Protecting Your Account, Data and Digital Experience
Security is a fundamental part of the PothikTV ecosystem.
PothikTV brings together journalism, community, publishing, messaging, education, professional services, digital commerce, advertising and AI-powered tools. Because users may rely on one Pothik Account across multiple services, protecting accounts, personal information, content and transactions is a core responsibility for us.
We continuously work to strengthen our technical, organisational and operational security measures to help protect the PothikTV community.
1. SECURE ACCOUNT ACCESS
PothikTV uses account-security measures designed to reduce unauthorised access.
Depending on the service, these measures may include:
- secure password authentication;
- password hashing;
- Google or supported third-party authentication;
- email or mobile verification;
- secure login sessions;
- account recovery controls;
- session management;
- suspicious login detection; and
- additional authentication mechanisms where available.
Users should never share passwords, PINs or OTP codes with anyone.
PothikTV support personnel should never ask you to disclose your password or payment PIN.
2. ONE POTHIK ACCOUNT, SECURE ACCESS
PothikTV may use a Single Sign-On system that allows one Pothik Account to access multiple connected services.
This may include services such as:
- PothikTV;
- PothikNews;
- Pothik Sahitya;
- Pothik Learn;
- Pothik Work;
- Pothik Store;
- Pothik Education services; and
- other authorised Pothik services.
Because a single account may provide access to several services, users should use a strong and unique password and protect their login credentials carefully.
3. PASSWORD SECURITY
We recommend that users:
- create a strong password;
- avoid passwords used on other websites;
- use a combination of letters, numbers and symbols;
- avoid using names, phone numbers or obvious information;
- never share passwords through messages or email; and
- change passwords immediately if suspicious activity is detected.
Where technically available, PothikTV may introduce additional authentication options such as multi-factor authentication.
4. ENCRYPTED CONNECTIONS
PothikTV services are intended to use secure HTTPS connections with modern TLS encryption.
Encryption helps protect information transmitted between your browser or application and PothikTV servers.
Users should check that they are accessing an official PothikTV domain before entering passwords or personal information.
5. DATA PROTECTION
PothikTV seeks to protect personal information through appropriate technical and organisational safeguards.
Security measures may include:
- secure databases;
- restricted administrative access;
- role-based permissions;
- encrypted communications;
- server-level security;
- access logging;
- secure backups;
- malware protection;
- security monitoring; and
- regular software maintenance.
Access to sensitive information should be limited to authorised persons who reasonably require access for legitimate purposes.
6. ROLE-BASED ACCESS CONTROL
PothikTV services may provide different access permissions for different users.
Examples may include:
- User;
- Contributor;
- Reporter;
- Editor;
- Administrator;
- Teacher;
- Student;
- Guardian;
- Employer;
- Mentor;
- Institution Owner; and
- other authorised roles.
Each role should receive only the access required for its responsibilities.
This principle helps reduce the risk of unnecessary access to sensitive information.
7. ADMINISTRATIVE SECURITY
Administrative accounts require additional protection because they may have access to important platform functions.
PothikTV seeks to:
- limit administrator privileges;
- restrict access to sensitive settings;
- maintain activity logs where appropriate;
- separate user and administrator permissions;
- review suspicious administrative activity; and
- revoke access when it is no longer necessary.
8. SECURITY MONITORING
PothikTV may monitor systems for suspicious or malicious activity.
This may include attempts involving:
- repeated failed logins;
- brute-force attacks;
- credential stuffing;
- automated spam;
- unauthorised account access;
- malicious requests;
- suspicious API activity;
- unusual transaction behaviour;
- malware; and
- other security threats.
Where appropriate, suspicious activity may result in temporary blocking, account verification or additional security checks.
9. PROTECTION AGAINST CYBERATTACKS
PothikTV works to reduce risks from common cyber threats such as:
- phishing;
- malware;
- SQL injection;
- cross-site scripting;
- credential theft;
- malicious uploads;
- brute-force attacks;
- unauthorised access;
- session hijacking;
- spam;
- denial-of-service activity; and
- other malicious behaviour.
Security protections may evolve as new threats emerge.
10. SOFTWARE AND PLATFORM UPDATES
Outdated software may create security vulnerabilities.
PothikTV therefore seeks to maintain appropriate updates for:
- WordPress;
- themes;
- plugins;
- server software;
- databases;
- libraries;
- APIs;
- mobile applications; and
- other supporting technologies.
Security-critical updates may be deployed when necessary to protect users and services.
