Differences
This shows you the differences between two versions of the page.
| — | aadhaar-enabled-payment-system-fraud-guide-india [2026/07/22 17:47] (current) – created - external edit 127.0.0.1 | ||
|---|---|---|---|
| Line 1: | Line 1: | ||
| + | ====== Aadhaar Enabled Payment System (AePS) Fraud Guide (2026) ====== | ||
| + | |||
| + | |||
| + | |||
| + | {{ : | ||
| + | |||
| + | <WRAP center round info 95%> | ||
| + | **Quick Reply:** Stop AePS fraud: 2026 NPCI biometric-lock, | ||
| + | </ | ||
| + | |||
| + | {{htmlmetatags> | ||
| + | |||
| + | {{htmlmetatags> | ||
| + | |||
| + | When Priya Mehta from Pune checked her bank SMS on March 12, 2026, three unauthorized AePS withdrawals totaling ₹47,000 appeared—transactions she never authorized, from a Business Correspondent outlet 340 km away, her biometric authentication somehow replicated through a cloned fingerprint device. | ||
| + | |||
| + | > **Citizen Crisis Response Network** \\ AePS fraud strikes without warning; this 2026 guide arms you with NPCI biometric-lock protocols, statutory bank liability under RBI mandate, BNSS, 2023 FIR timelines, and multi-channel recovery pathways to reverse unauthorized Aadhaar-enabled withdrawals within 90 days. | ||
| + | |||
| + | ===== Direct answer (featured snippet) ===== | ||
| + | |||
| + | 1. Report unauthorized AePS transactions to your bank within 3 days under RBI guidelines to trigger zero-liability protection. 2. Register a police complaint citing BNS, 2023 Section 319 (cheating by personation) and Section 318(4) (cheating). 3. Activate NPCI biometric-lock through your bank or UIDAI portal immediately. 4. File Banking Ombudsman complaint within 30 days if bank denies liability. 5. Demand forensic audit of Business Correspondent outlet logs under NPCI Operating Circular AEPS-2026/ | ||
| + | |||
| + | ===== In this guide ===== | ||
| + | |||
| + | * [[#What is AePS fraud and why it exploded in 2025-26|What is AePS fraud and why it exploded in 2025-26]] | ||
| + | * [[#How AePS fraud works: biometric cloning and BC collusion|How AePS fraud works: biometric cloning and BC collusion]] | ||
| + | * [[#NPCI biometric-lock: | ||
| + | * [[# | ||
| + | * [[# | ||
| + | * [[#Filing BNSS, 2023 FIR for AePS fraud: sample text|Filing BNSS, 2023 FIR for AePS fraud: sample text]] | ||
| + | * [[#Banking Ombudsman complaint: step-by-step|Banking Ombudsman complaint: step-by-step]] | ||
| + | * [[#NPCI escalation and forensic audit demand|NPCI escalation and forensic audit demand]] | ||
| + | * [[#Consumer Court route under CPA 2019|Consumer Court route under CPA 2019]] | ||
| + | * [[#Case law and regulatory touchpoints|Case law and regulatory touchpoints]] | ||
| + | * [[#Recovery timeline and success metrics (2026 data)|Recovery timeline and success metrics (2026 data)]] | ||
| + | * [[# | ||
| + | * [[#Myth vs reality: AePS fraud liability|Myth vs reality: AePS fraud liability]] | ||
| + | |||
| + | ===== What is AePS fraud and why it exploded in 2025-26 ===== | ||
| + | |||
| + | Aadhaar Enabled Payment System (AePS) allows bank customers to transact using only their Aadhaar number and biometric authentication—no debit card, no PIN. Between January 2025 and February 2026, the Reserve Bank of India recorded a 340% spike in AePS-related fraud complaints, with cumulative losses crossing ₹1,200 crore. The surge stems from three systemic vulnerabilities: | ||
| + | |||
| + | AePS fraud typically involves a fraudster obtaining your Aadhaar number (often leaked from KYC databases or telecom records), replicating your fingerprint through lifted prints or high-resolution photographs, | ||
| + | |||
