For End Users
This notice is for people who connected their bank account through an app or service powered by OpenDinar β not for developers building with our API.
OpenDinar is a technology company based in Belgrade, Serbia. We build the secure infrastructure that allows apps to connect to Serbian banks. You probably never typed our name β you just clicked "Connect my bank" inside another app. That connection runs through us.
Think of us like the electricity grid: you interact with the light switch (the app you used), but the power comes through infrastructure you don't see. We don't communicate with you directly β only the app does. OpenDinar is the layer in between.
We never move your money. OpenDinar only reads information your bank already holds, and only if you agree to it. We cannot send, receive, or take a single dinar from your account, and we do not offer payment services of any kind.
Please note: OpenDinar is not yet licensed by the National Bank of Serbia, so no real bank account is connected to us today and we do not currently hold anyone's real financial data. This notice explains how your data will be handled once live bank connections begin.
When you connect your bank account through an OpenDinar-powered app, we process and may temporarily store the following β only for the specific data types the app requested and that you consented to:
This data is fetched from your bank and delivered to the app you used. We may cache it briefly to improve performance and reliability, but we are not in the business of building profiles on you or monetising your financial data in any way.
When you log in to your bank through our Link Widget, that happens directly and securely between your browser and your bank. OpenDinar only receives the account data your bank sends back β never your credentials.
Your data is used for one purpose only: to deliver the feature you asked for inside the app you connected through. For example:
We do not use your financial data for advertising, cross-app profiling, or any secondary purpose beyond powering the specific service you gave consent for.
You are always in control. You can revoke access at any time through any of these methods:
Once access is revoked, we stop receiving new data from your bank immediately. Any data we hold is deleted within 30 days. Note that the app you connected may retain data it already received β check their privacy policy for their data deletion practices.
Under Serbia's Law on Personal Data Protection (Zakon o zaΕ‘titi podataka o liΔnosti, ZZPL) and the principles of the EU General Data Protection Regulation (GDPR), you have the following rights:
To exercise any of these rights, email us at privacy@opendinar.com with the subject line "End User Privacy Request". We will respond within 30 days.
If you have any questions about how your data was handled, or if you are unsure whether a specific app used OpenDinar infrastructure, reach out to us directly:
Email: privacy@opendinar.com
Subject: "End User Privacy Request"
Address: OpenDinar, Pilota Mihaila Petrovića 15, Belgrade, Republic of Serbia
If you are a developer or business looking for the full technical privacy policy, see the OpenDinar Privacy Policy for Developers.