Privacy Policy

How we collect, use, protect, and manage your data with transparency and security at the forefront.

Privacy Policy

Last Updated: June 2025

This Privacy Policy explains how Oeta Technologies collects, uses, and protects your information when you use our fleet management services.

Data Controller Information

Company Name: Oeta Technologies Private Limited

CIN: U62011OD2024OPC045923

Data Protection Officer: Lipak Sahu

Email: lipak@oeta.io

Phone: +91 77955 05029

1. Information We Collect

1.1 Business Information

  • Company name, address, and contact details
  • Business registration information
  • Authorized personnel and administrator details
  • Billing and payment information

1.2 Vehicle Data

  • Vehicle registration numbers and specifications
  • GPS location data and routes
  • Fuel consumption and efficiency metrics
  • Maintenance records and schedules
  • Trip details including distance, time, and destinations
  • Vehicle readings and odometer data

1.3 Employee Data

  • Employee names, contact information, and roles
  • Attendance records and work hours
  • Location data during work hours (with consent)
  • Biometric data (processed locally on devices)
  • Payroll and salary information
  • Performance metrics related to work tasks

1.4 Technical Data

  • Device information and operating systems
  • IP addresses and browser types
  • Usage patterns and feature utilization
  • Error logs and system performance data
  • Images of weighbridge slips and documents for OCR processing

2. How We Use Your Information

2.1 Service Provision

  • Provide fleet management and tracking services
  • Process AI-powered trip scanning and OCR functionality
  • Generate reports and analytics
  • Calculate employee attendance and payroll
  • Send notifications and alerts
  • Provide customer support and troubleshooting

2.2 Service Improvement

  • Analyze usage patterns to improve features
  • Enhance AI algorithms and accuracy
  • Optimize system performance and reliability
  • Develop new features and capabilities

2.3 Legal and Compliance

  • Comply with legal obligations and regulations
  • Respond to legal requests and court orders
  • Protect against fraud and unauthorized access
  • Enforce our Terms of Service

3. Legal Basis for Processing

We process your data based on the following legal grounds:

  • Contract Performance: To provide the fleet management services you've subscribed to
  • Legitimate Interests: To improve our services and prevent fraud
  • Consent: For employee location tracking and biometric data processing
  • Legal Obligation: To comply with tax, labor, and data protection laws

4. Employee Privacy Rights

Important: Employee Consent Required

Employers must obtain proper consent from employees before using location tracking and biometric features. Employees have the right to understand how their data is being used.

4.1 Location Tracking

  • Location tracking only during authorized work hours
  • Clear notification when tracking is active
  • Option to disable tracking during breaks (where applicable)
  • Transparent purpose: work attendance and safety

4.2 Biometric Data

  • Biometric templates stored locally on employee devices
  • No central storage of raw biometric data
  • Used only for attendance verification
  • Employees can opt for alternative attendance methods

5. Data Sharing and Disclosure

We do not sell your personal data. We may share data in the following limited circumstances:

5.1 Service Providers

  • Cloud hosting providers (with appropriate security measures)
  • Payment processors for billing purposes
  • AI/OCR service providers (Google Vision API, OpenAI)
  • SMS/WhatsApp service providers for notifications

5.2 Legal Requirements

  • Government authorities when required by law
  • Law enforcement for legitimate investigations
  • Tax authorities for compliance purposes
  • Courts in response to legal proceedings

5.3 Business Transfers

In case of merger, acquisition, or sale of assets, your data may be transferred to the new entity with appropriate protections.

6. Data Security

We implement comprehensive security measures to protect your data:

6.1 Technical Safeguards

  • End-to-end encryption for data transmission
  • AES-256 encryption for data at rest
  • Multi-factor authentication for admin accounts
  • Regular security updates and patches
  • Secure API endpoints with rate limiting

6.2 Administrative Safeguards

  • Role-based access controls
  • Regular employee security training
  • Data access logging and monitoring
  • Incident response procedures
  • Regular security audits and assessments

6.3 Physical Safeguards

  • Secure data centers with 24/7 monitoring
  • Restricted physical access controls
  • Regular data backups in multiple locations
  • Disaster recovery and business continuity plans

7. Data Retention

We retain your data for the following periods:

Operational Data

  • Trip and vehicle data: 24 months
  • Employee attendance: 12 months
  • Fuel records: 24 months
  • Maintenance logs: 36 months

Account Data

  • Account information: Until deletion request
  • Billing records: 7 years (tax compliance)
  • Support tickets: 12 months
  • System logs: 6 months

Data Deletion: After account closure, we provide 30 days for data export, then permanently delete all personal data except where retention is required by law.

8. Your Rights

Under applicable data protection laws, you have the following rights:

Data Subject Rights

  • Access: Request copies of your personal data
  • Rectification: Correct inaccurate or incomplete data
  • Erasure: Request deletion of your personal data
  • Portability: Receive your data in a structured format

Processing Rights

  • Restriction: Limit how we process your data
  • Objection: Object to processing for certain purposes
  • Withdraw Consent: For consent-based processing
  • Complaint: Contact supervisory authorities

How to Exercise Your Rights: Contact us at lipak@oeta.io or +91 77955 05029. We respond to all requests within 30 days.

9. Cookies and Tracking Technologies

We use cookies and similar technologies for:

  • Essential Cookies: Required for basic website functionality
  • Performance Cookies: To analyze usage and improve our service
  • Authentication Cookies: To keep you logged in securely
  • Preference Cookies: To remember your settings and preferences

You can control cookies through your browser settings, but this may affect service functionality.

10. International Data Transfers

Your data may be processed in countries outside India, including:

  • Cloud hosting services (with appropriate safeguards)
  • AI processing services (Google, OpenAI) with data protection agreements
  • Support and development teams (under strict confidentiality agreements)

We ensure appropriate safeguards are in place for all international transfers, including adequacy decisions, standard contractual clauses, or other approved mechanisms.

11. Children's Privacy

Our services are not intended for individuals under 18 years of age. We do not knowingly collect personal information from children. If you become aware that a child has provided us with personal information, please contact us immediately.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by:

  • Email notification to registered users
  • Prominent notice on our website
  • In-app notifications
  • 30-day advance notice for material changes

Your continued use of the service after any changes indicates your acceptance of the updated Privacy Policy.

13. Contact Us

If you have any questions about this Privacy Policy, your data rights, or our privacy practices, please contact us:

General Contact

  • Email: lipak@oeta.io
  • Phone: +91 77955 05029
  • WhatsApp: +91 77955 05029
  • Website: https://oeta.io/contact

Data Protection Officer

  • Name: Lipak Sahu
  • Email: lipak@oeta.io
  • Response Time: 30 days maximum
  • Languages: English, Hindi, Odia