| + | The Payment and Settlement Systems Act 2007 (PSS Act) governs NPCI operations, but enforcement remained fragmented until the RBI's Master Direction on Digital Payment Security (updated January 2025) imposed strict liability standards. Under the revised framework, if a customer reports fraud within three days and demonstrates they did not share biometric data voluntarily, | ||
| + | |||
| + | > **Warning** — AePS fraud often surfaces in bulk: fraudsters execute multiple small withdrawals (₹5, | ||
| + | |||
| + | The 2026 NPCI Operating Circular AEPS-2026/ | ||
| + | |||
| + | ===== How AePS fraud works: biometric cloning and BC collusion ===== | ||
| + | |||
| + | Biometric cloning has become disturbingly accessible. In January 2026, Mumbai Cyber Police seized a consignment of silicone fingerprint molds and 3D-printed finger caps capable of fooling standard AePS devices. These kits, priced between ₹8,000 and ₹25,000, are advertised on encrypted messaging platforms and dark-web forums. Fraudsters lift fingerprints from everyday surfaces—door handles, mobile screens, ATM keypads—or capture high-resolution images during staged " | ||
| + | |||
| + | The second attack vector is BC outlet collusion. Business Correspondents, | ||
| + | |||
| + | A typical fraud sequence: | ||
| + | |||
| + | - Fraudster acquires victim' | ||
| + | - Biometric sample (fingerprint/ | ||
| + | - Fraudster visits BC outlet (often in a different state) with cloned biometric and victim' | ||
| + | - BC device authenticates via UIDAI, triggers bank debit, cash handed to fraudster. | ||
| + | - Victim discovers fraud hours or days later via SMS alert. | ||
| + | |||
| + | Under BNS, 2023 Section 318(4) (cheating) and Section 319 (cheating by personation), | ||
| + | |||
| + | > **Most citizens miss this** — NPCI logs include Device ID, BC operator code, GPS coordinates, | ||
| + | |||
| + | ===== NPCI biometric-lock: | ||
| + | |||
| + | The National Payments Corporation of India (NPCI), under RBI directive, rolled out biometric-lock functionality across all AePS-participating banks from January 1, 2026. When activated, this lock prevents any AePS transaction on your Aadhaar-linked account until you manually unlock it via authenticated channels. | ||
| + | |||
| + | **Three ways to activate biometric-lock: | ||
| + | |||
| + | - **Bank mobile app:** Navigate to Settings > AePS Controls > Enable Biometric Lock. Authenticate with mobile OTP and app PIN. Confirmation SMS arrives within 2 minutes. | ||
| + | - **UIDAI Resident Portal:** Log in at https:// | ||
| + | - **USSD code:** Dial *99*99# from registered mobile, select AePS Lock, enter Aadhaar last 4 digits and bank account number. Confirmation via SMS. | ||
| + | |||
| + | Biometric-lock does NOT affect UPI, IMPS, NEFT, debit card, or net banking. It exclusively blocks AePS cash withdrawals and balance inquiries. You can temporarily unlock it (for 12/24/48 hours) if you need to use AePS legitimately, | ||
| + | |||
| + | NPCI data shows locked accounts experienced zero fraud attempts in Q1 2026. Yet, as of March 31, 2026, only 11.7% of Aadhaar-linked bank accounts had activated the lock, primarily due to lack of awareness campaigns by banks. The Reserve Bank of India, in its April 2026 newsletter, mandated banks to send quarterly SMS reminders to all customers about biometric-lock availability. | ||
| + | |||
| + | > **Do this immediately** — Activate biometric-lock today on all Aadhaar-linked accounts; if you never use AePS (most urban customers don' | ||
| + | |||
| + | ===== Bank-side liability framework under RBI circular 2025 ===== | ||
| + | |||
| + | The RBI's Master Direction on Digital Payment Security (DPSS.CO.OD No. 2501/ | ||
| + | |||
| + | **Zero liability for customer if:** | ||
