DigiLocker’s ban on Karza has lessons for regtechs

By circumventing the rules for accessing Aadhaar data on the state-run document platform, the fintech firm seems to have landed itself and its clients in trouble.

2 December, 202213 min
0
DigiLocker’s ban on Karza has lessons for regtechs

Why read this story?

Editor's note: Update: After this story was published, a government official told The Morning Context that there was no unauthorized access of Aadhaar data by Karza Technologies. The firm failed to redirect its users to DigiLocker's authentication page, which was deemed as a violation of DigiLocker's terms of services that led to the ban, as we have detailed in the story. The official added that the government is now working towards building a comprehensive compliance framework for DigiLocker's partners in lieu of this incident. Karza Technologies would say it only tried to ease the verification process for official documents on behalf of its clients. But, in doing so, not only did the fintech software firm misuse its access to the Indian government’s DigiLocker platform, it may have also allowed its clients to gain unauthorized access to Aadhaar data. In October, DigiLocker, which is operated by the Ministry of Electronics and Information Technology, or MeitY, sent a letter to all the entities on its network informing them that Perfios-owned Karza Technologies had been banned from the platform owing to violations of the Aadhaar …

You may also like

Business
Story image

Q3 earnings lay bare $5 billion migraine for four of India’s top banks

While the earnings have been encouraging, the real challenge lies in addressing the slowing deposit growth and leadership uncertainty.

Business
Story image

RBI wants IndusInd Bank promoters, the Hindujas, cut to size

After successive controversies and growing unease over promoter influence, the central bank is reshaping the lender—starting with management, moving to its board and tightening the screws on ownership.

Internet
Story image

Sanchar Saathi was never the cure

Even though the government of India did a U-turn on the mandatory pre-installation of the anti-fraud app on all mobile phones sold or imported in the country, the larger problem of petty cybercrime remains grim.