallet Active
Your wallet is active and all systems are operational.

Send Money

Instant transfer to any PayLite account

Transfer Details
Balance: ₹ —

Transaction History

Credits, debits and all transfers

Transactions
Loading...

Loading transactions...

KYC Verification

Identity verification status

hourglass_empty
KYC Status
Loading...
Trigger KYC Verification
Verify identity against government databases

This initiates a simulated KYC check against government databases. Toggle Slow Mode to test timeout observability.

Off — normal speed

Manage Your Preferences

Update or withdraw consent for how PayLite processes your personal data. Changes take effect immediately under DPDP Act 2023 §6.

Logged in
Privacy Notice Accepted — accepted during account creation

Loading preferences...

science
Chaos Engineering Lab
Inject failures into PayLite services and observe the telemetry: Logs → Traces → Metrics
select_all
Step 1
Pick Scenario
arrow_forward
play_circle
Step 2
Trigger
arrow_forward
analytics
Step 3
Observe
Chaos Scenarios
DPDP-compliant notice

PayLite Privacy Notice

This notice explains how PayLite Financial Services Pvt. Ltd. (“PayLite”, “we”, “us”) collects and uses your digital personal data when you use our wallet, payments, KYC and related services.

Version 1.0Effective: 1 September 2026
Your data, your choice. We use personal data only for the purposes described below. Optional consent can be withdrawn from , and data-rights requests can be submitted from .

1. Who is responsible for your data?

PayLite Financial Services Pvt. Ltd. is the Data Fiduciary for personal data processed through PayLite. This notice is provided under the Digital Personal Data Protection Act, 2023 and applicable rules.

2. Personal data we collect

Identity and KYC

Name, date of birth, PAN, masked Aadhaar details, address, PIN code, KYC status and verification records.

Contact and account

Email address, phone number, account identifiers, authentication records and nominee details you choose to provide.

Payments and transactions

Wallet balance, payment amount, recipient, merchant, category, status, notes and transaction timestamps.

Device and security

IP address, browser or device information, approximate location, login events, fraud signals and consent records.

We collect data directly from you, from your use of PayLite, and from authorised identity, payment, fraud-prevention or regulatory service providers.

3. Why we process your data

PurposeData generally usedBasis
Create and secure your accountIdentity, contact, authentication and device dataYour consent and providing the service you requested
Complete KYC and meet legal dutiesIdentity, PAN, masked Aadhaar, address and verification resultsYour consent and compliance with applicable law
Process wallet payments and transfersAccount, recipient and transaction dataProviding the service you requested
Prevent fraud and protect PayLiteDevice, login, location and transaction-risk signalsSpecified legitimate uses and legal obligations, where applicable
Send alerts and service messagesEmail, phone and transaction dataYour consent or messages necessary to provide the service
Marketing and product offersContact details and communication preferencesYour optional consent

Where processing is based on consent, you may refuse optional processing or withdraw consent later. Withdrawal does not invalidate processing already lawfully completed, and essential services may be unavailable where required data is not provided.

4. Sharing, international processing and retention

We disclose only the data reasonably required to payment networks and banks, KYC and identity-verification providers, cloud and security providers, professional advisers, regulators, law-enforcement bodies when legally required, and another entity involved in a lawful corporate restructuring. Our processors must act only on documented instructions and protect the data.

If personal data is processed outside India, we apply contractual and technical safeguards and comply with any transfer restriction notified by the Central Government.

We retain personal data only for as long as needed for the stated purpose, to provide your account, resolve disputes, prevent fraud, and satisfy financial, tax or regulatory record-keeping duties. When retention is no longer necessary, we erase or anonymise the data unless the law requires continued retention.

5. Security and breach response

We use reasonable technical and organisational safeguards, including access controls, encryption where appropriate, monitoring, secure development practices and processor oversight. If a personal-data breach is likely to affect you, we will notify affected Data Principals and the Data Protection Board as required by applicable law and rules.

6. Children’s personal data

PayLite is intended for people aged 18 or older. We do not knowingly open accounts for children. If processing a child’s data becomes necessary, we will obtain verifiable consent from a parent or lawful guardian and will not undertake tracking, behavioural monitoring or targeted advertising directed at children, except where legally permitted.

7. Your rights and choices

  • Access

    Ask for a summary of your personal data, processing activities and the identities of other Data Fiduciaries or processors with whom it has been shared, as applicable.

  • Correction and completion

    Correct inaccurate or misleading personal data and complete data that is incomplete.

  • Erasure

    Request deletion of personal data that is no longer necessary, unless retention is required by law or for another lawful purpose.

  • Withdraw consent

    Withdraw consent as easily as it was given. We will stop the affected processing unless another lawful ground requires it.

  • Grievance redressal

    Raise a grievance with PayLite and, after exhausting our grievance process, approach the Data Protection Board of India as permitted by law.

  • Nomination

    Nominate another individual to exercise your rights in the event of death or incapacity.

8. Contact and grievance redressal

For privacy questions or a grievance, contact PayLite’s Data Protection and Grievance Office at dpo@paylitefs.com. General support is available at support@paylitefs.com.

Please include your registered email address and enough information for us to understand the request. Do not send passwords, OTPs or full identity-document numbers by email. We may verify your identity before acting on a request.

9. Updates to this notice

We may update this notice when our services or legal obligations change. Material changes will be communicated through PayLite or your registered contact details, and fresh consent will be requested where required.

10. Key service terms

You must provide accurate information, keep credentials and OTPs confidential, and use PayLite only for lawful transactions. Transactions may be delayed or rejected for security, compliance, insufficient balance or service-availability reasons. Applicable charges and transaction details are shown before confirmation. Contact support promptly if you suspect unauthorised use.

This notice should be read with the specific consent choices and transaction information shown when you use PayLite.

My Data Rights (DSR)

Exercise your rights under the DPDP Act 2023 — access, correct, erase or port your data. All requests are submitted to DPFlo and tracked in real time.

Logged in

Submit a New Request

history My Request History (from this device)

Loading…

support_agent Not satisfied with the response?

Under DPDP Act §13, you can escalate to our Grievance Officer if your request is not resolved within 30 days or you disagree with the outcome.

Loading officer details…
admin_panel_settings

Administrator Panel

Manage users, monitor activity, and generate reports

people
Total Users
how_to_reg
Active Users
delete_forever
Deleted (DSR)
verified_user
KYC Verified
receipt_long
Transactions
currency_rupee
Total Volume
policy
Consent Events
gavel
DSR Events
search
UserPhoneKYCStatusBalanceJoinedActions
Loading…

Settings

link

Connected dpflo Org

Configure which dpflo instance and Org this PayLite demo sends consent records to. On-appliance this defaults to the co-located dpflo over loopback. Changes take effect immediately — both server-side HMAC forwards and browser-side API calls.

The scheme+host used for server-to-server HMAC consent forwards and browser API calls.
The dpflo organisation slug used in /api/public/preferences/<slug>.
Sent as the Host header on server-to-server calls so dpflo routes to the correct realm. Defaults to the hostname of the base URL.
Effective Config Source
Current settings are drawn from:
Precedence: Database (operator-saved) > environment variable > built-in default.
Set DPFLO_PUBLIC_BASE, DPFLO_ORG_SLUG, DPFLO_HOST env vars for env-level defaults; this form saves to DB and takes highest precedence.