PLETOX / PRIVACY POLICY
Privacy policy
How information is handled across the Pletox website, people and work platform, and related mobile applications.
Privacy depends on context. Website and subscription contacts are different from employee, applicant, client, and work records managed by your organisation. This policy explains those uses, the role of your organisation, and how to make a privacy request.
Who we are & scope
Pletox Technologies Pvt. Ltd. ("Pletox", "we", "us") provides an HR, payroll, and work platform. This policy describes personal information handled through our website, subscriptions, product modules, and related support. Modules include people records, attendance, leave, payroll, tasks and projects, hiring, self-service, visits, assets, location features, sales, and expenses.
Mobile applications, public job portals, and particular features may have additional notices or contractual data-processing terms. Read those notices alongside this policy, including the separate Pletox Geo notice where applicable. Independent third-party platforms have their own privacy practices.
Our role & your organisation
For website enquiries, subscription administration, business contacts, and support correspondence, Pletox determines how information is used to manage those interactions. For records entered into an organisation workspace, the organisation generally determines the purposes, authorised users, policies, and retention instructions; Pletox processes those records on its behalf under the applicable agreement.
Where we process records on a customer's behalf, the applicable agreement and documented instructions define that processing. Employees, applicants, and client contacts seeking changes to organisation-managed records should normally contact that organisation first. We can help route a request where appropriate.
Information we receive
The information involved depends on how you interact with us, which modules are enabled, and the records your organisation chooses to collect:
- Enquiries and contacts: name, work email, phone number, company, message, and relevant enquiry or referral context.
- Account, subscription, and support information: user and organisation identifiers, contact and billing details, correspondence, diagnostic details, and authorised samples supplied for support.
- HR and payroll records: employee identifiers, employment details, joining documents, reporting relationships, attendance, shifts, leave, salary components, allowances, deductions, payslips, and payment details supplied within the agreed scope.
- Work and commercial records: task assignments and acceptance, project and client details, activity updates, comments, worklogs, visit records, leads, customer contacts, quotes, orders, invoices, and related approval history.
- Technical information: IP address, browser or device details, page interactions, timestamps, error logs, and identifiers used by website or application technologies.
- Hiring and onboarding records: candidate contact details, applications, resumes, interview notes, selection status, and joining information supplied through enabled recruitment workflows.
- Expense and asset records: claims, receipts, approval and payment status, asset assignments, acknowledgements, and return records that identify an employee or reviewer.
Why information is used
Information is used in the context in which it is collected or supplied, including:
- Responding to enquiries, discussing requirements, preparing proposals, and managing business relationships.
- Providing subscribed modules, setting up workspaces, migrating authorised records, and delivering agreed integrations, training, and support.
- Operating employee and applicant workflows, accounts, task and project coordination, payroll processing, notifications, and customer-authorised integrations.
- Investigating errors, preventing misuse, protecting access, and maintaining operational records.
- Understanding website usage and marketing performance through the tools described below.
- Meeting applicable legal obligations, managing billing and records, and resolving disputes.
Collection & permissions
Providing optional enquiry details is your choice. If information needed to answer a request or deliver an agreed service is missing, we may be unable to complete that request. Do not submit information about others unless you are authorised to do so.
Collection and use must have the permission or other basis required by applicable law. Merely visiting this page is not blanket consent to every possible use of personal information. Where a feature requires consent or a device permission, that requirement is separate from this policy.
Customers are responsible for appropriate employee and user notices and lawful instructions for their deployments. Specific requirements depend on the data, purpose, jurisdiction, and service arrangement.
Website analytics & cookies
The Pletox website currently includes Google Analytics tags, Beam Analytics, and the Meta Pixel. These tools receive browser and usage signals to measure visits, interactions, or campaign performance. Depending on the provider, configuration, and browser, they may use cookies, identifiers, or similar technologies.
Session, security, and form technologies may also process technical information needed to operate the site or protect submissions. A spam-prevention challenge may be used on enquiry forms when enabled.
You can manage cookies and site permissions in your browser and use the privacy controls available from the relevant providers. Browser restrictions may affect functionality and do not necessarily block every network request. This policy does not itself enable a cookie preference centre or change which scripts load.
