Avinya Vault

Premium investment access, portfolio tracking, and admin control in one place.

Avinya Vault is a web-based investment platform for Avinya Investment that includes a public website, an investor portal, and a full admin panel. It helps prospective investors discover plans, submit investment requests, upload KYC documents, and track portfolio activity, while the admin team manages plans, users, approvals, statements, and reports from one system.

Business Goals

  • Launch a production-ready website, investor portal, and admin panel within 8 weeks from stage-1 payment.
  • Enable at least 70% of inbound leads to submit an enquiry or investment request from the website within the first 90 days.
  • Reduce manual back-and-forth for plan sharing, KYC collection, and status updates by at least 50% within 3 months of launch.
  • Achieve at least 30% of investor users logging in more than once per month within the first 6 months.
  • Maintain a support response deflection rate of 20% or higher through FAQs, status visibility, and notifications within 90 days.

User Goals

  • Help visitors understand investment plans quickly and submit an enquiry or request in under 3 minutes.
  • Let investors upload KYC documents and track approval status without contacting support.
  • Give investors a clear view of active investments, returns, transaction history, and downloadable statements.
  • Allow admins to approve KYC, manage plans, and update investment records from one dashboard.
  • Provide mobile-responsive access so users can use the platform comfortably on desktop and phone.

Non-Goals

  • Automatic online payment collection or automated payout processing is out of scope.
  • Automated Aadhaar, PAN, bank, or other government/third-party identity verification is out of scope.
  • A dedicated agent/partner app with commission workflows is out of scope.
  • Full websites or apps for Avinya Hospitality and Avinya FinTech are out of scope and limited to placeholders.

Investor Rohit, 38 - Rohit is a salaried professional exploring investment options and wants a clear, credible digital experience. He needs to review plans, understand expected returns, and monitor his portfolio without repeated calls to the team.

Investor Rohit, 38

  • As an investor, I want to browse plans and calculators, so that I can decide whether to proceed before contacting sales.
  • As an investor, I want to upload KYC documents and see approval status, so that I know whether my application is progressing.
  • As an investor, I want to see my investment history and statements, so that I can track my portfolio in one place.

Admin Priya, 32 - Priya manages investor onboarding and daily operations. She needs a single panel to review KYC, update plans, manage records, and export reports quickly and accurately.

Admin Priya, 32

  • As an admin, I want to approve or reject KYC uploads with comments, so that I can keep onboarding moving with clear feedback.
  • As an admin, I want to create and edit investment plans, so that I can update tenure, rates, and payout schedules without developer help.
  • As an admin, I want to record transactions and issue statements, so that investors always see accurate portfolio data.

Prospective Lead Sana, 29 - Sana is researching the company for the first time and mostly uses her phone. She wants trustworthy information, quick contact options, and an easy path into the investor funnel.

Prospective Lead Sana, 29

  • As a visitor, I want to read about the company, services, and testimonials, so that I can assess trust and legitimacy.
  • As a visitor, I want to use the enquiry form and live chat widget, so that I can ask a question before registering.
  • As a visitor, I want to access a responsive mobile-friendly site, so that I can explore plans comfortably on my phone.

Public Website and Lead Capture · High priority

  • A polished public-facing site must present the company, services, plans, and contact paths clearly while supporting lead generation.
  • Home, About Us, Why Invest With Us, Services, Plans, FAQs, Blog/News, Testimonials, and Contact Us pages must be editable from the CMS.
  • Investment plans must be displayed dynamically from admin-managed data rather than hardcoded content.
  • Lead forms must capture name, phone, email, interest area, and message, then store submissions for admin follow-up.
  • Returns and EMI calculators must provide illustrative estimates only and show a clear non-guarantee disclaimer.
  • Site must be fully responsive and include basic SEO metadata, sitemap, and indexable page structure.

Investor Portal · High priority

  • Registered investors need secure access to profile management, KYC upload, plan requests, portfolio tracking, and downloadable records.
  • Users must be able to register, log in, and recover access using OTP-based login plus JWT session handling.
  • Profile pages must support name, phone, email, address, city, nominee details, and referral code visibility.
  • KYC document upload must support common file types such as JPG, PNG, and PDF, with size validation and status feedback.
  • Investment request flow must let users select a plan, tenor, and amount, then submit a request for admin review.
  • Portal must show active investments, returns history, transaction history, and downloadable statements in PDF format.

