Skip to content

Legal

Privacy policy

What we collect, why we collect it, and what we do not do with it. Written to be read rather than to be survived.

Last updated: 25 September 2026

Two different things this covers

This policy covers two separate situations. The first is this website, where you might send us an enquiry. The second is AMS, the software we operate for client companies, where we hold employee data on that company's behalf.

In the first case we are the data controller. In the second, the client company is the controller and we are the processor — we hold and process their employees' data under their instructions, and we do not decide what it is used for.

What this website collects

If you fill in a form on this site, we receive what you typed: your name, email address, and optionally your phone number, company name and approximate headcount, along with your message. We also record the time of the submission, your IP address and your browser's user-agent string, which we use to stop automated spam.

We use that information to reply to you and, if you become a client, to set up your account. We do not add you to a mailing list, we do not run you through a sales-automation sequence, and we do not sell or share your details with anyone for their own marketing.

This site sets no advertising or tracking cookies. There is no Facebook pixel, no advertising network and no cross-site profiling.

What AMS holds, for client companies

AMS holds the data a client company needs in order to run attendance and leave: employee names, employee IDs, email addresses where they exist, phone numbers, dates of birth and joining, departments, roles, shifts, attendance records, leave records and balances, and an audit trail of changes made to any of those.

Each client company is isolated in its own tenant. Every request is scoped to the company on its authentication token, and every database query is filtered by that company server-side. One client cannot read another client's data.

Passwords are stored only as bcrypt hashes; we cannot read them, and neither can a client's administrator. Refresh tokens are stored hashed. Password reset and invite links are single-use and expire.

Where the data lives

AMS runs on infrastructure we administer ourselves, with data stored in PostgreSQL and backed up nightly. We do not pass client data to third-party analytics, advertising or AI services.

Two third parties are involved in operating the service: our email provider, which delivers invitations, password resets and notifications (and therefore sees the recipient's address and the message), and our error-monitoring provider, which receives diagnostic information when something goes wrong. Neither receives attendance or leave records as a matter of course.

How long we keep it

Website enquiries are kept for as long as they might reasonably lead somewhere, and in any case no longer than three years, after which they are deleted.

Client data inside AMS is kept for as long as that company is a client, plus a short wind-down period after the contract ends so that an export can be produced. Employees who leave a client company are deactivated rather than deleted, because their historical attendance record is part of the company's payroll evidence — but the client can ask us to delete it.

Your rights

You can ask us what we hold about you, ask for it to be corrected, or ask for it to be deleted. Write to support@versnq.in and we will respond within thirty days.

If you are an employee of a company that uses AMS, your request should normally go to your own employer, because the data is theirs and they decide what happens to it. If you contact us directly we will pass the request to them and tell you that we have done so.

Breach notification

If we become aware of a breach affecting a client's data, we will tell that client without undue delay, along with what we know, what we have done, and what they need to do. We will not wait until the picture is complete before telling them something has happened.

Changes to this policy

If this policy changes materially, we will update the date at the top and, where the change affects current clients, tell them directly rather than relying on them re-reading this page.

Contact

Versnq, India. Questions about this policy: support@versnq.in.