Uttar Pradesh Police

E-Maalkhana

Uttar Pradesh Police

Back to Login

Privacy Policy

गोपनीयता नीति

Last updated: July 2026

1. Introduction / परिचय

E-Maalkhana ("the System") is a digital property and evidence (maalkhana) management platform operated for use by authorised personnel of the Uttar Pradesh Police. This Privacy Policy explains how personal data is collected, used, stored, and protected when you access or use the System.

ई-मालखाना उत्तर प्रदेश पुलिस के अधिकृत कर्मियों द्वारा उपयोग के लिए संचालित एक डिजिटल मालखाना / साक्ष्य प्रबंधन प्रणाली है। यह नीति बताती है कि सिस्टम के उपयोग के दौरान व्यक्तिगत डेटा कैसे एकत्र, उपयोग, संग्रहीत और सुरक्षित किया जाता है।

2. Data Fiduciary & developer / डेटा फिड्यूशरी और डेवलपर

Data Fiduciary / Owner: Uttar Pradesh Police (deploying unit: [Name of deploying unit / station / district]). The System is provided for official use by UP Police.

Developer / technology partner: Vinkura Innovations Network Pvt Ltd ("Vinkura AI") develops and maintains the software. Operational control of personal data remains with the Data Fiduciary (UP Police / deploying unit).

डेटा फिड्यूशरी / स्वामी: उत्तर प्रदेश पुलिस (तैनात इकाई: [तैनात इकाई / थाना / जिला])। डेवलपर: Vinkura Innovations Network Pvt Ltd (Vinkura AI)। व्यक्तिगत डेटा पर परिचालन नियंत्रण डेटा फिड्यूशरी के पास रहता है।

3. Purpose of processing / प्रसंस्करण का उद्देश्य

Personal data is processed solely for official policing and administrative purposes related to the custody, tracking, audit, and lawful disposal of property and evidence held in police maalkhana facilities, including user authentication, role-based access control, audit logging, and operational reporting.

व्यक्तिगत डेटा केवल आधिकारिक पुलिसिंग और प्रशासनिक उद्देश्यों के लिए प्रसंस्कृत किया जाता है — जिसमें मालखाना में रखी संपत्ति/साक्ष्य की अभिरक्षा, ट्रैकिंग, ऑडिट, वैध निपटान, उपयोगकर्ता प्रमाणीकरण, भूमिका-आधारित पहुँच, ऑडिट लॉग और परिचालन रिपोर्टिंग शामिल हैं।

4. Data we process / हम कौन-सा डेटा प्रसंस्कृत करते हैं

  • Account credentials and identity details of authorised users (e.g. name, official email, designation, station/district assignment).
  • Operational records linked to cases, FIR references, property/evidence items, custody movements, and related official documents or images.
  • Technical and security logs (login events, access timestamps, IP/device metadata where collected for security).
  • Essential session cookies for authentication; aggregated usage metrics via Vercel Analytics where enabled (see Cookies & analytics below).

अधिकृत उपयोगकर्ताओं के खाता/पहचान विवरण, केस व मालखाना परिचालन रिकॉर्ड, तथा सुरक्षा हेतु तकनीकी लॉग प्रसंस्कृत किए जा सकते हैं।

5. Legal basis & consent (DPDP) / कानूनी आधार और सहमति

Processing is carried out for legitimate use by a public authority in the discharge of official functions, and where applicable, on the basis of informed consent obtained from the Data Principal (user) at the time of login or account use, consistent with the Digital Personal Data Protection Act, 2023 (DPDP Act) and applicable rules. See also the Consent Notice.

प्रसंस्करण सार्वजनिक प्राधिकरण के आधिकारिक कार्यों के वैध उपयोग हेतु, तथा जहाँ लागू हो, डिजिटल व्यक्तिगत डेटा संरक्षण अधिनियम, 2023 (DPDP) के अनुरूप सूचित सहमति के आधार पर किया जाता है। सहमति सूचना भी देखें।

6. Retention & security / प्रतिधारण और सुरक्षा

Data is retained for as long as required for official records, statutory obligations, investigations, and audit requirements. Access is restricted by role. Reasonable technical and organisational measures are applied to protect personal data against unauthorised access, alteration, or disclosure.

डेटा आधिकारिक रिकॉर्ड, वैधानिक दायित्वों, जाँच और ऑडिट आवश्यकताओं के अनुसार रखा जाता है। पहुँच भूमिका के अनुसार सीमित है; अनधिकृत पहुँच से सुरक्षा हेतु उचित तकनीकी व संगठनात्मक उपाय अपनाए जाते हैं।

7. Sharing / साझाकरण

Personal data is not sold. It may be shared only with authorised police personnel, supervisory authorities, courts, or other agencies where required by law or for official investigation and administration. Hosting and analytics infrastructure providers (e.g. deployment platform) may process technical data as processors under contractual controls.