Mobile App Parity · Medium priority

  • Flutter apps for Android and iPhone should mirror the investor portal experience for on-the-go access.
  • Mobile app must support the same core investor features as the web portal, adapted for touch-first navigation.
  • OTP login must be the primary authentication method on mobile, with secure token storage on device.
  • App must support push notifications for approvals, status changes, and payout or statement updates.
  • Nominee details, referrals, FAQ, support, and terms must be accessible in the app.
  • UI should be optimized for low-friction viewing of portfolio balances, plan status, and upcoming schedules.

Admin Panel and Operations · High priority

  • A role-based admin console must let staff manage users, content, approvals, plans, transactions, and reporting from one place.
  • Admin dashboard must show key counts for leads, active users, pending KYC, pending requests, and payout items.
  • Role-based access control must support at least super admin, operations, and content roles.
  • Admin must be able to approve/reject KYC, add remarks, and maintain an audit trail of actions.
  • Plan management must allow editing tenure, rate, payout frequency, and visible descriptions.
  • Reports must support date filters and exports to CSV and PDF for users, transactions, and plan summaries.

Notifications and Support · Medium priority

  • The system should keep users informed and reduce support load through alerts and self-service content.
  • SMS notifications should cover OTP, KYC status, request status, and important account updates.
  • Push notifications should be enabled for mobile app events such as approval and statement availability.
  • FAQs and support content should be editable in the CMS and searchable on website and app.
  • A third-party live chat widget should be embeddable on the public website for quick support access.
  • Notification templates should be configurable by admin without code changes.

First-Time Investor Onboarding

  • A visitor lands on the homepage and sees trust-building content, plan highlights, and a clear enquiry or login path.
  • The user reviews investment plans and uses calculators to estimate indicative outcomes in under 2 minutes.
  • The user registers with phone, email, and basic profile data, then verifies via OTP.
  • The user uploads KYC documents and submits an investment request from the portal or app.
  • The user receives a confirmation and can immediately view pending status, next steps, and support options.
  • Target time to first meaningful action: under 3 minutes for enquiry submission and under 7 minutes for registration plus investment request submission.

1. Discover

  • The public website introduces the company and available plans with a premium, trustworthy look.
  • Plans and calculators are visible without login.
  • Lead form submissions are validated for required fields and spam-protected.
  • Unsupported or placeholder verticals are clearly marked as coming soon.

2. Register and Verify

  • Users create an account and complete OTP verification before accessing the portal.
  • Phone number must be unique and OTP-limited to prevent abuse.
  • Expired or invalid OTPs should show clear retry instructions.
  • Login sessions should time out after inactivity and support secure re-authentication.

3. Submit KYC

  • Users upload identity and address documents for manual review by admin.
  • Accepted file types and size limits must be enforced client-side and server-side.
  • Submission status should move through pending, approved, rejected, and resubmission states.
  • Rejected KYC must include admin remarks and a prompt to re-upload.

4. Request Investment

  • Users choose a plan, tenure, and amount, then submit a request for review.
  • Plan options must reflect admin-configured values only.
  • Amount validation should ensure it fits the selected plan rules and minimum thresholds.
  • The system should store the request as pending until admin records confirmation.

5. Track Portfolio

  • Users monitor active investments, returns, statements, and transaction history.
  • Dashboard should show status, payout schedule, and summary values in simple cards.
  • Statement downloads should be available in PDF and securely access-controlled.
  • If data is incomplete, the UI must show pending or estimated placeholders rather than misleading totals.

Power Features and Edge Cases

  • Referral code tracking and referral source attribution for lead and investor accounts.
  • Nominee detail management with separate edit and verification states.
  • Audit logs for admin actions on plans, KYC, transactions, and content.
  • Support for downloadable statements generated per date range and investment record.
  • Graceful handling of store-review delays, failed SMS delivery, and partially submitted forms.

