loader

EasyOTP Terms and Conditions

Operated by Braintech Corporation Private Limited

Effective Date: August 2025

1. Introduction

These Terms and Conditions ('Terms') govern the use of EasyOTP products and services provided by Braintech Corporation Private Limited ('Braintech', 'we', 'our', 'us'). By accessing or using our Services, including EasyOTP authentication (OTP, Magic Link, QR), A2P messaging, and Scan validation flows (collectively, 'Services'), you ('Vendor', 'Customer', 'User') agree to be bound by these Terms.

2. Definitions

• 'Vendor' means any organization or business integrating EasyOTP Services.
• 'User' means an end customer or individual using EasyOTP to authenticate or receive notifications.
• 'Services' mean authentication, messaging, and scan products provided by EasyOTP.
• 'Data' means personal or technical information processed under these Terms.
• 'Consent' refers to user approval for sharing personal data (such as phone number) with Vendors.

3. Scope of Services

EasyOTP provides:

• Authentication services: OTP, Magic Link, and QR login flows.
• A2P Messaging: Secure delivery of business-to-user notifications.
• Scan Validation: QR-based validation for users and vendors.
• SDKs and APIs: For integration into Vendor systems.
• Vendor dashboards: To manage integrations, analytics, and compliance.

4. Vendor Responsibilities

Vendors integrating EasyOTP agree to:

• Use Services only for lawful purposes.
• Implement EasyOTP APIs and SDKs in compliance with documentation.
• Not misuse user data (e.g., PII such as phone numbers) beyond the consented purpose.
• Respect user withdrawals of consent by terminating sessions upon webhook/ email notification.
• Maintain their own user sessions after authentication.
• Ensure that any use in regulated industries complies with applicable laws (e.g., HIPAA, DPDP, GDPR).

5. User Responsibilities

Users agree to:

• Provide accurate and up-to-date information.
• Maintain security of their EasyOTP account and device.
• Not engage in fraudulent, abusive, or illegal use of Services.
• Respect the rights of Vendors and EasyOTP.
• Withdraw consent responsibly if they no longer wish to share their phone number with Vendors.

6. Data Privacy & Security

• EasyOTP processes data in accordance with its Privacy Policy.
Data residency: US (US users), EU (EU/EEA users), India (Indian users), Singapore (rest of world).
• Cross-border transfers are safeguarded by SCCs and equivalent mechanisms.
• Security measures include encryption, access controls, and monitoring.
• Vendors agree to comply with DPA, BAA (if applicable), and other compliance requirements.

7. User Consent

• Consent is collected via the EasyOTP app at the time of login (QR scan, OTP, or Magic Link).
• Vendors may only access phone numbers or other PII with valid user consent.
• Withdrawn consent is communicated via webhook and/ or email to Vendors.
• Vendors must act immediately to terminate active sessions and stop processing upon consent withdrawal.
• Vendors are prohibited from using PII for marketing or unrelated purposes.

8. Subprocessors

• Braintech uses subprocessors (e.g., AWS, Firebase) to deliver Services.
• Vendors consent to use of these subprocessors as part of EasyOTP Services.

9. Compliance

EasyOTP complies with applicable laws, including:

• GDPR (EU/EEA)
• DPDP (India)
• HIPAA (where a BAA applies)
• CCPA/CPRA (California)
• Other applicable telecom and data protection laws globally

10. Fees & Payment

• Fees are charged according to the pricing plan selected.
• Startup, Growth, and Enterprise tiers include event quotas; excess usage incurs additional charges.
• Add-ons (such as International or over usage) are billed separately.
• Payments are non-refundable unless otherwise required by law.
• Vendors are responsible for taxes, duties, and compliance with billing terms.

11. Service Availability

• EasyOTP targets 99.9% uptime for Enterprise plans with SLA guarantees.
• Services may be interrupted for maintenance, upgrades, or unforeseen issues.
• EasyOTP will use commercially reasonable efforts to restore services promptly.
• No liability for downtime beyond SLA commitments.

12. Liability & Disclaimer

• EasyOTP provides services 'as is' without warranties beyond those explicitly stated.
• We are not liable for indirect, incidental, or consequential damages.
• Vendors remain responsible for their own applications, users, and compliance.
• EasyOTP is not responsible for loss caused by Vendor misuse or misconfiguration.

13. Termination

• Vendors may terminate accounts by written notice or via dashboard.
• EasyOTP may suspend or terminate access for violations of these Terms.
• Data may be retained for compliance obligations after termination.

14. Governing Law

• US: Applicable state and federal laws
• EU: GDPR and EU data protection laws.
• India: For Indian Vendors and Users.
• Global: Applicable local laws based on Vendor/User location.
Disputes may be subject to arbitration or court jurisdiction in Haryana, India, unless overridden by law.

15. Amendments

EasyOTP may amend these Terms with notice. Continued use after changes constitutes acceptance.

16. Contact Us

Braintech Corporation Private Limited
Email: contact@easyotp.com
Website: https://easyotp.com

17. Version Control

Version

Date

Description of Changes

Approved By

1.0

Aug 2025

Initial comprehensive Terms & Conditions covering all products (Auth, A2P, Scan).

Legal/Compliance