TasHeel is permitted by the Central Bank of Oman to test its innovative products under the Fintech Regulatory Sandbox.

Privacy Policy

Effective Date: August 28, 2025

Last Updated: August 28, 2025

1. Information We Collect

We may collect the following types of personal data:

  • Identity Information: Full name, national ID/residence card number, date of birth, nationality.
  • Contact Information: Email address, phone number.
  • Travel Details: Booking history, travel dates, destination preferences.
  • Technical Data: IP address, device type, browser information, usage logs,
  • Precise Location Data (One-Time): During the initial identity verification process, and only with your explicit consent, we collect your device’s precise location a single time. This is solely to confirm your physical presence within Oman, a mandatory requirement for providing our financial services under Omani law. We do not continuously track or monitor your location after this one-time check.
  • Biometric Verification Data (eKYC): To verify your identity and comply with Know Your Customer (KYC) and Anti-Money Laundering (AML) regulations, we collect a facial image and a scan of your government-issued identification document (e.g., National ID) through our in-app electronic verification (eKYC) process. This data is used solely for the purpose of confirming your identity and preventing fraud.

2. Use of Biometric and Facial Data and location

The facial image collected during the eKYC process is used exclusively for identity verification. This involves:

  • Comparing your live facial capture to the photo on your submitted government ID to confirm your identity.
  • Ensuring the submitted ID is genuine and valid.
  • This mandatory process is required to comply with Omani financial regulations (under the supervision of the Central Bank of Oman) and to secure your account against fraud.
  • Our app does include TrueDepth APIs through the Nashid SDK (version 2.6.1), which is a third-party identity verification service required for Omani financial regulations compliance.
  • Perform a one-time verification of your physical location within Oman** to ensure regulatory compliance and confirm your eligibility for our services, which are exclusively offered within the Sultanate.

3. Data Storage, Retention & Security

  • All personal data, including biometric verification data (facial and ID images), is encrypted at rest and in transit and stored securely on our servers located at Oman Data Park.
  • We retain biometric data only for the duration required to fulfill our regulatory obligations mandated by the Central Bank of Oman, or as required by Omani law for audit and fraud prevention purposes.
  • We implement industry-standard security measures, including end-to-end encryption for sensitive transactions, secure server environments, role-based access controls, and regular security audits.

4. Data Sharing and Disclosure

Your personal data is kept strictly confidential. It will not be shared with any third parties except in the following circumstances:

  • When required by law or regulatory authorities, such as the Central Bank of Oman, specifically for the purposes of audit, investigation of financial fraud, or ensuring compliance with banking and financial regulations.
  • With necessary service providers (e.g., secure cloud storage, payment processors) who are bound by strict data processing agreements and who assist in our operations.

Contact Us

For questions or concerns about this Privacy Policy or your data, please visit our

https://tasheelfs.om/contact-us