Stafora HRMS Logo
GDPR & ISO 27001 COMPLIANT

Stafora Privacy Policy

Your privacy is our utmost priority. Learn how Stafora HRMS collects, uses, protects, and respects your personal and corporate employee data.

Last Updated: August 1, 2026
Contact Legal Team

1. Introduction & Overview

Welcome to Stafora HRMS ("Stafora", "we", "us", or "our"). We are dedicated to maintaining the trust and confidence of our enterprise clients, job candidates, and platform visitors.

This Privacy Policy outlines how we collect, process, store, and protect information when you utilize our Human Resource Management System (HRMS) software, websites, mobile applications, and connected enterprise APIs.

Data Controller vs Data Processor:

When employer organizations use Stafora HRMS to manage employee payroll, attendance, and records, the employer acts as the Data Controller, and Stafora acts as the Data Processor under applicable global data protection laws.

2. Information We Collect

To provide comprehensive HR automation, attendance tracking, and payroll processing, Stafora collects several categories of information:

  • Employee Profile & Identity Data: Full name, employee ID, government identification numbers (passport, national ID, SSN/tax identification), job titles, department, and employment history.
  • Financial & Compensation Data: Bank account details, salary structure, tax withholdings, expense reimbursements, bonus records, and payslips.
  • Attendance & Geolocation Data: Clock-in/clock-out timestamps, shift logs, leave applications, and voluntary GPS punch-in coordinates for remote or field workforces.
  • Technical & System Usage Data: IP addresses, browser types, device identifiers, login timestamps, and system performance telemetry logs.

3. How We Use Your Data

We process collected data exclusively for legitimate operational business purposes, including:

HR & Payroll Operations

Executing accurate salary disbursements, tax calculations, and statutory labor reporting.

Workforce Management

Managing shift rosters, leave requests, performance evaluations, and internal communications.

System Security & Audit

Detecting unauthorized access, ensuring platform stability, and retaining audit logs for compliance.

Customer Support

Resolving technical tickets, platform bugs, and assisting HR administrators with software setup.

4. Data Sharing & Third Parties

Stafora does NEVER sell, rent, or monetize personal employee or corporate data to third-party advertisers or data brokers.

We only share data with vetted sub-processors essential for service delivery:

  • Enterprise Cloud Infrastructure (AWS & Azure ISO-certified data centers)
  • Banking Payment Gateway APIs for automated direct salary deposit execution
  • Statutory tax portal integrations mandated by local government authorities

5. Security & Data Retention

Stafora implements enterprise-grade technical and organizational safeguards:

256-Bit SSL/TLSEncryption in Transit
AES-256Encryption at Rest
MFA & RBACStrict Role Access

6. Your Rights & Privacy Choices

Under global privacy regulations (GDPR, CCPA, and regional labor laws), employees have rights to:

Right to Access & Export Personal Data
Right to Rectify Inaccurate Records
Right to Erasure ("Right to be Forgotten")
Right to Restrict Data Processing

7. Cookies & Tracking Technologies

Stafora uses essential session cookies to maintain secure authentication and user preferences. You can manage or disable cookie preferences directly in your browser settings.

8. Contact Our Privacy Team

We are here to help answer any data protection queries.

Global Data Protection OfficerEmail: admin@hexbeesoft.comResponse Time: Within 24 Hours
Bengaluru Office AddressNo 28, 11th A Cross, Esther Enclave LayoutBengaluru, Karnataka - 560043, India