Data Protection Policy

Privacy Policy

Effective Date: August 2026

This Privacy Policy explains how the Ahir Samaj Government Employee Directory (ASGED) platform (website and mobile application) collects, uses, secures, and handles your personal information when you use our services.

1. Information We Collect

To register, verify, and participate in our secure community directory and networking platform, we collect the following categories of information:

  • Basic Personal Details: Full Name, Date of Birth, Gender, Blood Group.
  • Contact Information: Mobile Number, WhatsApp Number, Email Address.
  • Employment & Professional Details: Department Name, Designation, Service Class, Joining Date, Office Location, Office Address, Office Pin Code.
  • Education & Family Details: Academic qualifications and family member details.
  • Photos & Uploaded Media: Profile photos, community achievement media, and feedback attachments stored in secure storage buckets.
  • Push Notification Tokens: Device push tokens (FCM/Expo) used exclusively for delivering direct message alerts, administrative announcements, and security updates.
  • In-App Messages & Community UGC: Direct 1:1 chat messages, community forum posts, topic channel questions, replies, and congratulations.
  • Device & Security Data: Device model, unique device identifier (for single-active-device session enforcement), IP address, and Play Integrity attestation tokens for fraud prevention.

2. Purpose of Collection & Usage

We collect and process your personal information for the following specific purposes:

  • To verify eligibility as an active or retired government employee of the Ahir community.
  • To maintain your verified profile in the secure member-only directory.
  • To allow approved directory members to search, view masked profiles, and connect securely.
  • To facilitate optional peer-to-peer 1:1 messaging and community discussion forums.
  • To deliver important push notifications regarding account status, community notices, and message alerts.
  • To enforce account security, single-device session integrity, and protect the directory against automated scraping.

3. Data Security & Storage

We implement rigorous multi-layered defense-in-depth security measures to protect member data:

  • Row-Level Security (RLS): Strict database-level policies ensure that raw contact details and profiles are inaccessible to unauthenticated or unauthorized users.
  • Privacy Masking & Quotas: Mobile numbers, WhatsApp numbers, email addresses, and dates of birth can be hidden by users. Contact reveals are rate-limited and logged.
  • Encryption in Transit: All data transferred between client applications and our servers is encrypted using modern TLS 1.3 / SSL protocols with certificate pinning.
  • Screen Protection: Hardware-level screenshot and screen-recording prevention (FLAG_SECURE) is enforced on Android devices to protect member privacy.
  • Encrypted Keystore: Authentication tokens are stored in hardware-backed secure storage on mobile devices.

4. Account and Data Deletion Policy

In full compliance with Google Play Store User Data policies, users have full control over their personal data:

  • Instant In-App Deletion: You can permanently delete your account at any time by navigating to Profile → Delete Account in the mobile application. This action executes immediately.
  • Immediate Data Purge: Confirming deletion immediately and permanently removes your profile, employment records, family details, uploaded photos, chat messages, forum content, push tokens, and authentication credentials.
  • Web Deletion Request Portal: Unauthenticated users or those unable to access the app can submit a deletion request via our public web portal at https://www.asged.in/delete-account, which is verified and processed within 30 days.

5. Non-Disclosure & Third-Party Protection

Your privacy is our utmost priority:

  • Zero Commercial Sale: We NEVER sell, rent, monetize, or share member personal data with commercial advertisers, data brokers, or third-party marketers.
  • No Third-Party Ad Networks: The application contains zero third-party advertising SDKs or tracking networks.
  • No Public Scraping: Unauthenticated public visitors cannot view or search individual member contact details.

6. Cookies & Web Storage

Usage of storage technologies on our website and apps:

  • Essential Cookies Only: We only use strictly essential cookies and local storage items required for user authentication, security session binding, and language selection.
  • No Advertising Cookies: We do not use third-party analytics trackers, advertising cookies, or cross-site tracking pixels.