Overview
Who controls your data
NAN HR is provided to you by your employer (“the Workspace”). Your employer is the data controller for any personal data the app records. We — the app developer — act only as a data processor on the Workspace’s behalf, and store data only for as long as the Workspace allows.
If you have questions about how your employer uses your data, contact your Workspace’s HR department.
Collection
What we collect
Information you provide
| Data | Where | Why |
|---|---|---|
| Workspace domain | Login screen | Routes your sign-in to your employer’s NAN HR instance |
| Username or phone | Login screen | Identifies your account |
| Password | Login screen | Authenticates you; sent encrypted to your Workspace’s servers; never stored on the device or shared with the app developer |
| Leave requests, daily work logs | Self-service screens | Submitted to your Workspace for approval and record-keeping |
Information collected automatically
| Data | When | Why |
|---|---|---|
| Precise location (GPS) | Each time you tap Check In / Check Out | Verifies you are at your assigned work site. Read only at the moment of a punch — never in the background. |
| Authentication tokens | Stored locally after sign-in | Keeps you signed in; held in the iOS Keychain (Secure Enclave-backed where supported) |
| Push notification token | After sign-in | Lets your Workspace send approvals, schedule changes and reminders |
| App / OS version, device model | On API requests | Standard diagnostic headers, used to investigate bugs |
What we do not collect
- Contacts, photos, microphone, camera, or motion-sensor data
- Browsing history outside the app
- Advertising or analytics identifiers
- Background location (we never track you in the background)
Usage
How we use it
- Attendance — your check-in/out time and GPS coordinates are sent to your Workspace’s server so HR can record your daily attendance.
- Authentication — your access/refresh tokens are sent with each API call so the server knows it’s you.
- Notifications — your push token is used to route notifications (leave approvals, reminders) to your device.
- Support — if you contact your HR team, they may use account metadata to assist you.
We do not use your data for advertising, behavioral tracking, training machine-learning models, or selling to third parties.
Sharing
Who we share it with
- Your Workspace’s NAN HR backend — every piece of data above goes only to your employer’s instance of NAN HR. The app developer does not see, store, or have access to your data.
- Apple Push Notification Service and Google Firebase Cloud Messaging — required to deliver notifications. They receive only your device token and the message payload your employer sends.
- No advertisers, analytics services, or data brokers.
Retention
How long we keep it
On your device: authentication tokens persist until you sign out. No location history, attendance history, or personal data is cached beyond what the current screen displays.
On your Workspace’s server: retention is set by your employer’s HR policy — contact your HR team.
Your rights
Control over your data
- Sign out any time from Profile → Sign Out — this deletes all local tokens.
- Revoke location in iOS Settings → NAN HR → Location. Without it you can’t check in/out.
- Delete the app to remove all local data.
- Request a copy or deletion of your server-side data — contact your Workspace HR, who can fulfill it via the NAN HR admin panel.
Under GDPR / CCPA you have additional rights including access, correction, portability and deletion. Exercise them by contacting your Workspace HR.
Safeguards
Security & children’s privacy
- All network traffic is encrypted in transit (HTTPS / TLS 1.2+).
- Authentication tokens are stored in the iOS Keychain; passwords are never stored on the device.
- The app logs no personal data to crash-reporting or analytics services.
NAN HR is a workplace tool intended for employees aged 16 or older. We do not knowingly collect data from anyone under 16.
Contact
Questions?
For app-level technical questions: support@nanhr.com. For questions about your own data, contact your Workspace’s HR department.
We may update this policy from time to time. Material changes will be announced through the app or by your Workspace HR; the “Last updated” date above reflects the current version.