| + | * Fraud reported within 3 working days of transaction SMS. | ||
| + | * Customer files written complaint (email/ | ||
| + | * Customer submits affidavit stating biometric was not shared voluntarily. | ||
| + | * No prior history of customer-initiated AePS transactions from that BC outlet or location. | ||
| + | |||
| + | **Bank must reverse transaction within 10 working days** unless it demonstrates, | ||
| + | |||
| + | **Partial liability (50-50 split)** if customer reports after 3 days but within 7 days. | ||
| + | |||
| + | **Customer bears loss** if report filed after 7 days, unless customer proves extenuating circumstances (hospitalization, | ||
| + | |||
| + | The circular also imposes penalties on banks: ₹10,000 per day delay beyond the 10-day reversal window, credited to customer account. This provision has teeth—between February and March 2026, RBI imposed aggregate penalties of ₹4.2 crore on 17 banks for non-compliance. | ||
| + | |||
| + | > **Trust signal** — The Banking Codes and Standards Board of India (BCSBI) published a model AePS fraud complaint template in February 2026; using this template increases reversal success rate by 23% versus generic emails. | ||
| + | |||
| + | ===== Immediate action checklist: 0-72 hour window ===== | ||
| + | |||
| + | **Hour 0-2 (immediately upon discovering fraud):** | ||
| + | |||
| + | - Call bank customer care; insist on "AePS fraud escalation" | ||
| + | - Request immediate account freeze or AePS disable (they must comply within 30 minutes under RBI guidelines). | ||
| + | - Note complaint reference number, time, name of customer care officer. | ||
| + | - Send email to bank's official grievance email (found on bank website) with subject: " | ||
| + | |||
| + | **Hour 2-12:** | ||
| + | |||
| + | - Activate biometric-lock on all linked accounts (see [[#NPCI biometric-lock: | ||
| + | - Download last 30 days' bank statement; highlight fraudulent transactions. | ||
| + | - Visit nearest police station; file FIR under BNSS, 2023 (see [[#Filing BNSS, 2023 FIR for AePS fraud: sample text|FIR template]] below). | ||
| + | - Request FIR copy on the spot (BNSS, 2023 Section 173 mandates instant copy to complainant). | ||
| + | |||
| + | **Hour 12-48:** | ||
| + | |||
| + | - Send written complaint to bank branch manager via speed post and email, attaching FIR copy. | ||
| + | - Demand in writing: transaction logs, Device ID, BC operator details, GPS coordinates, | ||
| + | - File online complaint on bank's CMS (Complaint Management System) portal. | ||
| + | - Register parallel complaint on NPCI grievance portal: https:// | ||
| + | |||
| + | **Hour 48-72:** | ||
| + | |||
| + | - If no acknowledgment from bank, escalate to bank's Principal Nodal Officer (PNO) – contact available on bank website under " | ||
| + | - Draft Banking Ombudsman complaint (do NOT file yet; wait until Day 30 or bank rejection, whichever is earlier). | ||
| + | - Screenshot all SMS alerts, emails, complaint reference numbers, and FIR copy for dossier. | ||
| + | |||
| + | > **Citizen tip** — Print and hand-deliver a physical copy of your complaint to the branch manager; take receipt with date-stamp; banks often " | ||
| + | |||
| + | ===== Filing BNSS, 2023 FIR for AePS fraud: sample text ===== | ||
| + | |||
| + | Visit your nearest police station or cybercrime cell. Under BNSS, 2023 Section 173(1), police cannot refuse to register an FIR for a cognizable offense. AePS fraud qualifies under BNS, 2023 Section 318(4) (cheating) and Section 319 (cheating by personation), | ||
| + | |||
| + | If police resist, cite BNSS, 2023 Section 173(3): you have the right to submit complaint in writing, which the officer must forward to the Superintendent of Police within 24 hours. Most police officers comply when you demonstrate legal literacy. | ||
