EasySalary
Back to Home

Privacy Policy

How EasySalary, a product of Gayatri Software, handles your data.

On this page
1. Information We Collect 2. How We Use Information 3. How We Store & Protect Data 4. Biometric Data Handling 5. Data Sharing 6. Data Retention 7. Your Rights 8. Cookies & Sessions 9. Changes to This Policy 10. Contact

This Privacy Policy explains how Gayatri Software ("Gayatri Software", "we", "us", or "our") collects, uses, stores, and protects information through EasySalary (the "Service"). By using the Service, you agree to the collection and use of information as described here.

Last updated: 13 Aug 2026

1. Information We Collect

We collect the following categories of information:

CategoryExamples
Account information Name, mobile number, password (stored hashed), organisation membership and role
Organisation data Organisation name, working days, PF percentage, subscription details
Employee & payroll data Employee records, salary structures, attendance status, generated payslips — entered by you or your organisation's admins
Biometric attendance data If you link a biometric device, punch timestamps (in/out) and the device's internal enrolment ID are synced. We do not store fingerprint or facial templates ourselves — those remain on the biometric device/vendor system
Device information Biometric device serial numbers registered to your organisation
Technical data Session identifiers, log data, IP address, browser/user-agent, for security and troubleshooting

2. How We Use Information

  • To provide the Service — authentication, attendance tracking, and payroll calculation.
  • To maintain multi-tenant data separation so each organisation only sees its own data.
  • To process and reconcile biometric device punches into attendance and payroll records.
  • To manage subscriptions, billing, and device-linking entitlements.
  • To communicate service-related notices, security alerts, and support responses.
  • To detect, investigate, and prevent fraud, abuse, or security incidents.

3. How We Store & Protect Data

  • All data is stored in a MySQL database scoped by organisation (org_id); application queries enforce this scoping so one organisation cannot access another's data.
  • Passwords are stored as irreversible hashes and are never stored or transmitted in plain text after registration.
  • Write operations use parameterised/prepared database queries to protect against injection attacks.
  • Access to payroll generation and device linking is gated behind an active subscription and role-based permissions (owner > admin > staff).

4. Biometric Data Handling

Where your organisation links a fingerprint/face biometric device, the raw biometric templates (fingerprint/face images) are captured and stored on the device/biometric vendor's own system, not within EasySalary. EasySalary only receives and stores the resulting punch events (timestamp, enrolment ID, device serial) needed to compute attendance. You are responsible for obtaining any employee consents required by applicable law before enrolling their biometric data on a device linked to your organisation.

5. Data Sharing

We do not sell your data. We may share information only:

  • Within your organisation, as permitted by each user's assigned role.
  • With the biometric device/vendor infrastructure strictly to retrieve attendance punches you have configured us to sync.
  • With service providers who help us operate the Service (e.g. hosting), under confidentiality obligations.
  • When required by law, regulation, or a valid legal process.

6. Data Retention

We retain organisation, employee, attendance, and payroll data for as long as your organisation's account remains active, and for a reasonable period afterward to comply with legal, tax, or accounting obligations. You may request deletion of your organisation's data, subject to any statutory retention requirements applicable to payroll records.

7. Your Rights

  • You may access, correct, or request deletion of personal data associated with your account, subject to organisational admin permissions and legal retention requirements.
  • Organisation owners/admins are responsible for managing the data of employees added under their organisation.

8. Cookies & Sessions

The Service uses server-side session cookies solely to keep you signed in and to remember your active organisation. We do not use third-party advertising or tracking cookies.

9. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be reflected by updating the "Last updated" date above. Continued use of the Service after changes take effect constitutes acceptance of the revised policy.

10. Contact

For questions about this Privacy Policy or to exercise your data rights, please contact Gayatri Software through the support channels provided within the Service.

EasySalary
A product of Gayatri Software
Terms & Conditions · Privacy Policy
© 2026 Gayatri Software. All rights reserved.