11. FILE UPLOAD SECURITY
Where PothikTV allows users to upload photographs, videos, documents or other files, technical controls may be used to:
- restrict unsupported file types;
- validate uploads;
- limit file sizes;
- prevent executable malicious files;
- scan suspicious uploads; and
- protect storage systems.
Users must not intentionally upload malware or harmful files.
12. PAYMENT SECURITY
PothikTV services may support payments through authorised payment providers, banks or mobile financial services.
Depending on the service, this may include providers such as:
- bKash;
- Nagad;
- authorised payment gateways;
- banks; and
- other approved payment services.
Sensitive credentials such as:
- payment PINs;
- OTP codes;
- complete card authentication credentials; and
- banking passwords
should normally be entered directly into the relevant authorised payment system and should not be stored by PothikTV.
PothikTV may retain transaction references, payment status and information reasonably necessary to manage orders and payments.
13. TRANSACTION AND FRAUD PROTECTION
PothikTV may use security measures to help identify:
- duplicate transactions;
- suspicious payments;
- fraudulent orders;
- unauthorised advertising funding;
- licence abuse;
- unusual purchase activity; and
- attempted financial fraud.
Suspicious transactions may be temporarily held for verification.
14. SOFTWARE LICENCE SECURITY
Software, themes and plugins distributed through Pothik Store may use licence systems to protect legitimate customers and prevent unauthorised copying.
Licence systems may verify information such as:
- licence key;
- product;
- website;
- activation status;
- licence expiry;
- number of permitted installations; and
- update eligibility.
Licence systems should collect only the information reasonably necessary to operate the licensing service.
15. PRIVATE MESSAGING SECURITY
PothikTV may provide private messaging services.
Messages are intended to be accessible only to authorised participants and relevant platform systems required to deliver the service.
Authorised access may occur where reasonably necessary for:
- abuse investigations;
- technical troubleshooting;
- security investigations;
- lawful requirements; or
- user-requested support.
Users should never send passwords, OTP codes or sensitive payment credentials through chat.
16. PROFILE PRIVACY AND SECURITY
Users may be able to control the visibility of certain profile information.
Where available, visibility options may include:
- Public;
- Registered Users;
- Followers;
- Connections; or
- Only Me.
Users should carefully consider what information they make public.
Sensitive identity or financial documents should not be publicly uploaded to a profile.
17. POTHIK WORK SECURITY
Pothik Work may contain professional profiles, job applications, CVs and freelance information.
PothikTV seeks to protect such information using appropriate access controls.
Users should remain cautious when dealing with employers or clients and should never provide:
- account passwords;
- payment PINs;
- OTP codes; or
- unnecessary sensitive documents.
Suspicious job postings or freelance offers should be reported.
18. EDUCATION AND STUDENT DATA
Pothik Education and Pothik Learn may process information relating to:
- students;
- guardians;
- teachers;
- mentors;
- institutions;
- results;
- courses; and
- academic progress.
Appropriate role-based access should be used so that users can access only information relevant to their authorised role.
Children’s and student information should receive additional protection.
19. AI SECURITY
PothikTV may provide AI-powered tools through Pothik AI Studio and other services.
Users should avoid submitting unnecessary confidential information into AI tools.
In particular, users should not submit:
- passwords;
- OTP codes;
- payment PINs;
- secret API keys;
- confidential login information; or
- highly sensitive documents
unless a specific secure service is explicitly designed to handle such information.
20. API AND INTEGRATION SECURITY
PothikTV may connect with third-party platforms and APIs.
These may include:
- Google;
- Firebase;
- AI providers;
- payment providers;
- SMS services;
- video platforms;
- social media services;
- courier services; and
- other technology providers.
API credentials and secret keys should be stored securely and restricted to authorised systems and personnel.
21. BACKUPS AND RECOVERY
PothikTV may maintain backups to support service continuity and recovery.
Backups may help restore services following:
- technical failure;
- accidental deletion;
- server problems;
- software errors;
- security incidents; or
- other disruptions.
Backup access should be restricted and protected.
22. SECURITY LOGS
PothikTV may maintain security and technical logs for legitimate purposes.
Logs may be used to:
- detect attacks;
- investigate account compromise;
- troubleshoot technical issues;
- identify suspicious behaviour;
- protect users;
- prevent fraud; and
- comply with applicable legal requirements.
Logs should be retained only as long as reasonably necessary for legitimate purposes and applicable law.
23. SECURITY INCIDENT RESPONSE
If a security incident occurs, PothikTV may take steps such as:
- securing affected systems;
- restricting compromised access;
- disabling suspicious accounts;
- resetting authentication credentials;
- investigating the incident;
- reviewing logs;
- applying security updates;
- preserving relevant evidence;
- restoring systems from backups; and
- notifying affected users or competent authorities where required.