व्यक्तिगत डेटा बेचा नहीं जाता। इसे केवल अधिकृत पुलिस कर्मियों, पर्यवेक्षी प्राधिकारियों, न्यायालयों या कानून द्वारा अपेक्षित अन्य एजेंसियों के साथ साझा किया जा सकता है।

8. Cookies & analytics / कुकीज़ और एनालिटिक्स

Essential session cookies are used to keep you signed in and secure the session. Where enabled, Vercel Analytics may collect aggregated, privacy- oriented usage metrics (e.g. page views) to help operate and improve the System. These are not used to sell personal data.

आवश्यक सत्र कुकीज़ प्रमाणीकरण हेतु उपयोग होती हैं। जहाँ सक्षम हो, Vercel Analytics समग्र उपयोग माप एकत्र कर सकता है — व्यक्तिगत डेटा बेचने हेतु नहीं।

9. Your rights / आपके अधिकार

Subject to applicable law and operational restrictions on police records, Data Principals may have rights to seek information about processing, correction of inaccurate personal data relating to their user account, and withdrawal of consent where processing is consent-based (withdrawal does not affect prior lawful processing). Requests may be directed through official administrative channels of the concerned police unit. See also the Consent Notice — Rights.

लागू कानून और पुलिस रिकॉर्ड संबंधी परिचालन सीमाओं के अधीन, डेटा प्रिंसिपल को प्रसंस्करण की जानकारी, खाता संबंधी गलत डेटा के सुधार, तथा जहाँ सहमति-आधारित प्रसंस्करण हो वहाँ सहमति वापस लेने का अधिकार हो सकता है। अनुरोध संबंधित पुलिस इकाई के आधिकारिक प्रशासनिक माध्यम से किए जा सकते हैं।

To request correction of inaccurate account-related personal data, contact your station / district system administrator or use the Contact page.

खाता संबंधी गलत व्यक्तिगत डेटा के सुधार हेतु अपने थाना / जिला सिस्टम प्रशासक या संपर्क पृष्ठ के माध्यम से अनुरोध करें।

10. Withdrawal of consent / सहमति वापसी

Where processing is consent-based, you may withdraw consent by contacting the system administrator or the designated Data Protection Officer of the deploying unit. Contact placeholder: [Designate DPO email]. Withdrawal of consent ends further access to E-Maalkhana. It does not require erasure of prior official records, audit logs, or operational data retained as required by law, departmental policy, or ongoing investigation / court process. Withdrawal does not affect processing already carried out lawfully. Details: Consent Notice — Withdraw consent.

जहाँ प्रसंस्करण सहमति पर आधारित हो, सिस्टम प्रशासक या तैनात इकाई के नामित डेटा संरक्षण अधिकारी से संपर्क कर सहमति वापस ली जा सकती है। सहमति वापसी से ई-मालखाना की आगे की पहुँच समाप्त हो जाती है; कानून / विभागीय नीति / जाँच या न्यायालय प्रक्रिया के अनुसार रखे जाने वाले पूर्व आधिकारिक रिकॉर्ड मिटाना आवश्यक नहीं होता। ईमेल प्लेसहोल्डर: [Designate DPO email]।

11. Data Protection Board of India / भारत का डेटा संरक्षण बोर्ड

Data Principals may approach the Data Protection Board of India for grievances under the DPDP Act, as provided by law. Grievance portal: dpdpa-grievance.gov.in. A dedicated public Board website link will be updated when further published.

डेटा प्रिंसिपल DPDP अधिनियम के अधीन भारत के डेटा संरक्षण बोर्ड से शिकायत कर सकते हैं। शिकायत पोर्टल: dpdpa-grievance.gov.in। समर्पित सार्वजनिक वेबसाइट लिंक प्रकाशित होने पर अद्यतन किया जाएगा।

12. Contact / संपर्क

For privacy-related queries regarding E-Maalkhana, contact the system administrator or the designated Data Protection Officer of your police station, district, or state administrative unit. Do not use a fabricated contact — ops should fill: [Designate DPO email].

ई-मालखाना संबंधी गोपनीयता प्रश्नों के लिए अपने थाना / जिला / राज्य प्रशासनिक इकाई के सिस्टम प्रशासक या नामित डेटा संरक्षण अधिकारी से संपर्क करें। ईमेल प्लेसहोल्डर: [Designate DPO email]।