Your Privacy Policy must clearly explain:
Include:
App name: ONAQT – Workforce Management System
Purpose: attendance tracking, task assignment, site work management.
Platforms used: Android app + Admin Panel + Backend APIs.
Because your app tracks employees and site work, include these categories:
Name
Email ID
Phone number
Date of birth
Gender
Father/Mother/Spouse name
Employee code
Government IDs (PAN, Aadhaar – if stored)
Address details (present/permanent)
Role, designation, department
Circle, project, site assignment details
Date of joining
Reporting manager
Assigned sites and projects
Task logs
Attendance records
Device model
OS version
App version
Network information
IP address
Since the ONAQT app uses:
Live GPS Tracking after marking Start Day
500-meter official location validation
Location capture during Start Work and End Work
Include:
Real-time GPS coordinates
Background location tracking
Location accuracy used (GPS, network, fused provider)
Purpose: attendance verification, work tracking, safety
Employees upload:
Site photos during Start Work
Possibly profile picture
Include photography and storage sections.
Start Day / End Day timestamps
Start Work / End Work timestamps
Task acceptance, completion, remarks
PO/type/activity details
List each purpose clearly:
To mark attendance
To verify employee's presence on-site
To provide real-time GPS tracking for work monitoring
To assign tasks, sites, projects, POs
To verify site completion (before HR, PM, OPS approval)
To generate attendance summaries and reports
To manage role-based permissions
To maintain security logs
This MUST be a separate section (Google Play requirement).
Explain:
Location is collected in background only after "Start Day" is marked.
Location stops when End Day is marked.
Used for attendance, work tracking, and employee safety.
Data is NOT used for advertising.
Include:
Data stored on secure servers
Supabase authentication tokens
Encrypted database storage
HTTPS communication
Access restricted by role (Admin/PM/Ops/Employee)
You need to mention:
Data is NOT sold to third parties
Only shared internally (Admin, PM, Ops teams)
Shared with government authorities only when legally required
Include:
Right to access personal data
Right to correct/update data
Right to request deletion (subject to employment policies)
Right to withdraw location access (but app will not work without it)
Mention:
Attendance, GPS logs, and task history retained as per company policy
Can specify 1 year, 3 years, or custom (you tell me, I will add)
Google Play requires full explanation:
ACCESS_FINE_LOCATION (GPS tracking)
ACCESS_COARSE_LOCATION
ACCESS_BACKGROUND_LOCATION
CAMERA (capture site photos)
READ/WRITE STORAGE (if used)
INTERNET
NETWORK_STATE
State clearly:
App is for employees only
Not intended for children under 18
Explain how updates will be notified.
Use:
Support Email (example): wfms-support@example.com
Company name
Registered address