1. Information We Collect
When you use HRinfo, we process the following types of information:
- Account Information: Name, email address, organization name, and role provided during registration.
- Employee Data: Names, email addresses, job titles, departments, locations, employment dates, and other HR data synced from your connected systems. This is your data — we process it on your behalf.
- Usage Data: Feature usage, login timestamps, IP addresses, and device information for service improvement and security monitoring.
- Payment Information: Billing details are processed by our payment provider (Stripe) and are not stored on our servers.
2. How We Use Your Information
- Providing and maintaining the HRinfo platform and its features
- Syncing, unifying, and displaying employee data from connected systems
- Generating analytics, reports, and org charts
- Sending service-related communications
- Improving platform performance and developing new features
- Complying with legal obligations
3. Data Processing Role
For employee data synced from your HR systems, HRinfo acts as a data processor on behalf of your organization (the data controller). We process this data only as instructed by you and in accordance with our Data Processing Agreement (DPA), available upon request.
4. Data Security
- AES-256 encryption for all data at rest
- TLS 1.3 for all data in transit
- Tenant isolation at the database level — your data is never mixed with other customers'
- SOC 2 Type II certified infrastructure
- Regular third-party security audits and penetration testing
- Geographic data residency options (US, EU, APAC)
5. Data Sharing
We do not sell personal data. We may share information with:
- Service Providers: Cloud infrastructure and payment processing partners, bound by data processing agreements.
- Legal Requirements: When required by law, regulation, or valid legal process.
- Business Transfers: In connection with a merger, acquisition, or sale of assets, with prior notice.
6. Data Retention
We retain account data while your subscription is active. Employee data is synced in real-time and deleted within 30 days of account termination or upon request. You can export all your data at any time.
7. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access, correct, or delete your personal data
- Export your data in a portable format
- Object to processing or request restriction
- Withdraw consent at any time
- Lodge a complaint with your local data protection authority
8. Contact
For privacy-related inquiries, contact our Data Protection Officer at privacy@hrinfo.me.