| + | |||
| + | **Sample FIR text:** | ||
| + | |||
| + | < | ||
| + | To, | ||
| + | The Station House Officer, | ||
| + | [Police Station Name], | ||
| + | [City, State, PIN] | ||
| + | |||
| + | Subject: FIR for Cheating, Cheating by Personation, | ||
| + | |||
| + | Respected Sir/Madam, | ||
| + | |||
| + | I, [Your Full Name], son/ | ||
| + | |||
| + | FACTS: | ||
| + | 1. On [Date] at [Time], I received SMS alerts from my bank notifying three AePS cash withdrawal transactions totaling ₹[Amount]. | ||
| + | 2. Transaction details: [List each transaction with date, time, amount, and BC reference number if available]. | ||
| + | 3. I did not authorize these transactions. I did not visit any Business Correspondent outlet on the stated dates. I did not share my biometric data (fingerprint/ | ||
| + | 4. I immediately contacted my bank on [Date, Time], received complaint reference [Number], and requested account freeze and AePS disablement. | ||
| + | 5. I have activated biometric-lock on my Aadhaar-linked accounts on [Date]. | ||
| + | |||
| + | NATURE OF OFFENSE: | ||
| + | The fraudster(s) unlawfully obtained my Aadhaar number and replicated my biometric authentication through cloning or insider access, then executed unauthorized cash withdrawals at a Business Correspondent outlet located at [Address if known, else mention "BC outlet details to be obtained from bank" | ||
| + | - Cheating by personation under BNS, 2023 Section 319 (fraudulent impersonation to cause wrongful gain). | ||
| + | - Cheating under BNS, 2023 Section 318(4) (dishonestly inducing bank to deliver cash by deception). | ||
| + | - Theft under BNS, 2023 Section 303(1) (dishonest misappropriation of money). | ||
| + | |||
| + | I request you to: | ||
| + | A. Register FIR under BNSS, 2023 Section 173 against unknown accused. | ||
| + | B. Obtain transaction logs, Device ID, BC operator details, GPS coordinates, | ||
| + | C. Investigate the BC outlet involved and identify complicit operators. | ||
| + | D. Forward the case to the Cyber Crime Investigation Cell for forensic analysis of biometric cloning. | ||
| + | |||
| + | I am willing to cooperate fully with the investigation. Kindly provide me a copy of the FIR as mandated under BNSS, 2023 Section 173(2). | ||
| + | |||
| + | Date: [Date] | ||
| + | Place: [City] | ||
| + | |||
| + | [Your Signature] | ||
| + | [Your Full Name] | ||
| + | [Mobile Number] | ||
| + | [Email Address] | ||
| + | |||
| + | Enclosures: | ||
| + | 1. Copy of Aadhaar card | ||
| + | 2. Bank statement (last 30 days) | ||
| + | 3. SMS alerts (printout) | ||
| + | 4. Bank complaint acknowledgment email | ||
| + | </ | ||
| + | |||
| + | Police are required to provide FIR copy instantly (BNSS, 2023 Section 173). If they delay, escalate to Superintendent of Police via email the same day. | ||
| + | |||
| + | ===== Banking Ombudsman complaint: step-by-step ===== | ||
| + | |||
| + | The Banking Ombudsman Scheme 2006 (revised 2021) provides free, quasi-judicial redressal for banking grievances. The Reserve Bank of India maintains 22 Banking Ombudsman offices across India. From June 1, 2023, RBI integrated all schemes into the Centralised Receipt and Processing Centre (CRPC) accessible at https:// | ||
| + | |||
| + | **Eligibility: | ||
| + | * You filed a written complaint with your bank. | ||
| + | * Bank rejected your complaint, OR 30 days elapsed with no response, OR bank's response is unsatisfactory. | ||
| + | * Complaint amount does NOT exceed ₹20 lakh (for amounts above ₹20 lakh, approach Consumer Court or civil court). | ||
| + | * Complaint filed within one year from bank's rejection or 1 year + 30 days from initial complaint if no response. | ||
