Situ collects only the information needed to check eligibility, capture consent, process applications, and show redacted application status. Anonymous public writes are gated before personal data is recorded.
Consent first
Application intake records consent before collecting applicant details. Required purposes are shown in the consent dialog before submission.
Data minimisation
Device and user-agent signals are hashed on the client where available; raw fingerprints are not sent to the public API.
Status tracking
Public tracking requires a one-time code and returns a borrower-redacted timeline rather than internal underwriting or officer data.
Your rights
See the data categories used for eligibility, onboarding, and application tracking.
Withdraw optional consent without affecting lawful processing already completed.
Ask for correction, deletion, portability, or restriction through the authenticated support channel once deployed.
Escalate privacy complaints to the Data Commissioner when statutory rights are not honoured.
Privacy rights planner
Prepare a privacy request packet before handoff to authenticated support.
Suggested category for access_summary: application_status
Identity check is required before privacy self-service.
Authenticated support ticket handoff must be ready.
Safe contact channel must be confirmed before response.
access_summary | application_status | WhatsApp
Privacy controls
Privacy self-service unavailable
Anonymous public writes are gated. DSAR, deletion, portability, and consent-withdrawal requests must be submitted through authenticated support until live privacy self-service routes are deployed.