1. Who operates GIO
GIO is operated by Rahmonov Mirzobek (referred to as “GIO,” “we,” “us,” or “our” in this policy).
For privacy questions or requests, email rakhmonovmirzobek@gmail.com.
2. Information GIO processes
- Account and identity data: name, email address, phone number, account identifier, role, employee identifier, organization membership, and invitation or authentication status.
- Organization and workforce data: organization details, office location and boundary, employees, schedules, attendance records, work hours, leave or schedule requests, penalties, adjustments, reasons, notes, decisions, and related timestamps.
- Health-related request data: an employee may voluntarily choose a health-related reason when requesting leave or a schedule change. GIO does not collect medical records, diagnoses, treatment information, or fitness data.
- Workforce adjustment data: proposed or approved bonus and penalty amounts can be associated with an employee. GIO does not hold payment-card or bank-account details and does not automatically deduct money from an employee's salary.
- Location and attendance evidence: precise device location, location accuracy, time, office-boundary result, and related geofence or attendance-event information when a location-based attendance feature is used.
- Device, crash, and technical data: trusted-device identifiers, push-notification tokens, app and platform information, permission and sync status, security signals, crash or application-not-responding reports, error type, stack trace, app version, operating-system version, device model, and diagnostic information needed to operate and protect the service. Our infrastructure providers may also process IP address and network information.
- Support communications: the contents of messages and the contact details you provide when asking for help or reporting a problem.
3. How location works
Location is used to confirm whether an attendance event occurred within the office boundary. Employees may choose manual attendance or opt in to automatic attendance.
If automatic attendance is enabled and the required device permission is granted, GIO may access location in the background, including when the app is closed or not actively in use, to detect office arrivals and departures. GIO stores attendance-event evidence rather than a continuous movement history. Location is not used for advertising.
4. Why GIO uses information
- To create and authenticate accounts and trusted devices.
- To provide schedules, attendance, requests, workforce adjustments, reports, and notifications.
- To confirm manual or automatic attendance and investigate attendance issues.
- To keep the service secure, prevent misuse, diagnose failures, and maintain reliability.
- To answer support requests and communicate service-related information.
- To comply with applicable legal obligations and enforce service rules.
5. Who can receive information
- Your organization: an organization owner and authorized administrators can access workforce records for that organization. Employees can access information made available for their own account and role.
- Infrastructure providers: Google Firebase and Google Cloud support authentication, database storage, server functions, app-integrity checks, push notifications, and Firebase Crashlytics reliability reporting.
- Map and address providers: Google Maps Platform and geocoding services process map, coordinate, and address requests used by office-location features.
- SMS provider: Eskiz may process a phone number and verification-message information when SMS verification is used.
- Legal and safety disclosures: information may be disclosed when reasonably necessary to comply with law, protect users, investigate abuse, or defend legal rights.
Service providers are permitted to process data only for the services they provide to GIO and must protect it under their applicable terms. GIO does not sell personal information, serve third-party advertising, or use personal information for cross-app tracking.
Crash reporting is enabled only in production mobile builds. GIO does not add an account, employee, or organization identifier to Crashlytics reports, and uncaught Dart error messages are reduced to the error type before reporting. Stack traces and native crash diagnostics remain available so GIO can identify and fix reliability problems. GIO does not enable Google Analytics or use crash data for advertising or behavioral analytics.
Providers may process information in countries other than the one where a user lives, subject to their contractual safeguards and applicable law.
6. Retention and deletion
You can permanently delete an account inside GIO from Profile > Account > Delete account. If you cannot access the app, follow the account deletion instructions.
Deletion begins immediately and active account data is deleted within 7 days. An employee deletion removes that employee’s account and associated data. An owner deletion removes the organization, every account in it, and all associated organization data.
GIO retains account and workforce information only while it is reasonably needed to provide the service, maintain the organization’s employment records, protect the service, resolve disputes, and meet legal obligations. The retention period depends on the type of record, the organization’s continued use of GIO, and applicable requirements.
To request access, correction, or deletion, email rakhmonovmirzobek@gmail.com from the address connected to your account when possible. Include your account email or phone number and organization name, but never send a password or one-time verification code. We may need to verify the request.
After a verified deletion request, personal data associated with the account will be deleted or de-identified unless specific information must be retained for security, legal, fraud-prevention, dispute, or legitimate organization recordkeeping reasons. If an employee record is controlled by the employee’s organization, we may coordinate the request with that organization and explain any information that must remain.
7. Security
GIO uses access controls, authenticated requests, encrypted network connections, device security features, and service monitoring intended to protect personal information. No storage or transmission method is completely secure, so absolute security cannot be guaranteed.
8. Your choices
- You can decline or revoke location and notification permissions in device settings. Automatic attendance will not work without its required location permission, but manual attendance remains available.
- You can change notification categories and app-lock settings in GIO.
- You can ask to access, correct, or delete personal information by using the contact above. Your organization may also be able to correct workforce records.
9. Children
GIO is a workplace service and is not directed to children. It should be used only by people authorized by a participating organization and legally permitted to use workplace software in their location.
10. Changes and contact
We may update this policy when GIO’s features, providers, or legal obligations change. The latest version will remain available at this URL with its effective date.
Questions can be sent to rakhmonovmirzobek@gmail.com. You can also visit the GIO Support page.