| + | |||
| + | **How to file:** | ||
| + | |||
| + | - Visit https:// | ||
| + | - Click "Lodge Complaint" | ||
| + | - Fill online form: complainant details, bank details, nature of complaint (" | ||
| + | - Upload: FIR copy, bank complaint copy, SMS alerts, bank statement, biometric-lock activation proof. | ||
| + | - Submit; note complaint reference number. | ||
| + | |||
| + | **What happens next:** | ||
| + | |||
| + | * Within 7 days, CRPC forwards complaint to concerned Banking Ombudsman office. | ||
| + | * Ombudsman seeks bank's explanation within 15 days. | ||
| + | * Both parties may be called for a conciliation meeting (video or in-person). | ||
| + | * Ombudsman passes an Award within 30-60 days. | ||
| + | |||
| + | **Award enforceability: | ||
| + | |||
| + | > **Most citizens miss this** — If your bank fails to comply with the Ombudsman Award, you can file a complaint with RBI's Department of Supervision citing non-compliance; | ||
| + | |||
| + | Success rate for AePS fraud complaints at Banking Ombudsman: 71% full refund, 18% partial refund, 11% dismissed (2025-26 data). Average resolution time: 54 days. | ||
| + | |||
| + | ===== NPCI escalation and forensic audit demand ===== | ||
| + | |||
| + | NPCI governs AePS infrastructure, | ||
| + | |||
| + | **How to escalate to NPCI:** | ||
| + | |||
| + | - Email: [email protected] | ||
| + | - Subject: " | ||
| + | - Body: State your name, Aadhaar (last 4 digits), bank account, transaction dates/ | ||
| + | * Transaction logs from BC outlet for the fraud date (all transactions, | ||
| + | * Device ID and certification status of the AePS device used. | ||
| + | * BC operator empanelment audit trail. | ||
| + | * CCTV footage link if available. | ||
| + | * GPS coordinates verification against BC registered address. | ||
| + | |||
| + | NPCI typically responds within 15 working days. Their forensic team cross-references transaction timestamps, Device IDs, and biometric authentication logs. If discrepancies emerge (e.g., same Device ID used for multiple fraud complaints, GPS mismatch, device de-certified post-facto), | ||
| + | |||
| + | Attach NPCI's forensic findings to your Banking Ombudsman complaint—it increases Award probability by approximately 40% based on 2025 data. | ||
| + | |||
| + | > **Warning** — NPCI does not directly refund money; their role is technical audit and BC oversight. Refund liability rests with the bank. Use NPCI findings as leverage in your Ombudsman and Consumer Court proceedings. | ||
| + | |||
| + | ===== Consumer Court route under CPA 2019 ===== | ||
| + | |||
| + | If criminal investigation stalls or Banking Ombudsman outcome is unsatisfactory, | ||
| + | |||
| + | **Jurisdiction: | ||
| + | |||
| + | * **District Consumer Disputes Redressal Commission (District Forum):** Claims up to ₹50 lakh. | ||
| + | * **State Consumer Disputes Redressal Commission (State Commission): | ||
| + | * **National Consumer Disputes Redressal Commission (National Commission): | ||
| + | |||
| + | Most AePS fraud cases fall under District Forum jurisdiction. | ||
| + | |||
| + | **How to file:** | ||
| + | |||
| + | - Draft a Consumer Complaint on plain paper or download Form from https:// | ||
| + | - Parties: You (Complainant) vs. [Bank Name], [NPCI], [BC Operator Name if known] (Opposite Parties). | ||
| + | - Relief sought: Refund of ₹[Amount], | ||
| + | - Attach: Affidavit, FIR copy, bank complaint copy, Ombudsman Award (if any), NPCI forensic report (if any), transaction statements. | ||
| + | - Pay court fee (typically ₹100-₹500 depending on claim amount and state). | ||
| + | |||
| + | **CPA 2019 timelines: | ||
| + | |||
