Privacy Policy App: Blue Planet Connect / BP Mobile App

Effective date: May 18, 2026

Android package name: com.zigma.bp_mobile_app

This Privacy Policy explains how Blue Planet Connect, also known as BP Mobile App (the "App"), collects, uses, stores, and shares information when authorized employees, staff members, reporting officers, HR users, and administrators use the App for attendance, leave, payroll, profile, and workplace notification services.

The App is intended for workforce and employee self-service use. It is not a consumer advertising app and is not intended for children.

We do not sell personal information, do not use the App for third-party advertising, and do not use collected data to track users across unrelated apps or websites for advertising purposes.

Information We Collect

The information collected depends on the features used and the permissions granted.

Account and authentication information: username, password submitted for login, authentication token, staff or employee ID, staff unique ID, display name, role, HR/reporting officer status, and session information.

Employee profile information: employee name, designation, department, date of birth, blood group, reporting head details, profile image, project or work location assignment, and related HR records made available by the employer or administrator.

Attendance information: attendance status, check-in/check-out date and time, approval status, attendance history, project geofence details, captured attendance images, face verification results, similarity or recognition information returned by the attendance service, and audit records.

Location information: precise latitude and longitude used to verify attendance location, determine distance from assigned project/work locations, and support attendance approval workflows.

Camera, image, and biometric verification information: photos captured through the camera for attendance identity verification or profile image capture. Attendance photos may be transmitted to the face recognition and attendance backend to confirm the employee identity and mark attendance.

Leave information: leave type, leave dates, leave period, leave balance, leave reason, approval status, reporting officer actions, notifications, and any supporting documents attached by the user.

Payslip and payroll information: salary month, employee ID, employee name, department, designation, company name/address, project name, payable days, earnings, deductions, net payable amount, PF/UAN/ESI/PAN details, bank name, account number, and downloaded payslip PDF information.

Notification and device information: Firebase Cloud Messaging token, platform, notification permission status, notification payloads, deep links, read/unread status, and app package identifiers needed to deliver notifications.

Files and local device access: files selected by the user for leave attachments and files saved by the user, such as payslip PDFs. The App may request photo, camera, file, or storage permissions only for these app features.

Technical and server information: IP address, request metadata, app version, device/platform information, error messages, and server logs generated when the App communicates with backend services.

How We Collect Information

Information provided by users during login, leave requests, document uploads, profile image capture, or other in-app actions.

Information received from employer, HR, attendance, payroll, and leave management backend systems.

Information collected through Android device permissions, such as location, camera, notifications, photos, media, and file access, when the related feature is used.

Information generated automatically by backend systems, push notification services, and app/server logs.

How We Use Information

To authenticate users and maintain secure app sessions.

To show employee profile, role, reporting, HR, attendance, leave, and payslip information.

To verify attendance through location, geofencing, captured images, and face recognition services.

To process leave requests, leave approvals, leave balances, and supporting documents.

To provide payslip viewing, PDF generation, and payroll self-service features.

To send push notifications and local notifications for attendance, leave, approval, and workplace messages.

To protect the App, prevent misuse, troubleshoot issues, maintain server uptime, and improve reliability.

To comply with employment, payroll, tax, audit, legal, regulatory, and company record-keeping obligations.

Android Device Permissions

Camera: used to capture attendance verification photos and profile photos.

Location: used to verify attendance location and geofence eligibility.

Notifications: used to send attendance, leave, approval, and workplace alerts.

Photos, media, files, and storage: used when a user attaches a document, captures/selects an image, or saves a payslip PDF. On newer Android versions, the App may request limited media or photo access only when needed for these features.

Internet and network access: used to communicate with backend services, authentication systems, notification services, and map/location services.

Sharing and Disclosure

We share information only as needed to provide, operate, secure, and support the App.

Employer, HR, payroll, reporting officers, and authorized administrators: for attendance, leave, payroll, approval, audit, and employee management purposes.

Backend and hosting service providers: for authentication, attendance recognition, leave processing, payslip processing, document storage, notifications, logs, and related app infrastructure.

Google Firebase Cloud Messaging: used to deliver push notifications. Firebase Cloud Messaging uses Firebase installation identifiers to determine which app instances should receive messages. Firebase privacy information is available at https://firebase.google.com/support/privacy.

Google Play services and Android notification services: used by Android and Google services to support notification delivery, app functionality, and platform-level services.

OpenStreetMap and Nominatim services: may be used to display map tiles and reverse-geocode attendance locations in attendance history views. OpenStreetMap Foundation privacy information is available at https://osmfoundation.org/wiki/Privacy_Policy.

Legal, compliance, and safety recipients: when required by law, regulation, court order, audit, employment dispute, security investigation, or to protect rights and safety.

We require service providers and third parties that process user data for the App to protect that data appropriately and to use it only for the purposes described in this Privacy Policy or as otherwise permitted by applicable law.

Data Linked to the User

Most information handled by the App is linked to the user's employee account, staff unique ID, device token, or workplace records because this linkage is necessary to provide attendance, leave, payroll, notification, and approval features.

Data Safety and Security

Data may be transmitted between the Android App and backend services using secure network communication where supported.

Local session information is stored using secure device storage where supported.

Access to backend systems is limited to authorized users and administrators based on role and business need.

No method of transmission, processing, or storage is completely secure. Users should protect their login credentials, keep their device secure, and report suspected unauthorized access promptly.

Retention

We retain information for as long as needed to provide the App, maintain employment and payroll records, support attendance and leave audits, comply with legal and regulatory obligations, resolve disputes, and enforce company policies.

Session data stored on the device is retained until logout, app data removal, or session expiration.

Attendance, location, face verification, leave, payroll, payslip, and approval records may be retained according to employer, HR, payroll, audit, tax, and legal retention requirements.

Notification tokens are retained while the user is registered for notifications and may be removed or updated after logout, app reinstall, permission changes, or token refresh.

Uploaded documents and captured images are retained only as required for the related attendance, profile, leave, payroll, audit, or compliance purpose.

User Choices, Access, Correction, and Deletion

Users may deny or revoke camera, location, notification, photo, media, or file permissions in Android device settings, but some App features may stop working without the required permission.

Users may log out to remove local session information from the App.

Users may request access, correction, restriction, or deletion of personal information by contacting the employer's HR/admin team or the contact listed below. Some employment, payroll, attendance, tax, audit, or legal records may need to be retained even after a request.

Users may contact HR/admin to correct inaccurate employee profile, leave, attendance, or payroll records.

Children's Privacy

The App is intended only for authorized workplace users. It is not directed to children and should not be used by anyone who is not an authorized employee, staff member, reporting officer, HR user, or administrator.

International Processing

App data may be processed on servers, infrastructure, and third-party services located in India or other countries where our service providers operate. Where applicable, we take steps designed to protect personal information in accordance with this Privacy Policy and applicable law.

Changes to This Policy

We may update this Privacy Policy from time to time. The updated version will be posted at the same URL with a revised effective date. Continued use of the App after an update means the updated policy applies to future use.

Contact

For privacy requests, questions, or corrections, contact your Blue Planet Connect HR/admin team. For app or business-related enquiries, you may also contact:

Email: connect@zigma.in Subject line: Blue Planet Connect Privacy Request