Effective date: July 20, 2026
HS Live Pro is a browser extension that securely relays authorized HungerStation Live Operations data to LogisTap. This Privacy Policy explains what information the extension processes, why it is processed, how it is protected, and the choices available to users.
This policy applies to the HS Live Pro Chrome extension and its communication with the LogisTap WebApp and LogisTap backend services.
HS Live Pro is intended for authorized logistics companies and their approved users. It must only be used with HungerStation and LogisTap accounts that the user is authorized to access.
During an authorized live session, HS Live Pro may process the following HungerStation operational data:
Rider or employee identifier
Rider name shown by HungerStation
Phone number, when included in the HungerStation response
Rider availability and working status
Active delivery and order statistics
Duty, break, and performance information
Wallet balance information
Current operational location, when provided
Zone and starting-point information
Selected city and snapshot timestamps
The extension also processes limited technical information required to operate securely:
Random extension installation identifier
Authorized live-session identifier
Short-lived access token
Selected and active city identifiers
Session expiry and workflow status
Extension language preference
Non-exportable cryptographic public/private key material
HS Live Pro does not read, collect, or store:
HungerStation usernames or passwords
LogisTap usernames or passwords
Authentication form contents
Credit-card or payment credentials
Unrelated browser history
Content from unrelated websites
Rider custom names in extension storage
The extension uses the user’s existing HungerStation browser session but does not extract or store HungerStation login credentials.
The extension does not begin live-data collection automatically.
An authorized user must start a live session from the LogisTap WebApp. LogisTap verifies the user session, company, subscription, and permission before issuing a short-lived one-time extension grant.
The extension exchanges that grant for a scoped live-session token. Data collection is limited to the authorized company, session, and selected cities. The session automatically expires after its authorized duration.
Processed information is used only to:
Display HungerStation Live Operations data in LogisTap
Provide live data to authorized paired Android devices
Select and synchronize approved HungerStation cities
Enrich rider records with company-managed display names on the backend
Maintain, secure, diagnose, and expire authorized live sessions
Prevent unauthorized access, replay, or cross-company data access
We do not use collected information for advertising, profiling, credit decisions, or unrelated analytics.
Authorized snapshots are transmitted over HTTPS to the LogisTap Supabase backend.
Raw HungerStation snapshots are not sent directly to Android devices from the extension. Android devices receive company-authorized and backend-enriched snapshots through a device-scoped API.
The extension does not sell, rent, or share user data with advertisers or data brokers.
Live snapshots are stored as short-lived operational data. Each company and city has a latest snapshot that expires approximately 10 minutes after receipt and is replaced by newer data.
Short-lived authorization grants, access tokens, nonces, and pairing requests expire automatically. Some expired security records may be retained briefly for cleanup and security enforcement.
Audit records may contain session, pairing, revocation, or security-event metadata. Raw rider snapshot payloads are not copied into audit records.
Temporary extension access tokens and session state are stored in chrome.storage.session and are removed when the session is cleared or expires. The extension installation identifier and language preference may remain in chrome.storage.local.
Rider custom names are not stored by the extension.
When an authorized WebApp or Android device requests a snapshot, the LogisTap backend may match the HungerStation rider identifier with the company’s ID Manager and employee records. The backend then returns an enriched display_name.
This processing is company-scoped and does not expose the complete Employees or ID Manager tables to the extension or Android app.
HS Live Pro uses security measures including:
One-time authorization grants
Short-lived scoped access tokens
Company and city authorization checks
P-256 cryptographic request signing
Non-exportable private keys
HTTPS transmission
Row Level Security and restricted database grants
Device-scoped Android authorization
Session expiry and replay protection
Audit logging of security-sensitive actions
No method of electronic transmission or storage is completely secure, but reasonable technical and organizational safeguards are applied.
LogisTap uses Supabase as backend infrastructure for authentication, authorization, Edge Functions, and short-lived live-data storage.
Information may also be disclosed when required by law, to protect users or the service, or to investigate fraud, abuse, or security incidents.
We do not sell personal or sensitive information.
Authorized company administrators can:
Control which users have HungerStation Live permission
Select the cities available to a live session
Revoke paired Android devices
Manage employee and rider display-name records
Allow sessions to expire automatically
Request deletion or correction of company-managed information
Removing or disabling the extension stops it from collecting new HungerStation snapshots.
Live sessions, devices, snapshots, and enriched rider names are scoped to the authorized LogisTap company.
The backend validates company access and does not permit one company to access another company’s HS Live data.
HS Live Pro is a business operations tool and is not directed to children. We do not knowingly collect information from children through the extension.
This Privacy Policy may be updated when the extension’s functionality, security controls, or legal obligations change. The effective date will be updated when material changes are made.
For privacy questions, data requests, or support, contact the LogisTap administrator:
Website: https://www.logistap.com
WhatsApp: +966 57 032 8574