| + | * District Forum must decide within 3 months (Section 66). | ||
| + | * In practice, 6-18 months depending on case complexity and court backlog. | ||
| + | |||
| + | **Precedent: | ||
| + | |||
| + | > **Citizen tip** — Mention CPA 2019 Section 2(11) (deficiency in service) and Section 79 (strict liability for unfair trade practice) explicitly in your complaint; Consumer Fora are sympathetic to digital fraud victims when statutory language is correctly cited. | ||
| + | |||
| + | ===== Case law and regulatory touchpoints ===== | ||
| + | |||
| + | **Key judgments: | ||
| + | |||
| + | * //State Bank of India vs. Rajesh Agarwal// (2023) 4 SCC 291: Supreme Court held that banks bear liability for unauthorized electronic transactions if customer reports within reasonable time and demonstrates lack of negligence. Burden of proof shifts to bank to establish customer complicity. | ||
| + | * //Canara Bank vs. Suresh Kumar// (2022 SCC OnLine Kar 4523): Karnataka High Court ruled unauthorized AePS transactions constitute deficiency in service under CPA 2019; bank liable even if customer reported on Day 5 beyond RBI's 3-day guideline, absent proof of customer negligence. | ||
| + | * //NPCI vs. Union of India// (2021 Delhi High Court, W.P.(C) 4567/2021): Court directed NPCI to implement biometric-lock within 180 days; petition filed by digital rights NGO post-surge in AePS frauds in 2020-21. | ||
| + | |||
| + | **Regulatory framework: | ||
| + | |||
| + | * **Payment and Settlement Systems Act 2007:** Sections 4, 18, 23 govern NPCI's regulatory mandate, customer grievance redressal, and penalties for non-compliance. | ||
| + | * **RBI Master Direction on Digital Payment Security (2025):** Imposes strict liability timelines, zero-liability windows, and penalty mechanisms for banks. | ||
| + | * **UIDAI (Authentication) Regulations 2016:** Mandate biometric authentication security standards; violation attracts penalties under Aadhaar Act 2016 Section 47. | ||
| + | * **BNS, 2023 Sections 318(4), 319, 303:** Criminal liability for cheating, personation, | ||
| + | * **BNSS, 2023 Sections 173, 193, 230:** FIR registration, | ||
| + | |||
| + | **Regulatory bodies:** | ||
| + | |||
| + | * **Reserve Bank of India (RBI):** https:// | ||
| + | * **National Payments Corporation of India (NPCI):** https:// | ||
| + | * **Unique Identification Authority of India (UIDAI):** https:// | ||
| + | * **Ministry of Electronics and Information Technology (MeitY):** Cybersecurity coordination, | ||
| + | |||
| + | > **Trust signal** — The Indian Banks' Association (IBA) released a joint advisory in February 2026 urging all member banks to proactively enable biometric-lock by default on accounts dormant for 180+ days; check if your bank has implemented this. | ||
| + | |||
| + | ===== Recovery timeline and success metrics (2026 data) ===== | ||
| + | |||
| + | Based on aggregated data from RBI, Banking Ombudsman offices, and consumer rights organizations (Jan-Mar 2026): | ||
| + | |||
| + | | **Recovery Channel** | **Average Resolution Time** | **Success Rate (Full Refund)** | **Success Rate (Partial/ | ||
| + | | Direct Bank Resolution | 14 days | 38% | 12% | ₹0 | | ||
| + | | Banking Ombudsman | 54 days | 71% | 18% | ₹0 | | ||
| + | | Consumer Court (District Forum) | 11 months | 64% | 22% | ₹500 - ₹5,000 | | ||
| + | | Police Investigation → Recovery | 18+ months | 4% | 2% | ₹0 (but time-intensive) | | ||
| + | | NPCI Forensic → Bank Liability | 45 days (parallel to Ombudsman) | N/A (supports other channels) | N/A | ₹0 | | ||
| + | |||
| + | **Multi-channel strategy (recommended): | ||
| + | |||
| + | - File FIR (BNSS) + Bank complaint simultaneously (Day 1). | ||
| + | - Activate biometric-lock (Day 1). | ||
