StaffOSStaffOS

Privacy Policy

Last updated: August 13, 2026

1. Information We Collect

We collect information you provide directly, such as your name, email address, password, department, and supervisor when you register or when an admin creates your account. We also collect information generated through your use of StaffOS, including attendance records (clock in/out times, status), leave requests, task activity and comments, direct messages, uploaded documents and profile pictures, presence/status data, payroll configuration (where enabled), and two-factor authentication settings.

2. How We Use Your Information

Your information is used to operate core StaffOS features: managing your profile and employment records, tracking attendance and leave, assigning and tracking tasks, enabling messaging between colleagues, generating performance and export reports, sending email notifications (such as message alerts, weekly digests, and announcements) if you have those preferences enabled, and maintaining an audit log of significant account and system actions for security and accountability.

3. Who Can See Your Information

Access is governed by role-based permissions. Staff can see their own records. Managers and Admins can see and manage records for the employees in their scope, as configured by your organization. Only Admins can view system-wide audit logs and configure organization-wide settings. Your organization's administrators are the data controllers for information stored in your StaffOS workspace.

4. Data Storage and Security

Data is stored in a hosted PostgreSQL database associated with your organization's StaffOS deployment. Passwords are stored using industry-standard hashing and are never stored in plain text. Two-factor authentication, when enabled, adds an additional layer of protection to your account. We take reasonable technical and organizational measures to protect your information against unauthorized access, alteration, or loss.

5. Data Retention

We retain your information for as long as your account is active or as needed to provide the service, comply with legal obligations, resolve disputes, and enforce our agreements. Your organization's administrators may configure or request deletion of specific records in accordance with their own data retention policies.

6. Your Choices

You can review and update your profile information from Settings at any time. You can control notification preferences (email, in-app, Do Not Disturb) from your account settings. If you believe information about you is inaccurate or you wish to request its deletion, contact your organization's StaffOS administrator.

7. Cookies and Sessions

StaffOS uses cookies and similar technologies solely to maintain your authenticated session and remember your preferences. We do not use third-party advertising or tracking cookies.

8. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will update the "Last updated" date below when we do.

9. Contact

If you have questions about this Privacy Policy or how your data is handled, please contact your organization's StaffOS administrator.

Back to Login