This policy explains what the RPD Sangathan app collects from you, why it collects it, who else sees it, and what you can ask us to do about it. It is written for members — karyakartas, office-bearers and anyone who signs in with their mobile number.
Who we are
Rashtriya Parivartan Dal (RPD Sangathan) operates the RPD Sangathan app and this portal, and decides how your personal data is handled. In the language of India’s Digital Personal Data Protection Act, 2023, we are the Data Fiduciary and you are the Data Principal. Our contact details are at the end of this policy.
“The app” means the RPD Sangathan application published on Google Play and the Apple App Store. “We”, “us” and “the organisation” mean Rashtriya Parivartan Dal (RPD Sangathan).
What we collect
Information you give us
- Your mobile number. It is your identity in the organisation — you sign in with it and nothing else.
- Your membership details: full name, date of birth, gender, profile photo, and your voter ID card number if you choose to add one.
- Where you work: pincode, address, and the state, district, assembly constituency, mandal and booth your membership is placed in.
- Your preferences: the language you read the app in, and whether you agree to be contacted on WhatsApp.
- How you joined: the referral code you used, and which member recruited you. If you recruit someone, your membership number is recorded against theirs.
Information you create while using the app
- Issue posts: the issue and sub-issue you pick, your description, and the photo, video, audio recording or document you attach.
- Your work: tasks assigned to you and what you did with them, events you joined, meetings you checked in to, activities you recorded and the photos attached to them, and answers you submit to activity and engagement questions.
- What you react to: the posts, videos and stories you open, and your likes and dislikes. These produce the view and vote counts other members see.
- Your consents: which version of the membership terms and of this policy you accepted, and when.
Location
The app asks for your location so it can attach a place to an issue post, show the issues and events nearest to you, and suggest the closest polling booths. A location is also saved on your membership record so your work can be counted in the right area. Location is read while you are using the app — never in the background — and you can refuse the permission and still use everything except the features that plainly need a place.
Information collected automatically
- A notification token for your device, so we can send you push notifications, along with when it was last used.
- Sign-in and activity timestamps: when you last signed in, when you were last active, and when you went on duty.
- Server records: your IP address and the time of a request in our web server logs, and in audit records of significant actions such as verifying a member or assigning a post.
- Crash diagnostics: if the app crashes, a report describing the crash, the device model and the app version.
What we do not collect. We do not read your contacts, SMS messages, call logs, or any other app’s data. We do not track your location in the background. We do not collect payment details — the app takes no payments. We do not buy personal data about you from anyone, and we do not sell yours.
Why we use it
- To run your membership — to create your record, issue your membership number and digital membership card, verify you, and place you in the right area of the organisation.
- To sign you in — we send a one-time code to your mobile number and check what you type against it.
- To do the organisation’s work — to route an issue you report to the office-bearer responsible for that area, to assign and follow up tasks, to record meetings and attendance, and to keep the leaderboard and points.
- To tell you things — push notifications about tasks, events and posts that concern you, and a WhatsApp message carrying your sign-in code.
- To keep the platform safe and working — rate limits, lockouts after repeated wrong codes, audit records, and fixing crashes.
- To meet legal obligations — where a law or a lawful order requires it.
We rely on your consent, given when you join and when you grant each phone permission, and on our legitimate interest in running the organisation and keeping the platform secure. You can withdraw consent at any time — see your rights.
How long we keep it
- Your membership record is kept for as long as you are a member, and for up to three years after your membership ends or you ask us to delete it, so the organisation can answer questions about who was a member when.
- Sign-in codes expire five minutes after they are sent and are destroyed once used.
- Sign-in sessions expire on their own, and immediately when you sign out.
- Posts, tasks, activities and attendance are kept as records of the organisation’s work. Where a record must remain, your name is removed from it after you delete your account.
- Server and audit logs are kept for up to twelve months.
Your rights
Under the Digital Personal Data Protection Act, 2023, you may:
- See what we hold about you, and a summary of how it is being processed.
- Correct it. Most of it you can change yourself: Profile → Edit profile.
- Have it erased, where we are not required to keep it.
- Withdraw your consent at any time. Withdrawing does not undo anything done before you withdrew.
- Nominate someone to exercise these rights for you if you die or become incapacitated.
- Complain — write to us first, and to the Data Protection Board of India if we do not resolve it.
Write to contact@rpd-org.in from your registered mobile number’s account or with enough detail for us to identify you. We answer within 30 days.
Deleting your account
You can ask us to close your membership account and delete the personal data on it. Send a request to contact@rpd-org.in with the subject “Delete my account”, from the mobile number you signed up with or stating it in the message. We act on it within 30 days and confirm when it is done.
What is deleted: your name, date of birth, gender, photo, voter ID, address, pincode, saved location, notification token, sign-in sessions and your mobile number.
What may remain: records of organisational work — issues reported, tasks completed, meetings attended — kept without your name attached, and anything a law requires us to retain. Membership numbers already credited to whoever recruited you stay as counts.
How we protect it
- Everything between the app and our servers travels over an encrypted connection.
- Sign-in codes are stored only as a one-way hash, are limited to five attempts, and lock the number for an hour after that.
- Access inside the organisation follows the hierarchy: an office-bearer sees the members and work of their own area and below, not the whole country.
- Significant administrative actions are recorded in an audit log with the member who did them.
No system is perfectly secure. If a breach affects your personal data we will notify you and the Data Protection Board of India as the law requires.
Children
Membership is for people aged 18 and over, and the app is not directed at children. We do not knowingly collect personal data from anyone under 18. If you believe a child has given us their data, write to us and we will delete it.
Changes to this policy
We update this policy when the app changes. If a change materially affects how your data is used, we will tell you in the app or by notification before it takes effect.
Contact us
- Data Fiduciary
- Rashtriya Parivartan Dal (RPD Sangathan)
- Contact email
- contact@rpd-org.in
- Postal address
- 97 North Avenue, North Avenue Road Area, Raisina Hills, New Delhi, Delhi 110001, India
- Website
- https://rpd-org.in/