Premium Finance UI Principles

  • Serif-led brand styling with deep navy, gold accents, generous spacing, and restrained motion.
  • Mobile-first responsive layouts with clear hierarchy and large tap targets.
  • Accessible contrast, keyboard navigation, and readable error states throughout.
  • Fast-loading pages with optimized images, code splitting, and skeleton loaders for portal views.
  • Consistent card-based dashboards and table views for statements, history, and admin operations.

Rohit hears about Avinya Investment from a friend and visits the website on his phone. Within minutes he understands the available plans, checks an illustrative calculator, and submits an enquiry without needing to call anyone.

After registration, Rohit completes OTP login, uploads his KYC documents, and submits an investment request. He can now see the request status, track his portfolio once the admin updates it, and download statements whenever needed.

For the operations team, Priya manages everything from the admin panel instead of juggling spreadsheets and messages. The result is faster onboarding, fewer support interruptions, and a more credible digital experience that helps the business convert and retain investors.

User-Centric Metrics

  • 80% of new visitors should reach a plan page or enquiry form within one session.
  • 60% of registered users should complete KYC upload within 7 days of registration.
  • 75% of KYC submissions should be reviewed by admin within 2 business days.
  • 90% of users should find their statement or transaction history without contacting support.
  • App and portal task success rate for viewing portfolio and request status should exceed 95%.

Business Metrics

  • Increase lead-to-registration conversion to at least 20% within 90 days.
  • Increase registration-to-KYC completion to at least 60% within 6 months.
  • Achieve monthly active usage from at least 30% of registered investors within 6 months.
  • Reduce manual follow-up effort from the operations team by 50% within 3 months.
  • Maintain a support enquiry deflection rate of at least 20% through FAQs, status visibility, and notifications.

Technical Metrics

  • Website uptime of 99.9% excluding planned maintenance.
  • API p95 response time under 500 ms for common authenticated dashboard requests.
  • Zero critical security incidents related to exposed tokens or unsecured file access.
  • Successful backup and restore test at least once per month with recovery under 2 hours.

Tracking Plan

  • Track page_view for homepage, plan detail, and calculator interactions.
  • Track lead_form_submitted with source, page, and campaign fields.
  • Track user_registered and otp_verified with channel and completion time.
  • Track kyc_uploaded, kyc_approved, and kyc_rejected with rejection reason categories.
  • Track investment_request_submitted, investment_request_approved, and investment_request_rejected.
  • Track statement_downloaded and portfolio_dashboard_viewed to measure engagement.
  • Track notification_opened and support_widget_clicked to measure service effectiveness.

Technical Needs

  • React frontend for the website and investor portal with server-side friendly routing where appropriate.
  • Node.js and Express.js REST API layer with modular services for auth, users, KYC, plans, transactions, and notifications.
  • MongoDB with well-indexed collections for users, plans, KYC documents, requests, transactions, statements, and audit logs.
  • Flutter mobile apps sharing a common codebase for Android and iOS with secure local storage.
  • JWT-based session handling with OTP login flows and separate admin authentication.
  • File upload handling with object storage such as AWS S3 or compatible storage, plus signed download URLs.
  • CI/CD pipeline with environment-based configuration for development, staging, and production.

Integration Points

  • SMS gateway such as Twilio, MSG91, or Textlocal for OTP and alerts.
  • Email delivery service such as SendGrid or Amazon SES for confirmations and notifications.
  • Object storage such as AWS S3 for document uploads and statement PDFs.
  • Analytics platform such as Google Analytics 4 or PostHog for product usage tracking.
  • Push notification service such as Firebase Cloud Messaging for Android and iOS app alerts.

Data Storage & Privacy

  • Store KYC files encrypted at rest and restrict access through role-based permissions and signed URLs.
  • Mask or partially hide sensitive values such as phone numbers and ID details in admin views where possible.
  • Keep an immutable audit trail for approvals, edits, and transaction updates.
  • Define retention rules for KYC documents, logs, and notification records according to client policy and applicable law.
  • Use consent language and privacy policy links for data capture forms, especially for personal and identity data.

Scalability & Performance

  • Paginate all tables and histories to keep dashboard performance fast as record counts grow.
  • Cache public CMS content and investment plan pages to reduce database load.
  • Optimize file uploads and PDF generation through background jobs where possible.
  • Design APIs so portal and mobile app can share the same backend without duplication.

