ONISTA School Bell Privacy Policy

Effective date: 8 October 2026

Controller: XCEL MARKETING
Public brand: ONISTA Automation
Website: https://www.onista.in/
Privacy, support and deletion contact: sales@onista.in

Information the app uses

ONISTA School Bell uses the mobile number supplied for authentication, a Firebase account identifier, a random app-install abuse-prevention signal, and an FCM registration token when notifications are enabled. The service also uses a server-managed Bell eligibility record and a limited latest-order projection to decide which features to show and to display order status.

The app does not give the mobile client direct access to ONISTA Orders or CRM. Version 1.60 does not enable optional analytics, Support tickets, chat, attachments, or Firebase Storage uploads.

How information is used

The information is used to authenticate users, prevent OTP abuse, determine registered or restricted Bell access, show Bell configuration, notifications, updates and projected order status, operate Bluetooth features requested by the user, and maintain security and reliability.

Service providers

Firebase services supplied by Google provide authentication, app attestation, database, notifications and server functions. When SMS login is temporarily enabled, the destination mobile number and OTP message are sent through mySMSMantra, operated by MicroNet Infocom & Logistics Pvt. Ltd., and the mobile-network delivery chain.

mySMSMantra's public Terms & Conditions state that “user data” is retained for 90 days and may later be archived for scrutiny. Those public terms do not specify which OTP/message fields are included, the archive duration, or an end-user deletion procedure. ONISTA is seeking written, account-specific confirmation.

Retention

OTP challenges are configured to expire after 10 minutes. Bell-side SMS delivery metadata is configured for 30-day retention, and OTP rate-limit records for 35 days. These expiry settings and scheduled cleanup are configured in production; a controlled end-to-end observation of every automatic deletion interval has not yet been completed.

Bell account, access, notification and projected-order records are deleted when the authenticated Bell deletion workflow completes. A deletion marker is retained to prevent synchronization from silently recreating the Bell account. It is removed only after explicit OTP-verified re-registration or when the source can no longer recreate eligibility.

Orders and CRM are separate systems. Their records are not deleted by the Bell app and follow their owners' separate policies.

Account deletion

Use the red Delete account action in the signed-in app. If the app cannot be used, visit https://www.onista.in/school-bell-account-deletion or email sales@onista.in. Never send an OTP, password, reviewer access code, or payment information.

For external requests, ONISTA's service target is to acknowledge the request within 7 calendar days and complete it within 30 calendar days after ownership verification.

User choices and security

Notification and Bluetooth permissions can be managed in device settings. Users may request access, correction, or deletion by contacting sales@onista.in. SMS and mobile-network transmission has inherent risks; do not use an OTP message as a general-purpose communication channel.

Changes

Material changes will be posted on this page with a revised effective date.

© 2026 XCEL MARKETING · ONISTA Automation

ONISTA

Custom digital solutions for various business needs.

Contact

Subscribe Now

Xcel Marketing, SCF-11, FF
A-Block Market, Ranjit Avenue, Amritsar. 143001

sales@onista.in

Copyright 2024 - All Rights Reserved Website Design by Onista Company

All info submitted here will be kept confidential & will not be shared with third parties