Skip to content
UPI Tools
Runs on your deviceNothing you type here is sent anywhere — the whole tool is JavaScript in this tab.

UPI ID Privacy Checker

From 4 Sep 2026, NPCI requires UPI apps to mask number-based UPI IDs to counterparties (******3210). Type yours below — checked instantly, entirely in this tab, nothing sent anywhere.

Your UPI ID

Result

Type a UPI ID on the left — the privacy check appears here as you type.

Create a private UPI ID

NPCI rule, effective 4 Sep 2026: UPI apps must mask number-based UPI IDs and account numbers shown to counterparties — typically to the last 4 characters, like ******3210@okaxis. A number-based ID such as 9876543210@okaxis still works, but exposes your mobile number to anyone who sees the unmasked form. The fix: create a username-based UPI ID, e.g. rahul@okaxis or rahul.pay@okaxis. In PhonePe: Profile → UPI IDs → Add new UPI ID. In Google Pay: Profile → UPI IDs → Add UPI ID. Your old ID keeps working as a backup — you don't have to delete it.

Last updated: 12 Sep 2026, from NPCI's circular.

Check if your UPI ID is private

A UPI ID follows a name@handle shape. The part before the @ is yours to choose — most people never change it from what their bank or app filled in by default, which is usually the registered mobile number. That means 9876543210@okaxis is functionally identical to publishing your phone number on every payment receipt, QR code, and chat thread it ever appears in. The checker above runs four pattern checks on whatever you type: a full 10-digit mobile number, a shorter run of digits that could be part of one, a date-like string (often a birth year), and a first.last name shape. None of this is a lookup against NPCI or your bank — it's local pattern matching against the text you typed, which is also why it can't tell you whether an ID is registered or active.

What changed on 4 Sep 2026?

NPCI's circular on UPI ID and number masking required member banks and PSPs to stop displaying a counterparty's full mobile number, account number, or number-based UPI ID on screen — showing only the last four characters instead (******3210). The same circular pushes apps to make a username-based VPA the default option when someone creates a new UPI ID, rather than pre-filling the registered mobile number the way most apps historically have. The rule governs what's displayed; it doesn't retire or invalidate any UPI ID that already exists.

How to create a private username UPI ID

Every major UPI app lets you hold more than one UPI ID against the same bank account — typically three or four. That means switching costs nothing: create a second, username-based ID inside your app, start handing that one out, and leave your original in place as a fallback for anyone who already has it saved. A good username avoids the same three things this checker flags — no raw phone number, no date of birth, and ideally not your full legal name spelled out — and mixes letters with a couple of digits or a short suffix (rahul.pay, rpay92) so it stays memorable without reading as a personal record.

How to change your UPI ID, by app

The general flow is the same everywhere — find "UPI IDs" under your profile, add a new one, type a username instead of accepting the number. Exact labels shift between app versions, so treat these as a starting point, not a pixel-exact walkthrough.

P

PhonePe

  1. 1.Tap your profile photo, top left of the home screen.
  2. 2.Open "UPI IDs" (sometimes under "Payment settings").
  3. 3.Tap "Add new UPI ID" and type a username instead of accepting the number.
  4. 4.Pick a bank/handle and confirm — your old ID keeps working alongside it.
G

Google Pay

  1. 1.Tap your profile picture, top right, then your bank account.
  2. 2.Open "UPI IDs".
  3. 3.Tap "Add UPI ID" and choose a username rather than the auto-filled number.
  4. 4.Select a bank and create — GPay keeps the number-based ID active too.
P

Paytm

  1. 1.Go to Profile → "UPI & Payment Settings".
  2. 2.Open your bank account, then "Manage UPI IDs".
  3. 3.Tap "Create new UPI ID" and set a username.
  4. 4.Confirm — the original ID isn't removed unless you delete it separately.
B

BHIM

  1. 1.Open the menu → "Bank Accounts" (or "Profile").
  2. 2.Select "Manage UPI ID" for the linked account.
  3. 3.Add a new UPI ID with a username instead of your number.
  4. 4.Save — both IDs route to the same account.

Is a username UPI ID safe?

Yes — it doesn't weaken UPI's security model at all. The username only replaces what a counterparty sees before the @; your bank still resolves the ID to the same account the same way, and the payer's confirm-and-pay screen still shows your registered name before any money moves, which is the actual safety check that matters (see the fake payment screenshot checker for why that name match is worth a second look). Under India's DPDP Act, minimizing what an everyday transaction reveals about you — like a phone number attached to every payment — is good practice independent of this specific NPCI rule.

Trust box

  • Source: NPCI's UPI number-masking circular, effective 4 Sep 2026.
  • Handle recognition: 95+ bank/PSP handles, from Toolsda's local reference list.
  • Last verified: 12 Sep 2026.

Safety box

  • Your existing number-based ID keeps working as a backup — nothing to delete.
  • You can hold several UPI IDs on one bank account at the same time.
  • This checker never sends your UPI ID anywhere — everything runs in this tab.

Related UPI tools

See the rest of the cluster on the UPI Tools hub.

Frequently Asked Questions