Yapi ve Kredi Bankasi Anonim Şirketi Privacy Policy

We, as Yapı ve Kredi Bankası Anonim Şirketi (“Yapı Kredi” or “the Bank”), would like to inform you on how we process your personal and other types of data, while you use our POS Cepte application (“the Application”), in order to improve your experiences and provide you a simpler usage of the Application by some functions of the Application, as well as on permissions we collect via the Application.

Usage of our Application is being conducted in compliance with all the legislations that the Bank is subject to, especially with the Law on Protection of Personal Data No.6698 (“the PPDL”). You may reach detailed information regarding the purposes of processing of your personal data by our Bank via the Yapı ve Kredi Bankası A.Ş. Policy on Protection and Processing of Personal Data, which is publicly announced on the web site at the address of www.yapikredi.com.tr.

Method and Legal Reason of Collecting Personal Data

Your personal data are collected by our Bank upon your usage of the Application via a variety of functions of the Application, based on the legal grounds of our Bank’s legitimate interest, execution or performance of a contract or your explicit consent, if available. Your personal data which are collected as per the said legal reasons, may also be processed within the scope of personal data processing conditions and purposes set forth in articles 5 and 6 of the PPDL for the purposes specified herein this Privacy Policy.

For What Purposes And To Whom Shall Your Personal Data Be Transferred?

As Yapı Kredi, we may transfer your personal data to our shareholders within or outside Turkey, our subsidiaries, legally authorized public/private institutions and corporations, our business partners and our suppliers, as per the scope of the purposes mentioned above and in compliance with the relevant legislations.

For What Purposes Shall Your Personal Data Be Processed?

As Yapı Kredi, we collect permissions for several purposes via different variety of functions based on different operating systems and we process your personal data via such functions. The main permissions and personal data that are collected are as following:

Android Mobiles Operating Systems:

Required Permission Reason
Internet Access It is required for the application to work.
Location It is required for geofencing service and showing nearest campaigns on map view.
SMS To be able to automatically fill up the smart password input.
NFC It is required for mobile payment services.
Device ID and Call Information It is required for Remember Me Function.
IMEI no. It is required for providing end-to-end security control.
Permission to Store It is required for the SDK (Software Development Kit) on the device to function.
Permission to Call It is required for calling Yapı Kredi Customer Contact Center directly.

What Are Your Rights As A Data Subject?

If you, as the data subject, send your demands regarding your rights to our Bank via methods mentioned in the Yapı ve Kredi Bankası A.Ş. Policy on Protection and Processing of Personal Data; the Bank shall conclude such demands, free of any charge, within shortest period or within thirty (30) days the latest, depending on the nature of relevant demand. However, if the transaction requires any cost separately, the Bank shall charge fee at the rate specified in the tariff determined by the Personal Data Protection Board. In this context, owners of personal data have following rights:

  • to find out whether their personal data has been processed,
  • to request information if their personal data has been processed,
  • to find out the purpose for processing of their personal data and whether they have been used in accordance with this purpose,
  • to be informed of the domestic or international third parties to which the personal data has been transferred,
  • request for the correction of personal data if they are incomplete or incorrectly processed and ask that the process carried out in this context be notified to the third parties to whom personal data have been transmitted,
  • Request for the deletion or destruction of personal data if the reasons for processing the same have ceased to exist although they have been processed in accordance with the Law and other relevant laws, and ask that the process carried out in this context be notified to the third parties to whom personal data have been transmitted,
  • to object to any unfavourable result suffered due to analysis of processed data exclusively by means of automatic systems and
  • to demand indemnification of losses suffered due to personal data being processed in breach of the law

Account Deletion Request

If you wish to delete your Yapı Kredi POS Cepte merchant account, you can submit your account deletion request at the nearest Yapı Kredi branch. After identity verification, you can submit your account deletion request.

Account Deletion Request

  • Receipt of Request: Once we receive your account deletion request, necessary reviews will be initiated. During this process, we may contact you to verify your request.
  • Data Deletion: Due to legal requirements, some data may need to be retained for a certain period. In such cases, we will inform you about the retention of these data.

By following the necessary steps, we aim to ensure a smooth and compliant account deletion process while protecting your personal data.