ePahichan privacy policy
Last updated: 1 October 2026
Who we are
ePahichan is a digital identity and digital signature app for Nepal. It is built and run by Ninja Infosys Pvt. Ltd., Anamnagar, Kathmandu (the operator, “we”). Digital signature certificates are issued by Radiant, the licensed certifying authority, under its NCC brand. ePahichan is not a government service.
Contact for privacy questions: info@ninjainfosys.com, 01-5922361.
What we collect
We collect only what the app needs to work. Here is each kind of data and why.
| Data | Why we collect it |
|---|---|
| Mobile number | To create and secure your account, and to text you sign-in codes. |
| Name and the details on your ID document, address and contact details | To apply for a digital signature certificate and to show your name on signatures. |
| Photos of your ID document | For NCC to verify your identity when you apply for a certificate. |
| Face images taken during the face check | To check that you are the person on the ID document. |
| Certificate data (certificate, serial number, status, expiry) | To show and manage your certificate and to apply your signature. |
| Documents you sign or send | To sign them, send them to the people you choose, track progress and keep a record. Documents are encrypted at rest. A document you sign yourself with a certificate on your phone stays on your phone unless you choose to keep a copy in ePahichan. Only its fingerprint (a hash) is sent where a signing request needs one. |
| Contacts you add | Names and phone numbers or emails you enter so you can send documents to them and invite them to organizations. We do not read your phone’s address book. |
| Organization data | Members, roles, teams, workspaces, channels and memos you create or join. |
| Email address, if you link one | For invitations to organizations and for notices. It is optional. Signing in stays by phone. |
| Push notification token | To send you notifications through Firebase Cloud Messaging. |
| Payment status | Whether a fee or renewal was paid through Fonepay or a bank or wallet app. We do not see or store your card or bank login details. |
| Server logs: the time of each request, the IP address it came from and the app version | To keep the service working and secure. Kept for 90 days. The app has no analytics or crash-reporting tools. |
Your signing key is created on your phone and kept in its secure hardware. It never leaves the phone and we cannot read it.
Permissions the app asks for
- Camera: to photograph your ID document, do the face check and scan pages of documents.
- Biometrics: to unlock your signing key with your fingerprint or face. Your biometric data stays in your phone’s system and is never sent to us.
- Notifications: to tell you about signing requests and updates.
- Internet: to talk to our servers and to the certifying authority.
Who we share data with
We do not sell your data. We share it only as needed to run the service.
- Radiant (NCC), the certifying authority: your identity details, ID document images, face check results and certificate requests, so it can verify you and issue, suspend, renew or revoke your certificate. Radiant’s own policy applies to what it holds.
- Fonepay and your bank or wallet app: payment details needed to process the fee or renewal.
- Aakash SMS: your mobile number and the message text, to deliver sign-in codes and signing links by SMS.
- Google Firebase Cloud Messaging: your push token and notification content, to deliver notifications.
- The people you send documents to, and members of organizations you join: the documents, names and signing status you choose to share with them.
- Authorities, where the law requires it, for example under a valid legal order.
Where data is kept and how it is protected
Data is sent over encrypted connections (HTTPS/TLS). Documents are encrypted at rest. Our servers are in Nepal. Documents are encrypted on our servers before they are stored with Cloudflare, so Cloudflare cannot read them. Access is limited to the people who run the service.
How long we keep it
- Account data: while your account is open.
- Certificate and identity verification records: kept by Radiant for as long as the law requires a certifying authority to keep them.
- Documents and envelopes: until you delete them or close your account, except records the law requires us to keep.
- Push token: until you sign out or remove the app.
- Server logs: 90 days.
- Backups: copies are overwritten within 30 days.
Your choices and deleting your data
You can see and correct your details in the app. You can remove contacts and documents you keep in ePahichan. To delete your account and its data, open Settings in the app, or at app.epahichan.com, and choose Delete account. See how to delete your account for what is deleted and what is kept. If you cannot use the app, write to info@ninjainfosys.com from your registered phone number or email and we will delete the account within 30 days. Signed documents that other people already hold, and records a certifying authority must keep by law, cannot be recalled or deleted.
Children
ePahichan is for people aged 18 and over. We do not knowingly collect data from children.
Changes
If we change this policy we will post the new version at this address and change the date above.
Contact
Ninja Infosys Pvt. Ltd., Anamnagar, Kathmandu. info@ninjainfosys.com, 01-5922361.