24. DATA BREACH RESPONSE
Where PothikTV becomes aware of a personal-data breach, we will assess:
- what happened;
- what information may be affected;
- how many users may be affected;
- potential risks;
- required corrective actions; and
- applicable legal notification obligations.
Where legally required, PothikTV will take appropriate steps to notify relevant authorities and affected users.
25. PHISHING PROTECTION
Cybercriminals may create fake websites or messages pretending to represent PothikTV.
To protect yourself:
- check the website address carefully;
- do not enter passwords on suspicious websites;
- never send OTP codes to another person;
- avoid clicking suspicious links;
- verify unusual payment requests; and
- report suspected impersonation.
Official PothikTV representatives should never ask users to reveal passwords or OTP codes.
26. FAKE SUPPORT AND IMPERSONATION
Users should be cautious of individuals claiming to be PothikTV support through unofficial accounts.
Before providing information:
- verify the support channel;
- avoid sending credentials;
- confirm payment requests; and
- use official PothikTV contact methods.
27. USER RESPONSIBILITIES
Security is a shared responsibility.
Users can help protect their accounts by:
- using a strong password;
- keeping account credentials private;
- avoiding public or shared devices where possible;
- logging out after using shared devices;
- keeping browsers and devices updated;
- checking suspicious emails carefully;
- avoiding unknown files and links;
- reporting suspicious activity quickly;
- protecting OTP codes; and
- reviewing privacy settings.
28. IF YOU THINK YOUR ACCOUNT HAS BEEN HACKED
If you believe your Pothik Account has been compromised:
- change your password immediately;
- secure your email account;
- log out of unfamiliar devices where the option is available;
- review account information;
- check recent activity;
- review payment and purchase history;
- remove unknown connected services; and
- contact PothikTV Support.
Do not pay anyone who claims they can recover your Pothik Account unless they are part of an official authorised support process.
29. REPORT A SECURITY PROBLEM
We encourage responsible reporting of security vulnerabilities.
If you discover a vulnerability affecting PothikTV, please report it privately through our official support or security contact channel.
Please include, where possible:
- affected service;
- description of the issue;
- steps to reproduce;
- screenshots;
- affected URL;
- technical details; and
- your contact information.
Please do not publicly disclose an unresolved vulnerability if doing so could place users or systems at risk.
30. RESPONSIBLE SECURITY RESEARCH
Security researchers must not:
- access another user’s private data;
- steal information;
- intentionally damage systems;
- install malware;
- interrupt services;
- exploit vulnerabilities for financial gain;
- threaten users or PothikTV; or
- exceed what is reasonably necessary to demonstrate a vulnerability.
Good-faith security reports are welcomed when conducted responsibly and lawfully.
31. SECURITY AND PRIVACY
Security and privacy work together.
PothikTV’s handling of personal information is described in our गोपनीयता नीति.
Users should review both the Privacy Policy and Terms of Service to understand their rights and responsibilities.
32. SECURITY IS CONTINUOUS
No website, application or online platform can guarantee absolute security.
Cyber threats continue to evolve.
For this reason, PothikTV treats security as an ongoing process involving:
- monitoring;
- software updates;
- security testing;
- access review;
- vulnerability management;
- backup;
- incident response; and
- user awareness.
SECURITY CHECKLIST FOR POTHIKTV USERS
Before using your account, remember:
✓ Use a strong and unique password
✓ Keep your OTP private
✓ Never share payment PINs
✓ Check the official website address
✓ Review profile privacy settings
✓ Keep your device updated
✓ Report suspicious accounts
✓ Never install unknown software claiming to be from PothikTV
✓ Verify unusual payment requests
✓ Contact official support if something appears suspicious
CONTACT SECURITY
If you discover a security issue, suspicious account activity or potential vulnerability, please contact:
PothikTV Media Center
Website: https://pothiktv.com
Security & Support: Through the official PothikTV Contact/Support channel
Country: Bangladesh
Please do not include passwords, payment PINs or OTP codes in security reports.
OUR SECURITY COMMITMENT
PothikTV is being built as a digital home for journalists, writers, creators, students, educators, professionals, institutions and businesses.
Protecting the trust of that community requires more than passwords.
It requires responsible software development, secure infrastructure, privacy protection, careful access control, ongoing monitoring and rapid response when security problems occur.
We will continue working to strengthen PothikTV as the ecosystem grows.
Connect Securely. Create Confidently. Publish Responsibly.
© 2026 PothikTV Media Center. All Rights Reserved.
