# Privacy Policy - TrackRide Driver **Last updated:** 07 April 2026 TrackRide Driver ("App", "we", "our", "us") is used by authorized drivers and staff for route operations, attendance, navigation, communication, and related work tasks for schools/institutions ("Organization"). This Privacy Policy explains what data we collect, why we collect it, and how it is used. ## 1) Information We Collect Depending on your organization setup and your app usage, we may collect: - **Account and profile data:** name, employee/driver ID, phone/email, organization/tenant details. - **Location data:** precise and approximate location in foreground, and background location when enabled for route tracking, attendance verification, and safety. - **Camera/media data:** photos or camera frames used for attendance, identity/liveness checks, and report attachments. - **Biometric-related data (if enabled):** facial images and/or derived face templates for attendance verification. - **Device/app data:** device model, OS version, app version, network status, crash logs, diagnostics. - **Notification tokens:** push token and notification delivery metadata. - **Files/media access data:** selected media (images) only when you choose to pick/upload/save. - **Activity/motion signals:** used to improve tracking reliability and route/attendance workflows. - **Operational logs:** route events, check-in/check-out events, timestamps, assigned route/activity history. ## 2) How We Use Information We use data to: - authenticate users and manage access, - assign and operate routes, - verify attendance/check-ins, - provide map/navigation and ETA-related features, - send push notifications and alerts, - troubleshoot issues, prevent abuse, and improve reliability, - comply with contractual, legal, and safety requirements of your Organization. ## 3) Permissions We Request and Why The app may request these permissions (Android/iOS equivalent): - **Location (When In Use / Always):** route tracking, attendance/site verification, safety operations. - **Background Location:** continuous route/attendance verification when app is not open. - **Camera:** attendance/face verification and capturing report images. - **Photo Library / Media Access:** select or save images for records/reports. - **Notifications:** operational alerts and updates. - **Microphone (if video/liveness flow is used):** audio with recorded verification media where applicable. - **Motion/Activity Recognition:** improve movement/tracking accuracy. - **Foreground Service / Boot / Wake-related access (Android):** reliable tracking and service continuity after restart. - **Overlay/Battery optimization requests (Android, if used):** keep critical operational services active. We only request permissions needed for app functions enabled by your Organization. ## 4) Legal Basis (Where Applicable) For users in regions requiring legal basis (for example GDPR), we process data under one or more of: - contractual necessity (to provide Organization-requested operations), - legitimate interests (security, fraud prevention, reliability), - consent (where required, especially for sensitive/biometric processing), - legal obligations (where applicable). ## 5) Biometric / Face Data Notice If face-based attendance is enabled by your Organization: - face data is used strictly for attendance/identity verification, - no sale of biometric data, - data is retained only as needed for operational/legal requirements, - data is deleted or de-identified per retention policy or Organization request. ## 6) Sharing of Information We may share data with: - your **Organization** (school/institution administrators), - service providers needed to run the app (for example cloud messaging, maps, hosting, analytics/crash tools), - law enforcement/regulators when legally required. We do **not** sell personal data. ## 7) Data Retention We retain data only for as long as necessary for: - active service delivery, - operational records, - legal/compliance obligations, - dispute/security handling. Retention duration may vary by Organization policy and law. ## 8) Data Security We use reasonable technical and organizational safeguards, including access controls and secure transport/storage practices. No system is 100% secure, but we continuously improve protection measures. ## 9) Children's Privacy This app is intended for authorized staff/driver use through Organizations. It is not intended for direct use by children as standalone consumer users. If child-related data is processed by an Organization, it is processed under that Organization's authority and applicable law. ## 10) International Transfers Data may be processed/stored in countries other than your own, subject to applicable safeguards and contractual protections. ## 11) Your Rights Depending on your jurisdiction, you may have rights to access, correction, deletion, portability, restriction, or objection. Requests can be made through your Organization admin or contact below. ## 12) Third-Party Services The app may use third-party SDKs/services (for example messaging, maps, notifications, diagnostics). Their processing is governed by their own privacy terms in addition to this policy. ## 13) Changes to This Policy We may update this policy from time to time. Material changes will be reflected by updating the "Last updated" date and, where required, by additional notice. ## 14) Contact For privacy requests or questions: - **Company/Organization:** TrackRide Driver - **Email:** [privacy@yourdomain.com] - **Address:** [Your registered address] - **Data Protection Contact (if any):** [Name / Email] --- ## Notes Before Publishing - Replace placeholders in the **Contact** section. - Ensure Google Play **Data safety** and Apple **App Privacy** answers match this policy. - Host this file on a public URL (for example GitHub raw/docs page) and use that URL in store listings.