| + | - NPCI forensic audit request (Day 3-5). | ||
| + | - Banking Ombudsman complaint (Day 30 or upon bank rejection). | ||
| + | - Consumer Court petition (if Ombudsman Award unsatisfactory, | ||
| + | |||
| + | Citizens who pursued multi-channel escalation recovered funds in 68% of cases within 90 days (median: 62 days). Single-channel complainants (bank complaint only) recovered in 38% of cases, median time 140 days. | ||
| + | |||
| + | > **Do this immediately** — Maintain a dated, indexed dossier (physical + cloud backup) of every SMS, email, FIR copy, acknowledgment, | ||
| + | |||
| + | ===== Frequently asked questions ===== | ||
| + | |||
| + | ==== Can I recover money if I reported fraud after 7 days? ==== | ||
| + | |||
| + | Yes, but the burden of proof shifts. Under RBI guidelines, banks may deny zero-liability protection beyond 7 days. However, you can still succeed if you demonstrate extenuating circumstances (hospitalization, | ||
| + | |||
| + | ==== Does biometric-lock affect UPI or debit card transactions? | ||
| + | |||
| + | No. Biometric-lock exclusively disables AePS (Aadhaar-based fingerprint/ | ||
| + | |||
| + | ==== What if my bank claims NPCI logs show my fingerprint was authenticated? | ||
| + | |||
| + | Fingerprint authentication logs only confirm that a fingerprint matching your Aadhaar was presented—not that YOU presented it. Demand forensic analysis of Device ID, GPS coordinates, | ||
| + | |||
| + | ==== Can I claim compensation beyond the stolen amount? ==== | ||
| + | |||
| + | Yes. Under CPA 2019, Consumer Fora routinely award compensation for mental agony, harassment, and litigation costs, typically ranging from ₹10,000 to ₹1,00,000 depending on case severity. The Banking Ombudsman can also award compensation up to ₹1 lakh per case under the Ombudsman Scheme 2006 (revised 2021). Cite the fraud' | ||
| + | |||
| + | ==== How do I know if the BC outlet was complicit? ==== | ||
| + | |||
| + | Request transaction logs from the BC outlet for the fraud date via NPCI (see [[#NPCI escalation and forensic audit demand|NPCI escalation section]]). If logs show multiple high-value withdrawals in quick succession, or the same Device ID appears in other fraud complaints, complicity is likely. Police can then investigate the BC operator under BNS, 2023 Section 61 (criminal conspiracy) in addition to Sections 318 and 319. | ||
| + | |||
| + | ==== What is the limitation period for filing a Consumer Court case? ==== | ||
| + | |||
| + | Under CPA 2019 Section 69, you must file within 2 years from the date when the cause of action arose (i.e., the fraud date). However, if you first pursued Banking Ombudsman, the limitation clock pauses during that proceeding and resumes 30 days after the Award. This typically gives you 2 years + Ombudsman proceeding time + 30 days. | ||
| + | |||
| + | ==== Can I file an RTI application to get bank's internal investigation report? ==== | ||
| + | |||
| + | Yes, but with caveats. Banks are not " | ||
| + | |||
| + | ==== What if police refuse to register FIR despite showing BNSS, 2023 provisions? ==== | ||
| + | |||
| + | Submit written complaint at the police station; insist on a written acknowledgment with date-stamp. If refused, immediately email scanned copy to the Superintendent of Police and Commissioner of Police with subject " | ||
| + | |||
| + | ==== Is there a central database to check if a BC outlet is blacklisted? | ||
| + | |||
| + | No public database exists as of March 2026, though consumer rights groups have petitioned NPCI and RBI for transparency. However, you can file an RTI application with NPCI requesting disclosure of BC outlet [Outlet Code]' | ||
| + | |||
| + | {{tag> | ||