The Central KYC Records Registry (CKYCRR) on July 23, 2025, issued an advisory on the Usage of CKYC Services via Third-Party Vendors.
The following has been stated: -
•CERSAI received complaints of unauthorized CKYC downloads and updates traced to a third-party vendor’s technical glitch engaged by a Reporting Entity (RE).
•REs are reminded that outsourcing does not absolve them of responsibility for such lapses affecting customer trust and data safety.
•All REs using third-party vendors must exercise enhanced due diligence, strengthen access controls, and ensure compliance with data security guidelines.
•CERSAI urges strict monitoring to protect customer interests and maintain CKYCRR system integrity.
The detailed notification is given in the document below.
[Notification No. CKYC/2025/10]