Potential Challenges

  • Plan and return values may change frequently; mitigate by making plan configuration fully admin-driven with versioned history.
  • Manual KYC review can create bottlenecks; mitigate by using queue-based status tracking and clear SLA dashboards.
  • SMS delivery failures may block login; mitigate by allowing resend controls, retry logic, and fallback support contact guidance.
  • Sensitive data exposure risk is high; mitigate with strict access control, encryption, audit logs, and secure storage practices.
  • Mobile app store review may delay launch; mitigate by preparing store assets early and using a staged release plan.

Team & resourcing - Small product team - 2 full-stack engineers, 1 Flutter developer, 1 designer, and part-time QA/PM support.

Phase 1: Discovery and UI/UX · Weeks 1–2

  • Information architecture for website, investor portal, admin panel, and mobile app
  • High-fidelity designs for core screens and key states
  • Approved design system with colors, typography, components, and responsive rules
  • Clickable prototype for review and sign-off

Phase 2: Core Build · Weeks 3–6

  • MERN backend APIs and database schema
  • Public website with CMS-driven content and lead forms
  • Investor portal with auth, profile, KYC upload, requests, dashboard, and history
  • Admin panel with user management, KYC approval, plan management, and reports

Phase 3: Mobile Apps · Weeks 5–7

  • Flutter app shell and shared components for Android and iPhone
  • OTP login, profile, KYC upload, investment request, dashboard, notifications, and support screens
  • Push notification integration and secure local session storage
  • App-ready backend endpoints reused from the web platform

Phase 4: Testing, Launch, and Handover · Weeks 7–8

  • End-to-end testing, bug fixes, and performance pass
  • Production deployment to client server with SSL
  • Google Play and Apple App Store submission packages
  • Admin walkthrough, credentials handover, and basic operating documentation

Paste this into Cursor, Bolt, Lovable, or v0 to start building.

Build a premium investment platform called Avinya Vault using a modern production-ready stack.

Product scope:
1) Public website for Avinya Investment with Home, About Us, Why Invest With Us, Services/Investment Plans, Returns Calculator, EMI Calculator, Portfolio showcase, Blog/News, FAQs, Contact Us, testimonials, and a third-party live chat widget.
2) Investor portal with registration, OTP login, profile management, KYC document upload, investment plan selection, investment request submission, portfolio dashboard, returns tracking, transaction history, downloadable PDF statements, notifications, and referral management.
3) Admin panel with dashboard analytics, user management, KYC approval/rejection with remarks, investment plan CRUD, returns/payout scheduling, transaction management, lead management, CMS for pages/blog/plans, notification management, reports/export, and role-based access control.
4) Mobile app parity for Android and iPhone in Flutter, mirroring the investor portal screens and flows.

Core rules:
- Do not build online payment gateway collection or automated payout processing; only record requests and let admin mark status manually.
- Do not build automated Aadhaar/PAN/bank verification; KYC is manual document upload plus admin review.
- Use English-only UI for now.
- Use a clean premium finance aesthetic with deep navy, gold accents, serif-led branding, strong spacing, and mobile-first responsive layouts.
- All investment plan values, rates, payout frequency, content, FAQs, blog posts, testimonials, and legal copy must be admin-managed or seed data.

Recommended stack:
- Web: React with TypeScript, Tailwind CSS or equivalent design system, React Router or Next.js if SSR is helpful for SEO.
- Backend: Node.js, Express.js, MongoDB, Mongoose, JWT auth, OTP login flow.
- Mobile: Flutter with shared codebase for Android and iOS.
- Storage: S3-compatible object storage for KYC docs and statement PDFs.
- Notifications: SMS gateway such as Twilio or MSG91, email via SendGrid or SES, push notifications via Firebase Cloud Messaging.
- Analytics: GA4 or PostHog.

Primary screens and flows to implement:
- Public pages and CMS-driven content pages.
- Calculator pages with disclaimer copy.
- Auth screens: registration, OTP verify, login, forgot access.
- Investor dashboard, KYC upload, plan browse/select, investment request form, request status, portfolio summary, statements, transaction history, notifications, referral section, help/support, terms.
- Admin dashboard, users, KYC queue, plan editor, transaction ledger, lead list, content editor, notification composer, reports/export, RBAC settings.
- Mobile screens should mirror the investor portal and reuse the same backend APIs.

