What to do immediately after UPI or bank fraud in India
The first hour after suspected financial fraud is about speed, evidence and containment. Report the transaction immediately, contact the bank or payment provider, use India's 1930 cyber-fraud helpline and preserve a clean record of every complaint reference.
Direct answer
Direct answer
If you suspect UPI or bank fraud, report the unauthorised transaction to your bank or payment provider immediately, call India's cyber-financial-fraud helpline 1930, file/track the complaint at cybercrime.gov.in, block or secure the affected payment access, and preserve transaction IDs, screenshots and complaint references. Do not wait to see whether the money returns on its own.
Key takeaways
- • Call 1930 for immediate reporting of cyber financial fraud and use the National Cyber Crime Reporting Portal for the online complaint trail.
- • Notify the bank or payment provider immediately and keep the complaint/acknowledgement number.
- • RBI's unauthorised-electronic-transaction rules can provide zero or limited liability in specified situations, but the outcome depends on where the breach occurred and how quickly it was reported.
- • If customer negligence such as sharing payment credentials caused the loss, RBI's liability treatment differs; reporting still matters because losses after reporting are treated differently under the framework.
- • The RBI Ombudsman is an escalation route for eligible complaints after first approaching the regulated entity and satisfying the applicable waiting/response conditions.
DeepScreen original framework
What this guide adds
The DeepScreen FREEZE protocol separates immediate containment from later dispute resolution: Freeze access, Report the bank, Emergency-report via 1930/portal, Evidence-pack the case, Zero-delay follow-up, Escalate if unresolved.
The first 30 minutes: contain and report
Treat suspected financial fraud as an incident-response problem, not as a customer-service task you can postpone.
The Government of India's National Cyber Crime Reporting Portal states that cyber financial fraud can be reported immediately through helpline 1930. [1]
- • Contact the bank, card issuer or payment provider using an official channel and report the transaction as unauthorised.
- • Block or temporarily disable the affected card, UPI access or payment instrument where appropriate.
- • Call 1930 for cyber financial fraud as soon as possible.
- • File or track the complaint through the National Cyber Crime Reporting Portal.
- • Change compromised passwords/PIN-related access only through official apps/sites; never follow links sent by the fraudster.
- • Do not send an additional 'recovery fee', 'verification payment' or refund-processing amount to anyone contacting you unofficially.
Use the DeepScreen FREEZE fraud-response protocol
FREEZE gives you a sequence to follow while stress is high.
| Step | Action | Output to keep |
|---|---|---|
| F — Freeze | Secure/block the affected payment access | Block/freeze confirmation |
| R — Report | Notify bank/payment provider immediately | Complaint/reference number |
| E — Emergency report | Call 1930 and use cybercrime.gov.in | Acknowledgement / complaint ID |
| E — Evidence | Save transaction ID, time, amount, messages, numbers, URLs and screenshots | Chronological evidence pack |
| Z — Zero-delay follow-up | Confirm the complaint in writing and track stated timelines | Email/SMS/ticket trail |
| E — Escalate | Use the applicable regulated-entity and RBI grievance path if unresolved | Escalation reference |
RBI customer-liability rules make reporting speed important
RBI's framework distinguishes bank fault, third-party breaches and customer negligence; the result is not the same in every fraud case.
Under RBI's 2017 framework for unauthorised electronic banking transactions, a customer can have zero liability where the bank is at fault, and can also have zero liability in a qualifying third-party breach if the customer notifies the bank within three working days of receiving the transaction communication. [2]
For a qualifying third-party breach reported within four to seven working days, liability is limited to the transaction value or the applicable RBI table amount, whichever is lower. Beyond seven working days, the bank's Board-approved policy applies. [2]
If the loss is due to customer negligence, such as sharing payment credentials, RBI states that the customer bears the loss until the unauthorised transaction is reported; losses occurring after reporting are borne by the bank under that framework. This is why the article cannot promise reimbursement simply because a complaint was filed. [2]
What does RBI say about provisional credit in eligible cases?
