Privacy Policy – EZ Compliance HRMS Mobile Application

EZ Compliance Pvt. Ltd.

Effective Date: September 20, 2025

 

1. Introduction

This Privacy Policy explains how EZ Compliance Pvt. Ltd. (“we”, “us”, or “our”) collects, uses, discloses, and protects personal information when you use the EZ Compliance HRMS mobile application (the “App”) and related services (collectively, the “Services”). By installing or using the App, you agree to the practices described in this Policy.

2. Scope

This Policy applies to data processed through our HRMS mobile App available on Android (Google Play) and any associated web services. It does not apply to third‑party websites, services, or applications that we do not control.

3. Roles & Responsibilities

For most HR use cases, your employer (the company administering the HRMS) acts as the Data Controller, and we act as a Data Processor/Service Provider processing data on your employer’s instructions. In limited cases (e.g., diagnostics, security, abuse prevention), we may act as an independent controller where allowed by law. Your employer ensures that data provided to us is accurate and legally compliant.

4. Information We Collect

Depending on your employer’s configuration and your use of the App, we may process the following categories of information:

  • Identity & Profile: full name, employee ID, profile photo, designation, department, reporting manager.
  • Contact: corporate email, phone number, office location.
  • Employment & HR Data: onboarding details, attendance logs, time entries, shift schedules, leave requests/approvals, payroll identifiers, payslip access metadata, performance records, policy acknowledgments.
  • Documents & Media: ID proofs, certificates, resumes, expense receipts, and other HR‑related uploads.
  • Location Data (if enabled by your employer): GPS‑based location for attendance/geo‑fencing and visit logs.
  • Device & App Data: device identifiers (e.g., Android Advertising ID), device model, OS version, app version, IP address, crash logs, diagnostics, and in‑app events for analytics and security.
  • Communications: support messages, in‑app feedback, audit logs (who did what and when).

We do not collect information unrelated to HRMS functionality, and we do not use device permissions for purposes not disclosed in this Policy.

5. App Permissions & Purpose

The App may request the following permissions, strictly for core functionality:

  • Camera – capture profile photos, scan/upload documents/receipts.
  • Location (GPS) – attendance check‑ins, geo‑fencing, site visit verification (only if enabled by your employer).
  • Storage/Photos – upload or download HR documents (e.g., payslips), cache files.
  • Notifications – receive shift alerts, approvals, reminders, and payslip availability.
  • Contacts/Phone (rare; if enabled) – facilitate corporate directory look‑ups or verification flows.

Permissions can be disabled in your device settings. Some features may not work without the relevant permission.

6. How We Use Information

  • Employee onboarding and profile management.
  • Attendance, time tracking, and shift scheduling.
  • Leave/expense workflows and approvals.
  • Payroll access (e.g., payslips) and HR document exchange.
  • Performance reviews, surveys, learning or policy acknowledgments.
  • Security, fraud prevention, diagnostics, and support.
  • Compliance with legal obligations and enforcement of terms.

7. Legal Bases (where applicable)

Where required (e.g., under GDPR), we rely on one or more legal bases: (i) performance of a contract; (ii) legitimate interests (security, product improvement); (iii) consent (e.g., location features) which you may withdraw at any time; and/or (iv) compliance with legal obligations.

8. Data Sharing & Disclosures

  • Your Employer/Administrators – to deliver HRMS features and comply with company policies.
  • Service Providers – cloud hosting, analytics, push notifications, crash reporting, content delivery; bound by data processing agreements and confidentiality obligations.
  • Legal/Regulatory – when required by applicable law, regulation, subpoena, or court order.
  • Business Transfers – in a merger, acquisition, or sale of assets, subject to appropriate safeguards.

We do not sell or rent employee data.

9. Third‑Party SDKs & Services

To operate and improve the App, we may integrate SDKs/services such as:

  • Google Firebase Analytics – usage analytics to improve performance and user experience.
  • Firebase Crashlytics – crash diagnostics and stability.
  • Firebase Cloud Messaging – push notifications for HR events.
  • Google Sign‑In/OAuth – optional single sign‑on.
  • Google Maps Platform – maps and geolocation features for attendance (if enabled).

We do not share HR profile fields with these partners unless required for functionality.

10. International Data Transfers

Your data may be processed and stored in data centers located outside your country. We implement appropriate safeguards (such as standard contractual clauses or comparable mechanisms) where required by law.

11. Data Retention

We retain HR data for as long as your account is active or as directed by your employer and/or required by law. Diagnostic logs and analytics may be retained for shorter periods necessary for security and product improvement. When retention is no longer necessary, data is deleted or de‑identified per our schedules and your employer’s policies.

12. Security Measures

We implement technical and organizational safeguards including encryption in transit and at rest (where applicable), access controls with role‑based permissions, network and application security, auditing, and employee confidentiality obligations. No method of transmission or storage is 100% secure; we continuously improve our safeguards.

13. Your Rights & Choices

Depending on your jurisdiction, you may request access, correction, deletion, restriction, portability, or object to certain processing. Many HR‑related requests should be initiated through your employer’s HR/IT team as they control the HRMS dataset. Where we act as controller, you can reach us using the contact details below. You may disable permissions in device settings; some features may not function without them.

14. Children’s Data

The App is intended for authorized employees and HR staff. It is not directed to children under 18, and we do not knowingly collect data from children.

15. Data Deletion Requests

To request deletion of your account data within the App (subject to your employer’s and legal retention requirements), contact your employer’s HR administrator first. You may also contact us at info@ezcompliance.in for assistance, and we will coordinate with your employer where appropriate.

16. Employer Consent & Authority

We rely on your employer to ensure that it has obtained any required employee consents or authorizations prior to providing us with your personal information.

17. Google Play Disclosures (Data safety)

  • Collected Data Types: identifiers (device/app), app activity, diagnostics, location (if enabled), user‑provided HR data and documents.
  • Purposes: app functionality, account management, HR workflows, analytics, crash reporting, security, and compliance.
  • Data Sharing: no sale; limited sharing with processors/SDKs for functionality (e.g., Firebase).
  • Data Handling: data is encrypted in transit and at rest (where applicable); users can request deletion through employer/admin; data collection is limited to what is necessary.
  • Optional Permissions: location and camera are permission‑based; denying them may limit certain features (e.g., geo‑attendance, document capture).

18. References & Links (for Client’s Compliance Review)

The following official resources are provided for quick reference. Open these links to review policy details:

  • Google Play Developer Program Policies: https://play.google.com/about/developer-content-policy/
  • Google Play User Data Policy (incl. Data safety): https://support.google.com/googleplay/android-developer/answer/10787469
  • Google Play Permissions and APIs Policy: https://support.google.com/googleplay/android-developer/answer/9799150
  • Google Privacy Policy: https://policies.google.com/privacy
  • Firebase Privacy & Security: https://firebase.google.com/support/privacy
  • Firebase Data Processing Terms: https://firebase.google.com/terms/data-processing-terms
  • Google Maps Platform Terms: https://cloud.google.com/maps-platform/terms

19. Changes to This Policy

We may update this Policy from time to time. If we make material changes, we will notify you within the App and/or on our website, and the ‘Effective Date’ above will be revised accordingly. By continuing to use the App or Services after such updates, you confirm that you have read, understood, and agreed to the updated Policy.

20. Contact Us

EZ Compliance Pvt. Ltd.
Email: info@ezcompliance.in
Website: https://ezcompliance.in