Data model suggestions:
- User: name, phone, email, city, address, role, referralCode, nomineeDetails, status.
- KYCDocument: userId, documentType, fileUrl, status, remarks, reviewedBy, reviewedAt.
- InvestmentPlan: name, description, tenure, rate, payoutFrequency, minAmount, maxAmount, status, version.
- InvestmentRequest: userId, planId, amount, tenure, status, notes, adminRemarks.
- Transaction: userId, investmentRequestId, type, amount, date, referenceNo, status.
- Statement: userId, period, fileUrl, generatedAt.
- Lead: name, phone, email, message, source, status.
- Notification: userId, channel, title, body, readAt, status.
- AuditLog: actorId, action, entityType, entityId, timestamp, metadata.

Implementation requirements:
- Build secure authentication with OTP and JWT, separate admin login, and role-based access control.
- Validate uploads, inputs, and edge cases carefully.
- Make all tables paginated and searchable.
- Add audit logging for admin actions.
- Add basic SEO for public pages.
- Ensure the app is fast, accessible, and production-ready.

Deliver a working full-stack scaffold with reusable components, clean architecture, seeded sample data, and clear placeholder states for pending/empty/error conditions.

Business Idea

As of now only Website. 1. The Opportunity Avinya Investment is a financial services company with three verticals — Avinya Investment, Avinya Hospitality and Avinya FinTech. This proposal covers a complete digital platform for the investment vertical: a website built on the MERN stack (MongoDB, Express.js, React, Node.js) with an investor portal and an admin panel, plus customer mobile apps for Android and iPhone built in Flutter. The core purpose is simple: investors can view investment plans, submit investment requests, and track their portfolio, returns and statements — on both the website and the mobile app — while the admin team manages plans, users, KYC, records and reports from a single panel. We have studied the feature list and wireframes provided, and this document states clearly what is included in this version and what is not, so scope is agreed on both sides. 2. What We Are Building Three deliverables, priced individually and as a combined package: # Deliverable What It Means Investment 1 Website (MERN) Public website + investor portal + admin panel, built on the MERN stack and deployed live INR 60,000 2 Android App (Flutter) Customer investment app for Android, published live on the Google Play Store INR 80,000 3 iPhone App (Flutter) Customer investment app for iPhone, published live on the Apple App Store INR 80,000 Complete Package Website + Android app + iOS app together INR 2,20,000 Investment: INR 2,20,000 (Complete Package) Website + Android app + iOS app — a MERN website with investor portal and admin panel, plus Flutter apps for both platforms, deployed and launched live. A. Public Website • Home page, About Us, and Why Invest With Us • Services & Investment Plans — plans displayed from the admin panel • Returns Calculator and Loan / EMI Calculator (illustrative estimate tools only, not a guarantee of returns) • Portfolio / performance showcase section • Blog & News section, and FAQs — managed from the CMS • Contact Us, lead-generation / enquiry forms, and testimonials • Support / basic live-chat via a third-party widget • Responsive design for desktop, tablet and mobile, with basic on-page SEO B. Investor Portal (Web) • Registration and login, with profile management • KYC document upload • Investment plan selection and investment requests • Portfolio dashboard — active investments and status • Investment tracking, and returns & profit tracking (based on the plan values set by admin) • Transaction history and downloadable statements • Notifications & alerts • Referral management C. Customer Mobile App — Android & iPhone (Flutter) The app mirrors the investor portal so customers can track everything from their phone: • Registration (name, phone, email, city, ID details) with OTP login • KYC / document upload • Browse investment plans and select tenure and amount (plans configured by admin) • Submit an investment request and view its status; view documents/letters issued by admin • Portfolio dashboard — active investments, tenure and payout schedule as configured, with returns tracking • Withdrawal / payout requests • Transaction history and downloadable statements • Nominee details and referral • Push notifications and alerts • FAQ, Help / Support, and Terms & Conditions D. Admin Panel • Dashboard & analytics • User management • KYC approval — review uploaded documents, approve or reject • Investment management — create and edit investment plans (tenure, rate, payout frequency); all values are set by the admin • Returns management — record and schedule payouts as configured • Transaction management — record investments and payouts, maintain history • Lead management • Content management (CMS) — pages, blog, plans content • Notification management • Reports & export • Role-based access control Design & Branding The website and apps follow a clean, minimal, premium finance aesthetic — a refined, serif-led identity with a restrained colour palette (deep navy with a gold accent), reflecting the Avinya brand. This version represents Avinya Investment as the primary vertical; Avinya Hospitality and Avinya FinTech appear as "Coming Soon" placeholders only. Technology Stack • Web frontend: React • Backend: Node.js with Express.js (REST APIs) • Database: MongoDB • Mobile apps: Flutter — one codebase for both Android and iPhone • Authentication: OTP login (via an SMS gateway) and JWT; separate admin login • Deployment: on the client’s server / hosting with SSL What Is Not Included in This Version To keep the price and timeline realistic, the following are NOT part of this version. Each can be quoted separately as a later phase: • Online payment gateway — automatic online collection of investments and automatic payouts/withdrawals. This version records investment and payout requests, and admin marks them; the actual money movement is handled through the client’s own banking. Gateway integration is a separate add-on. • Automated identity verification (Aadhaar / PAN / bank verification via government or third-party APIs) — KYC here is document upload plus manual admin approval. • A separate Agent / Partner mobile app and agent commission-payout dashboards — referral is included via Referral Management; a full agent app and commission system is a separate phase. • All investment plan figures, rates, return numbers, and any "guaranteed" or "risk-free" wording, plus all legal, marketing and disclosure content — these are provided and owned by the client. Fovty builds the system, not the claims. • Multi-language support. • Full Avinya Hospitality and Avinya FinTech websites or apps (placeholders only in this version). • Advanced add-ons — video KYC, e-sign, CRM or accounting integrations, and similar.   3. Investment & Payment Schedule Total investment is INR 2,20,000. Suggested split across three stages, each payable in advance before that stage begins: Stage Scope Amount (INR) Stage 1 — UI/UX Design Payable in advance to start the project 66,000 Stage 2 — Development Payable in advance on design approval, before development begins 88,000 Stage 3 — Launch Payable in advance before final deployment and go-live 66,000 Total Website + Android app + iOS app 2,20,000 4. Delivery Timeline Total estimated time: 2 months (approx. 40 working days) from receipt of the Stage 1 payment. • Stage 1 — UI/UX Design: approx. 2 weeks • Stage 2 — Development (website, both Flutter apps, admin panel and APIs): approx. 5 weeks • Stage 3 — Testing, deployment, store submission and launch: approx. 1.5 weeks The timeline assumes timely stage payments, content and approvals from the client. App review times on the Google Play Store and Apple App Store are controlled by Google and Apple and may add a few days beyond our submission. 5. Deliverables • UI/UX designs of the website, apps and admin panel (Stage 1 output, shared for approval) • Complete MERN source code — website, investor portal and admin panel • Flutter source code for the Android and iPhone customer apps • Live deployed website on the client’s domain and server • Both apps published live on the Google Play Store and Apple App Store • Admin login credentials and a handover walkthrough of the admin panel • Database with the plan, user and KYC structure ready for admin to manage 6. Out of Scope The following are explicitly outside the scope of this proposal and will not be delivered as part of this engagement: • All items listed under "Not Included" above (online payment gateway, automated KYC verification, separate agent app, multi-language, Hospitality and FinTech sites, and the other add-ons) • Domain, hosting / server, SSL, email, SMS gateway and payment gateway accounts, and their running / credit costs • Content writing, data entry, images, and all legal, marketing and plan-document content — provided by the client • Regulatory, financial and legal compliance — including RBI / SEBI / NBFC registration, licensing, deposit rules and disclosures — which are the client’s responsibility; Fovty is engaged as a technology provider only • Third-party service charges of any kind Any work outside this scope will be quoted separately and agreed upon in writing before commencement.

Make My PRD

Design by The Resonance | Powered by GPC – The AI Transformation Company

    PRD: As of now only Website