Privacy Policy for GoForHR App Usage

Last updated: 15 May 2026

GoForHR (“we”, “our”, “us”) is a Human Resource Management System (HRMS) application designed to help organizations manage employees, attendance, and authentication securely.

1. Information We Collect

We may collect the following personal data:
  • Mobile Number – used for OTP-based authentication and account verification
  • Work Email Address – used for username/password authentication and device binding
  • Location Data – used for attendance and work-location verification
  • App-generated Device Identifier – a randomly generated, application-specific identifier used to securely bind your account to a single device. This identifier does not contain hardware information and cannot be used to track users across apps or services.
  • Employee Information – such as name, employee ID, and email (provided by the organization)
  • 2. How We Use Information

    We use collected data strictly for:
  • Secure login using One-Time Password (OTP) via mobile number
  • Secure login using work email and password
  • Device-level access control to prevent unauthorized account usage
  • Attendance tracking and verification
  • Account management and HR operations
  • 3. OTP, Email & Device Binding

    For security purposes, GoForHR implements a device binding mechanism during the first successful login — whether via OTP or email/password.
  • On first login, your mobile number and/or work email address are permanently linked to your device using a unique, app-generated device identifierD
  • This binding is stored securely on our servers and verified on every login attempt
  • If you attempt to log in using the same mobile number or email on a different device, access will be blocked to prevent unauthorized usage
  • Additionally, each physical device can only be associated with one employee account. If a different employee attempts to log in on a device that is already registered to another employee, access will be blocked even on first attempt on that device.
  • This applies to both login methods — OTP login and username/password login are part of the same device binding record
  • If you log in with OTP first and later with email/password (or vice versa) on the same device, both are recognized and linked to the same device record automatically
  • If you change your phone or need to reset your device binding, please contact your organization's HR administrator — they can reset the binding to allow login on your new device
  • The app-generated device identifier is used solely for this security purpose and is not used for advertising, profiling, or shared with third parties.
  • 4. Location Data Usage

    GoForHR collects location data only for attendance and work verification purposes.
  • Location may be collected while the app is in use or when attendance features are active
  • Location data may be collected in the background to support attendance tracking, even when the app is closed or not actively in use
  • Location data is not used for advertising
  • Location data is securely transmitted to the organization's HR system
  • Location data is not shared with third parties
  • 5. Device Information We Collect

    GoForHR collects a limited, application-specific device identifier generated by the app during first use. This identifier:
  • Is randomly generated by the application
  • Is unique per app installation
  • Does not contain hardware or manufacturer information
  • Cannot be used to track users across apps or devices
  • Is used exclusively for security and device-binding purposes
  • This identifier is securely transmitted to our servers and stored against your employee account to enforce the “one device = one employee” security policy.

    6. Data Sharing

    We do not sell, rent, or share personal data with third parties. Data is accessible only to the authorized organization using GoForHR.

    7. Data Security

    We use industry-standard security measures including:
  • Encrypted communication (HTTPS) for all data transmission
  • Server-side device binding verification to prevent unauthorized access
  • Restricted access controls to protect user data
  • 8. Data Retention & Deletion

  • Data is retained according to organizational requirements
  • Device binding records are retained for the duration of the employee's association with the organization
  • Users may request correction, reset of device binding, or deletion of their data through their HR administrator or authorized support
  • 9. User Consent

    By using the GoForHR application, users explicitly consent to:
  • Collection and use of personal and organizational data as described in this Privacy Policy
  • Secure authentication using OTP, work email/password, and optional biometric verification (Face ID or Touch ID)
  • Binding of login credentials to an app-generated, application-specific device identifier for security purposes
  • Collection of location data during attendance actions and, where enabled by the organization, background location collection to support attendance tracking
  • Device-level restrictions that prevent multiple employee accounts from being used on the same physical device
  • Users may revoke permissions (such as location or biometrics) at any time through device settings; however, doing so may limit certain app functionalities as required by organizational HR policies.

    10. Contact Information

    For privacy-related questions or to request device binding reset: 📧 info@tambasol.com