Website Policies
1. Copyright Policy
Material featured on this Website may be reproduced free of charge after taking prior permission by sending a mail to UCO Bank ( ucobank.website@ucobank.co.in ) . However, the material has to be reproduced accurately and not to be used in a derogatory manner or in a misleading context. Wherever the material is being published or issued to others, the source must be prominently acknowledged. However, the permission to reproduce this material shall not extend to any material which is identified as being copyright of a third party. Authorization to reproduce such material must be obtained from the copyright holders concerned. If any content protected by copyright is to be published on UCO Bank Website, due permission of concerned stakeholder shall be obtained.
2. Hyper Linking Policy
At many places in this website, users can find links other than UCO Bank’s Website. These links have been placed for convenience of the user. However, UCO Bank is not responsible for the contents and reliability of the linked websites and does not necessarily endorse the views expressed in them. Mere presence of the link or its listing on this Website should not be assumed as endorsement of any kind. Such links should not mislead the customers into believing that the bank sponsors any particular product or any business unrelated to banking.
UCO Bank will not authorize the use of copyrighted materials contained in linked websites. Users are advised to request such authorization from the owner of the linked website. UCO Bank does not guarantee that linked websites comply with Guidelines for Indian Government Websites (GlGW).
3. Privacy Policy
UCO Bank does not automatically capture any specific personal information from visitors (like name, phone number or e-mail address), that allows to identify them individually. If users provide their personal information, like names or addresses, when they visit the Bank’s website, it is used only to fulfill their request for information. To use the Fintech Section available on the Website, this website requires the user to register on the said portal. The information so collected is used to facilitate selection of Fintech Firms.
Bank does not sell or share any personally identifiable information volunteered on this site to any third party (public/private). Any information provided to this website will be protected from loss, misuse, unauthorized access or disclosure, alteration, or destruction.
• Use of Cookies: A cookie is a piece of software code that an internet website sends to your browser when any user accesses information at that site. A cookie is stored as a simple text file on the user’s computer or mobile device by a website’s server and only that server will be able to retrieve or read the contents of that cookie. Cookies let users navigate between pages efficiently as they store user’s preferences and generally improve the experience of a website.
4. Content Contribution, Moderation & Approval Policy (CMAP)
The content on the Bank’s website is provided by various authorized contributors (Bank’s departments and offices) as per requirement. To ensure website content is authentic, up-to-date, and latest, all authorized contributors are to ensure that the contents will be thoroughly checked for authenticity and accuracy before submission.
5. Content Review Policy (CRP)
Bank’s website is the face of the Bank disseminating information and services. This Content Review Policy has been formulated to keep the content on the Website current and updated. This Review Policy is based on different types of content elements, their validity and relevance as well as the archival policy.
6. Content Archival Policy (CAP)
The Tender/Notices section will be archived automatically after the specified expiry date from the date of their publishing. UCO Bank maintains online archives for a period of 10 years to allow for the retrieval of content which has expired. Schemes, Tenders, Forms, Recruitment Notices which have been withdrawn, or discontinued, or have exceeded 10 years after archiving, may be expunged.
7. Security Policy
- • Bank’s Corporate Website is placed in protected zones with firewalls and IDS (Intrusion Detection System) and high availability solutions.
- • Simulated penetration tests are conducted before launch, and annually thereafter.
- • The website is audited for vulnerabilities before launch; all known vulnerabilities are addressed.
- • Servers are hardened per Cyber Security Division guidelines before launch.
- • Web server access is physically and network-restricted as much as possible.
- • Authorized access logs are maintained at two different locations.
- • Web servers are behind IDS, IPS, and firewalls.
- • Development is done in a separate environment and tested before moving to production.
- • Production uploads are done via SSH and VPN through a single secure point.
- • Remote content contributions go through moderation before being published to production.
- • Content is checked for malicious code before uploading.
- • System, access, and application logs are maintained and archived.
- • Unauthorized access attempts are logged and reviewed.
- • The website is monitored every 6 hours by the Hosting Provider’s Help Desk.
- • Software patches, bug fixes, and upgrades are regularly applied.
- • Internet browsing, mail, and desktop apps are disabled on production servers.
- • Server passwords are changed monthly and kept securely by the service provider.
Notice and Disclosures:UCO Bank Website will not sell, trade, or disclose personal data to unauthorized third parties.
Data Quality and Access: UCO Bank Website takes all steps possible to ensure that the data on the website is accurate. While reviewing the website if something is found to be inaccurate UCO Bank will make every effort to correct said information as quickly as possible. If it is found to be an inaccuracy with the entire system UCO Bank will work swiftly to correct the problem so that the web experience is as trouble- free as possible. Any change to the user account will not be reflected on the website until the following business day. The information contained on the UCO Bank website is subject to change without prior notice.
While using the UCO Bank Website certain information such as IP Address of the visitor and time spent on pages may be collected. This non- personal information is collected in order to monitor any unauthorized use or access to the UCO Bank Website site. Anyone caught attempting to harm, steal information from, or otherwise damage the UCO Bank Website will be prosecuted to the full extent of the law.
Application Security Audit: The website will be audited by Cert-in empaneled agency periodically. The periodicity shall be one year from the date of issue of certificate or additional changes in the dynamic content carried out whichever is earlier. A periodic check on the requirement of a security certificate is recommended to the web information manager in case there are changes in the functionality or any other environmental changes.
Data Security: UCO Bank takes security very seriously and has therefore taken every precaution to secure our customer’s information. In order to secure the user’s information, UCO Bank has implemented several security measures to prevent loss, theft, or misuse of any data.
Website Access Rights Website is accessible in all countries and necessary firewall rule has been applied in the system. However, Web Information Manager will identify the countries where the website can be accessed or blocked to mitigate the cyber-attacks and accordingly firewall rules are updated.