Mobile, devices & location
Enabled attendance and field workflows may involve clock-in timestamps, employee and device identifiers, photos, visit records, worklogs, and location information. Geofence checks, mobile clock-in, biometric-device feeds, and kiosk attendance have different data requirements; the data received depends on the enabled feature, integration, settings, permissions, and notices.
Location-enabled or live-tracking workflows require a clearly defined purpose and appropriate authorisation. Ask your organisation whether collection is point-in-time or includes background location, when it occurs, who can access it, and how long records are retained. Basic attendance location and the separately enabled Pletox Geo features are not the same; do not assume every workspace continuously tracks employees.
You can manage available location, camera, photo, and notification permissions in your device settings. Disabling a permission may prevent a dependent feature from working. A dedicated application notice, where provided, contains additional feature-specific information.
Applicants & public job portals
When you apply through an organisation's job portal, your application is submitted to that hiring organisation. Its authorised recruitment team may review the details, record interview activity, and manage selection or onboarding through Pletox.
Review the hiring organisation's notice before submitting an application. Contact it for questions about recruitment decisions, correction, or retention of your application. Do not include sensitive documents that were not requested for the stated purpose.
Storage, transfers & retention
Hosting locations and access arrangements depend on the deployment and providers used. Information may be processed in India or another country where the relevant customer or provider operates. This page does not promise India-only storage; any residency or transfer requirements must be specified and checked for the engagement.
Retention depends on the purpose, customer instructions, contractual obligations, legal requirements, and the records involved. Enquiry correspondence, business records, diagnostics, and backups may have different retention needs. Contact us to confirm the applicable arrangements rather than assuming one period applies to every service.
Deletion requests may be subject to required retention, identity checks, customer instructions, and backup or recovery processes. Where a record cannot immediately be removed, request clarification of the reason and applicable handling.
Security & safe sharing
Security responsibilities depend on the service and deployment. Access arrangements, permissions, transmission methods, backups, and operational controls should be addressed in the applicable agreement. No website or system can guarantee absolute security.
For enquiries or support, share the minimum necessary information and redact sensitive records. Never submit passwords, OTPs, API secrets, or complete payroll or financial exports through a general contact form. Agree an appropriate method with the team if additional evidence is required.
Report suspected unauthorised access to your organisation's administrator and contact hello@pletox.com with a concise description. Avoid including sensitive evidence in the initial message; ask how to provide it safely.
Your choices & requests
You can contact hello@pletox.com to ask about information relating to you, request access or correction, seek deletion where applicable, raise a privacy concern, or withdraw consent where processing relies on it. Applicable rights and any permitted exceptions depend on the governing law and circumstances.
Include enough context to identify the interaction or organisation, but do not send identity documents unless requested through an appropriate process. We may need to verify identity or authority and coordinate with the customer that controls the records.
For employee or other organisation-managed data, contact the relevant HR or system administrator first. You may also ask Pletox to help identify the appropriate contact. Opt out of promotional messages using any provided unsubscribe option or by emailing us; necessary service correspondence may still be required.
If a privacy concern remains unresolved, reply to the original thread requesting further review. This does not limit any complaint or remedy available to you under applicable law.
Children & education workflows
Our public website and business enquiry channels are intended for business contacts, not for children to submit their information independently. Please contact us if you believe a child has supplied personal information through these channels.
The education industry pages describe staff HR, payroll, and work management, not a general student-record service. If an organisation proposes processing children's information, it must first confirm that use is supported and establish the notices, permissions, and safeguards required by applicable law. A subscription is not blanket authorisation for that processing.
Updates & privacy contact
We may revise this policy as the platform and our practices change and will update the revision date. Additional notice or permission will be provided where required by applicable law or the relevant agreement.
For privacy questions or requests, contact Pletox Technologies Pvt. Ltd. at hello@pletox.com with the subject "Privacy request". Ask for the appropriate privacy contact or legal notice address if needed. Customer-specific processing terms and contacts may also appear in your service agreement.