Where the zero/limited-liability framework applies, RBI sets a timeline for the bank's shadow reversal.
RBI states that on being notified by the customer, the bank should credit a shadow reversal of the amount involved in an unauthorised electronic transaction within 10 working days, without waiting for an insurance settlement, where the framework applies. The eventual complaint outcome still depends on the facts and liability determination. [2]
Build one evidence pack instead of scattered screenshots
A clean chronology makes bank, police/cyber and regulatory follow-up easier.
- • Date and exact time you noticed the fraud.
- • Transaction amount, UPI/reference/UTR/transaction ID and beneficiary/merchant details shown to you.
- • Bank/app alerts and statement entries.
- • Phone numbers, email addresses, UPI IDs, websites or social profiles used by the suspected fraudster.
- • Screenshots of chats and payment requests without editing or cropping away context.
- • Bank complaint number, 1930 acknowledgement and cybercrime portal complaint number.
- • A short written timeline of what happened, including any credentials or permissions that may have been shared.
What not to do after a fraud
Avoid actions that destroy evidence or create a second loss.
- • Do not pay a person who claims they can recover the money for an upfront fee.
- • Do not share OTPs, UPI PINs, card PINs, CVV or remote-access permissions with someone claiming to be the bank or police.
- • Do not delete the chat, SMS or call history before preserving evidence.
- • Do not rely only on a social-media DM to report the incident; use official bank, 1930 and government reporting channels.
- • Do not assume the first complaint automatically covers every affected account or payment instrument.
When can you escalate to the RBI Ombudsman?
First complain to the concerned regulated entity; if the applicable response period expires without a satisfactory resolution, the RBI grievance framework may become available.
The Reserve Bank - Integrated Ombudsman Scheme, 2026 requires the complainant to first approach the concerned regulated entity. RBI's current FAQ says an Ombudsman complaint can be filed if there is no reply within 30 days or within a longer timeline specified by RBI, NPCI or Card Network guidelines, if applicable, or if the complainant is dissatisfied with the reply/resolution. [3]
RBI says online Ombudsman complaints are filed through cms.rbi.org.in. The Ombudsman route is for grievance redress against covered regulated entities; it does not replace the immediate 1930/cybercrime reporting path for suspected cyber fraud. [3]
FAQ
Common questions
- What number should I call for UPI fraud in India?
- For immediate reporting of cyber financial fraud, the National Cyber Crime Reporting Portal directs users to helpline 1930. You should also report the unauthorised transaction to your bank/payment provider immediately.
- Will the bank always refund UPI fraud?
- No. RBI's customer-liability framework depends on the facts, including whether the bank was at fault, a third-party breach occurred, customer negligence contributed, and how quickly the customer reported the transaction.
- Should I call 1930 before or after the bank?
- Do both immediately rather than waiting for one process to finish. The bank/payment-provider complaint addresses the transaction and account; 1930 and cybercrime.gov.in create the cyber-fraud reporting trail.
- When can I complain to the RBI Ombudsman?
- Under RB-IOS 2026, first complain to the concerned regulated entity. If you receive an unsatisfactory reply, or the applicable response period expires, you may be eligible to escalate through RBI's Complaint Management System subject to the Scheme's conditions and time limits.
Continue your research
Sources
References
- [1] National Cyber Crime Reporting Portal — Financial Fraud · Indian Cybercrime Coordination Centre, Ministry of Home Affairs, Government of India · accessed October 2026. Primary/source page
- [3] Reserve Bank - Integrated Ombudsman Scheme, 2026 — Frequently Asked Questions · Reserve Bank of India · 1 July 2026; accessed October 2026. Primary/source page
Editorial disclosure
DeepScreen is a financial-research platform. This article is educational and is not personalized investment, tax or legal advice. Market data, regulations, contract specifications and issuer disclosures can change; verify the latest exchange, issuer and regulator material before acting.
Author: Sooraj, Founder of DeepScreen. Facts were checked against the cited regulator, exchange, industry-association and issuer sources on 5 October 2026. No independent credentialed reviewer has been claimed.