FajrMate Privacy Policy
This policy explains how FajrMate collects, uses, protects and deletes information when you use the FajrMate Android alarm app, your FajrMate app account, a Wake Up Tag/Camera Key, or the FajrMate website and store.
Who controls your information
FajrMate is the controller of the personal information described here. Privacy questions and requests can be sent to support@fajrmate.com.
Information we collect
- App account: name, email address, phone number, password hash, account status and sign-in timestamps.
- Device and security: random installation identifier hashes, device fingerprint hashes, device name, Android/app version, IP address, session-token hashes and last activity. We do not store your plaintext password or authentication token.
- Wake-up Key: tag reference, dictionary-pack/marker reference, optional NFC identifier, activation status, account and registered-device bindings, device limit and verification timestamps. The app keeps alarm-critical entitlement data privately on your phone for offline dismissal.
- Store and support: order, delivery, payment status, product, invoice, customer-support and communication details. Payment card or UPI credentials are handled by the payment provider and are not stored by FajrMate.
- Technical records: security, manufacturing, activation, payment-webhook and administrative audit events needed to prevent fraud, diagnose failures and protect tags and orders.
How we use information
We use information to create and secure accounts, register devices, activate and verify Wake-up Keys, keep family-device limits accurate, fulfil and track orders, process payments and refunds, send service messages, provide support, prevent abuse, maintain reliable offline alarm dismissal, comply with law and improve the service.
Android permissions and local data
The app may use alarms/notifications, camera access for Camera Key scanning and NFC when your phone supports it. Alarm schedules and cached Wake-up Key entitlement are stored locally so alarms can ring and be dismissed offline. Account logout, suspension or a server-side deletion request does not remotely cancel an alarm already stored on your phone. You can remove remaining local data by clearing app storage or uninstalling the app.
Sharing and processors
We do not sell personal information and do not use it for third-party behavioural advertising. We share only what is necessary with service providers acting for us, such as Hostinger for hosting/database infrastructure, email providers, Razorpay or Cashfree for payment processing, courier/logistics providers for delivery, support/communications providers when enabled, and Google Play for app distribution. We may disclose information when required by law, to protect users and the service, or during a lawful business transfer with appropriate safeguards.
Retention
- App account and active device/Key bindings are kept while the account is active and removed when an approved permanent deletion is completed.
- Authentication sessions normally expire after 90 days. A specifically designated Play review account may use a non-expiring review session until the review access is revoked.
- Password-recovery records expire after one hour and are replaced or deleted when no longer needed.
- Orders, invoices, payments, refunds and shipping records are retained for the period required by tax, accounting, consumer-protection and fraud-prevention law. Direct account identifiers are removed from the app-account system, while legally required commerce records may remain.
- Minimal, non-reversible deletion references and security/manufacturing audit records may be retained for up to seven years, or longer only when law or an active dispute requires it. Retained records are restricted and are not used to recreate a deleted account.
Security
We use HTTPS, password hashing, one-way token/device hashes, encrypted activation-code storage, access controls, rate limits, transactional database operations, signed/checksummed marker packs and audit records. No system is completely risk-free; please use a unique password and contact us if you suspect misuse.
Your choices and rights
Subject to applicable law, you may request access, correction, deletion, restriction or a copy of your personal information, and may object to certain processing. You can remove registered devices inside the app. You can request permanent app-account deletion in the app or at fajrmate.com/delete-account. We may verify identity before acting and may retain only information that law requires us to keep.
Children
FajrMate is not directed to children under 13 and we do not knowingly create accounts for them. A parent or guardian who believes a child provided information should contact us.
International processing
Service providers may process information outside your state or country. Where required, we use contractual and technical safeguards for such processing.
Changes
We may update this policy as FajrMate changes. The current version and effective date will always be available at this URL. Material changes will be communicated where required.