This policy covers the Eashwa Android application (package com.piyusht2411.eashwa) and the Eashwa web portal. Here's a clear, honest explanation of what we collect, why we collect it, and how we keep it safe.
Effective date: 29 July 2026 · Last updated: 29 July 2026
Eashwa ("we," "us," "our," or "Company") operates the Eashwa mobile application (Android package com.piyusht2411.eashwa) and the Eashwa web portal, used by our employees, dealers, and authorised business partners to manage stock, orders, leads, and support tickets. This Privacy Policy explains what information we collect through the app and the portal, why we collect it, how we use and protect it, and the choices you have. By creating an account or using the Eashwa app, you agree to the practices described here.
Your name, username, email address, phone number, employee ID or dealer code, designation/post, role (for example admin or guard), address, and profile picture. Accounts are created and issued by Eashwa administrators — the app is not open for public self-registration.
Your username and password are transmitted to our servers over an encrypted connection to authenticate you. Passwords are stored only in hashed form; we never store or display your password in readable text.
Orders and order requests you create or act on (customer name, product description, vendor name, customer phone number, order amount, date and time, approval or rejection status and reason), stock entries for vehicles, batteries and chargers, daily leads and remarks, monthly targets and achievements, and support tickets you raise or resolve.
Documents and images you choose to attach — such as proforma invoices, bills, Excel lead sheets, and screenshots submitted with a support ticket. We only access files you explicitly select; we do not scan your gallery or file storage.
Device model, operating system and version, app version, language, mobile network type, and a Firebase Cloud Messaging (FCM) push token used to deliver notifications to your device. We may also log IP address, request timestamps, and error diagnostics for security and troubleshooting.
Your authentication token and basic profile details are stored on your own device (in the app's private storage) so you stay signed in between sessions. This data never leaves your device except when sent to our own servers to authorise your requests.
Requested so we can alert you about new orders, approvals, rejections, and ticket updates. You may deny or later revoke this permission in your device settings; the app will continue to work, but you will not receive alerts.
Used solely to let you pick an image or document to attach to an order, lead sheet, or support ticket. We access only the specific file you select, and only at the moment you select it.
Used only if you choose to take a photo instead of picking an existing one. The app never records photo or video in the background.
Required to communicate with the Eashwa backend servers and to show accurate offline/online status.
Authenticate you and keep your session secure, display the stock, order, lead, and ticket records relevant to your role, route approvals to the right personnel, generate reports and monthly performance summaries, and deliver push notifications about work items assigned to you.
Maintain audit trails of who approved, rejected, or edited a record; detect and prevent fraud, misuse, or unauthorised access; diagnose crashes and improve the reliability and usability of the app.
We process your information on the basis of your employment or business contract with Eashwa, our legitimate interest in operating and securing our business systems, compliance with applicable legal and tax obligations, and — where required — your consent (for example, for notifications).
We do not use your data for advertising, we do not build advertising profiles, we do not sell or rent your data, and we do not share it with data brokers.
Authorised Eashwa personnel — such as your reporting manager, HR, accounts, and administrators — can see the records relevant to their role. Role-based access controls limit what each user can view.
We rely on a small number of trusted providers to run the service: cloud hosting and database providers (including Vercel and MongoDB Atlas) and Google Firebase Cloud Messaging for push notification delivery. They process data only on our instructions and under confidentiality obligations.
We may disclose information where we are required to do so by applicable law, a court order, or a lawful request from a government authority, or where necessary to establish, exercise, or defend legal claims.
If Eashwa is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you before your information becomes subject to a materially different privacy policy.
We never sell or rent personal information to third parties for marketing or commercial purposes.
We keep account and profile data for as long as your Eashwa account remains active. Business records — orders, stock entries, leads, and tickets — are retained for the duration of your association with Eashwa plus up to 7 years, as required for accounting, tax, and audit obligations under applicable Indian law. Technical logs and push tokens are retained for up to 12 months. When data is no longer needed, it is deleted or irreversibly anonymised.
To delete your Eashwa account and associated personal data, email ceo@eashwa.com from your registered email address with the subject line "Delete My Account", including your name and registered username or employee ID. You may also call us on the number listed in the Contact section.
We delete your profile details (name, email, phone, address, profile picture), your login credentials, your locally stored session data, and your push notification token.
Business transaction records that we are legally required to keep — such as order and invoice records needed for accounting, tax, and audit purposes — are retained for the statutory period. Where possible these records are disassociated from your personal identifiers.
We acknowledge deletion requests within 7 working days and complete the deletion within 30 days. You can also remove all locally stored data at any time by logging out of the app or uninstalling it.
All traffic between the app and our servers travels over HTTPS with industry-standard TLS encryption. Passwords are stored as salted hashes, access to production systems is restricted to authorised personnel, and sessions are protected with expiring authentication tokens.
You are responsible for keeping your login credentials confidential, using a device lock screen, and reporting any suspected unauthorised access to your account immediately.
No system can be guaranteed to be perfectly secure. In the event of a data breach affecting your personal information, we will notify affected users and the relevant authorities within 72 hours of becoming aware of it, along with the remedial steps taken.
You have the right to ask what personal data we hold about you and to receive a copy in a commonly used, machine-readable format.
You can request correction of inaccurate or incomplete information — most profile details can also be updated directly by your administrator.
You can request deletion of your data as described in the Account & Data Deletion section, subject to legal retention requirements.
You can turn off notifications at any time from your device settings, and withdraw any consent you previously gave, without affecting the lawfulness of processing carried out before withdrawal.
If you believe your privacy rights have been infringed, you may contact us using the details below, or lodge a complaint with the data protection authority in your jurisdiction.
When you sign in, the app requests permission to send notifications and registers a device push token with Google Firebase Cloud Messaging. We use this token only to deliver work-related alerts — new orders, approval or rejection updates, and support ticket activity. The token is stored against your account and is deleted when you log out, uninstall the app, or request account deletion. We never use push notifications for advertising.
The Eashwa app does not request or collect GPS or precise location data, and it does not track your location in the background. If a future version of the app introduces any location-based feature, we will update this policy, update the Google Play Data safety declaration, and ask for your explicit permission before collecting any location data.
Our servers and service providers may store or process data in data centres located outside India. Where data is transferred across borders, we ensure appropriate safeguards are in place — such as Standard Contractual Clauses and provider commitments consistent with the GDPR, the Digital Personal Data Protection Act, 2023, and other applicable privacy laws.
The app and portal may contain links to third-party websites or services that we do not control. This Privacy Policy applies only to Eashwa. We are not responsible for the privacy practices of external services — please review their policies before sharing information with them.
Eashwa is a workplace tool intended solely for use by employees, dealers, and authorised business partners aged 18 or above. We do not knowingly collect personal information from anyone under 18. If we learn that we have collected such information, we will delete it promptly.
We may update this Privacy Policy from time to time to reflect changes in our practices, the app's features, or legal requirements. The "last updated" date at the top of this page will always show the current version. Material changes will be communicated in the app or by email before they take effect. Continued use of Eashwa after an update means you accept the revised policy.
If you have questions about this Privacy Policy, want to exercise your rights, or wish to request account deletion, please contact us:
ceo@eashwa.com
Phone
+91 77238 66666
Address
H-133, First Floor, H Block, Sector 63, Noida, Uttar Pradesh 201309