Service Data Information
How Wathiq handles data used during ePassport verification — distinct from website visitor privacy.
This page is specifically about data collected during an ePassport verification (such as submitted document data), distinct from the website visitor Privacy Notice.
During a verification, Wathiq collects document images, a selfie, and — where applicable — ePassport chip evidence (signed chip data), along with data extracted via OCR, the machine-readable zone, and barcodes. Sensitive identity fields are encrypted with AES-256-GCM, and documents, selfies, and chip evidence are stored in private, access-controlled, time-limited storage.
Each organisation's data is logically isolated from other organisations', and the final verification decision is made by the backend only — the mobile app and dashboard cannot override it. Exact specifics — hosting locations, data retention periods, and any subprocessors — are still being finalized and will be published here once complete.
If you need specific answers now — for example for your own security assessment — contact us directly.