このページは英語版のみです。

Privacy policy

Version 2.1 · 8 October 2026

This Privacy Policy describes how Kaivon Technologies Private Limited ("Kaivon", "we", "us" or "our") collects, uses, stores, discloses and protects personal data in connection with the Hazri mobile application and the website at hazri.co (together, the "Service").

This Policy forms part of, and should be read together with, our Terms of use. By creating an account or otherwise using the Service, you acknowledge that you have read and understood this Policy.

In short

This summary is provided for convenience and does not replace the sections that follow.

  • The worker records you enter — names, attendance and amounts — belong to you. No member of our team reads them.
  • Everything you record is stored under your own account and is readable only by you.
  • You may delete your account, and all data within it, from inside the app or from this website.
  • We do not sell, rent or licence your personal data, and we do not use it for advertising.

1. Scope

This Policy applies to personal data processed through the Service. It does not apply to any third party service that you may reach from the Service, including the identity providers described in section 2.1, each of which operates under its own privacy policy.

For the purposes of the Digital Personal Data Protection Act, 2023 ("DPDP Act"), Kaivon is the Data Fiduciary in respect of the personal data described below, and you are the Data Principal.

2. Personal data we collect

2.1 Data you provide on registration

The Service requires an account. Depending on the sign-in method you choose, we receive and store:

  • Name and email address, as supplied by Google or Apple where you sign in with those providers, or the email address you supply where you register with an email address and password.
  • A unique account identifier generated by our authentication provider.

Where you register with an email address and password, your password is handled by our authentication provider and is not accessible to us in readable form.

2.2 Data you enter while using the Service

The Service functions as a record of your own making. We store what you choose to enter:

  • Worker records: a name, and any optional details you elect to record, which may include a telephone number, role, address, notes or a photograph.

  • Attendance records: the calendar date and whether the person was present, absent or worked a part day.

  • Financial records: rates of pay, advances, payments, adjustments and settlements.

  • Preferences: language, currency, reminder times and time zone.

2.3 Data collected automatically

The Service is built using Google Firebase. Two Firebase components collect limited technical information without any instruction from us:

  • Analytics: that the application was opened, the device model, the operating system version, and the country from which it was opened.
  • Crash reporting: where the application fails, a diagnostic report describing the failure.

This information is technical in nature. It does not include worker names, telephone numbers, notes, photographs or any monetary amount. Beyond the foregoing, the Service records no usage events of its own: no code within the application reports a settlement made, a worker added or a day marked.

2.4 Data we do not collect

We do not collect your contacts, your precise or approximate location by device sensors, your messages, your browsing history, or any photograph other than a worker photograph you elect to add. We do not collect payment card or bank account details.

2.5 Purchases

We intend to offer paid features or plans in future (see section 8 of our Terms of use). Where you make a purchase through the Google Play Store or the Apple App Store, the store processes the payment under its own privacy policy. We receive only what is needed to confirm and manage your purchase, such as the product bought, its status, its renewal or expiry date and a transaction identifier, and we link it to your account. We never receive your card or bank details.

3. Purposes of processing

We process personal data for the following purposes only:

| Purpose | Categories used | | --- | --- | | Providing the Service, including synchronising your records across devices | Sections 2.1, 2.2 | | Authenticating you and maintaining the security of your account | Section 2.1 | | Diagnosing failures and maintaining reliability | Section 2.3 | | Responding to enquiries you send us | Section 2.1, and the content of your message | | Confirming and managing purchases, once paid features are offered | Sections 2.1, 2.5 | | Complying with applicable law | As required |

We do not process personal data for advertising, profiling, or automated decision-making producing legal or similarly significant effects.

4. Disclosure

We do not sell, rent or licence personal data.

We disclose personal data only:

  • To processors acting on our instructions. Google LLC provides authentication, database, file storage, serverless computing, analytics and crash reporting under Google's data processing terms. Vercel Inc. hosts the website. Where you buy through an app store, Google or Apple processes the payment as described in section 2.5.
  • Where required by law, including in response to a valid order of a court or other authority of competent jurisdiction.
  • In connection with a reorganisation, merger or transfer of business, subject to the acquirer observing obligations no less protective than those in this Policy.

5. Storage and location

Records created through the Service are stored in Google Cloud data centres. Limited technical information described in section 2.3 may be processed by Google outside India in accordance with Google's own terms.

6. Retention

We retain your records for as long as your account remains open. Where you delete your account, your records are deleted in accordance with section 8. Aggregate technical information that cannot be attributed to an identified individual may be retained.

7. Confidentiality and access controls

Access to records is enforced on the server and not only within the application. Requests for data belonging to another account are refused at the server.

No member of our team reads worker records or monetary amounts in the ordinary course. Internal administrative tools expose counts and technical status only, and never a name, telephone number, note or amount.

Transmission between your device and our servers is encrypted in transit. No method of transmission or storage is completely secure, and we do not warrant absolute security.

8. Deletion of your account

You may delete your account at any time:

  • In the application: Settings → Privacy and your data → Delete account.
  • On this website: Delete your account.

You will be signed out immediately. Your account, worker records, attendance records, financial records and any worker photographs are removed from our systems within thirty (30) days. Deletion is irreversible.

9. Your rights

Subject to applicable law, including the DPDP Act, you have the right to:

  • obtain confirmation of the personal data we process about you, and a summary of it;
  • correct or complete inaccurate or incomplete personal data;
  • erase personal data, exercisable through section 8;
  • nominate another individual to exercise your rights in the event of your death or incapacity; and
  • grievance redressal, as set out in section 12.

Much of the foregoing may be exercised directly within the application. Where you wish to exercise a right that the application does not provide for, please write to us using the details in section 12.

10. Children

The Service is intended for adults operating a household or a business. It is not directed at children, and we do not knowingly process the personal data of a child. Where we become aware that we have done so, we will delete it.

11. Changes

We may amend this Policy. Where an amendment materially affects you, we will publish the amended Policy at this address under a new version number and date, and the application will link to it. Your continued use of the Service after publication constitutes acceptance of the amended Policy.

12. Contact and grievances

Kaivon Technologies Private Limited

For questions about this Policy, or to raise a grievance concerning the processing of your personal data, write to hello@kaivon.in. We aim to acknowledge grievances within two working days and to resolve them within the period prescribed by applicable law.