Legal

Privacy Policy

Last updated: August 11, 2026

This page describes how Pipexi handles personal information across our web and mobile products. Please read it carefully. By using Pipexi, you acknowledge the practices described here.

1. Who we are

Pipexi (“Pipexi”, “we”, “us”, or “our”) provides workforce and operations software that helps organizations schedule shifts, track attendance, assign tasks, and communicate with team members.

This Privacy Policy explains how we collect, use, share, and protect personal information when you use the Pipexi websites, web application, and mobile applications (together, the “Services”).

If you use Pipexi through an employer or organization account, that organization may be the primary controller of workplace data entered into its workspace. In those cases we process data on their behalf as a service provider, and this Policy describes our role as well.

2. Scope

This Policy applies to visitors, account holders, organization owners/admins, and invited team members who access Pipexi.

It does not cover third-party websites, services, or apps that we do not control, even if they are linked from Pipexi.

3. Information we collect

Account and profile information: name, email address, phone number (if provided), password or authentication tokens, profile photo, and role within an organization.

Organization and workplace data: organization name, locations, teams, positions, schedules, shifts, time entries, day-off records, tasks, forms, announcements, and related operational content.

Communications content: messages, chat conversations, announcements, and notifications you send or receive inside Pipexi.

Location data: when you grant permission, approximate or precise location used for workplace location setup and clock-in/out or geofence verification.

NFC / device presence data: when you grant permission and a location uses NFC verification, tag identifiers scanned for attendance or location linking.

Device and technical data: device type, operating system, app version, push notification tokens, IP address, browser type, language, and diagnostic or crash logs needed to operate and secure the Services.

Authentication provider data: if you sign in with Apple, Google, or similar providers, we receive limited profile details those providers share with us (such as name and email), subject to your choices with that provider.

Marketing preferences: whether you opted in to product updates, tips, or offers.

4. How we use information

Provide, operate, and maintain the Services, including authentication, scheduling, attendance, tasks, messaging, and reporting.

Set up and manage organizations, locations, teams, roles, and member access.

Send transactional messages such as login codes, invites, security alerts, and product notices required to run your account.

Send optional marketing communications when you have consented; you can unsubscribe at any time.

Improve reliability, performance, and user experience, including troubleshooting and analytics that help us understand feature usage at an aggregate level.

Detect, prevent, and respond to fraud, abuse, security incidents, and violations of our terms or policies.

Comply with legal obligations and enforce our agreements.

5. Location and NFC

Location and NFC permissions are optional at the device level, but may be required for certain workplace features (for example, creating a map-based location or verifying clock-in at a site).

We use location data to help confirm that attendance actions occur near an authorized workplace, and to help organization admins configure location boundaries.

We use NFC scans only when a location is configured for NFC verification and you choose to scan a tag.

You can revoke location or NFC permissions in your device settings at any time. Doing so may limit attendance or location features.

7. How we share information

Within your organization: owners, admins, and authorized members may see information according to roles and permissions configured in the workspace.

Service providers: we use trusted processors for hosting, databases, authentication, email delivery, push notifications, analytics, and similar infrastructure. They may process personal data only to provide services to us and under appropriate contractual safeguards.

Authentication providers: Apple, Google, or other sign-in providers process authentication according to their own policies when you choose those options.

Legal and safety: we may disclose information if required by law, legal process, or to protect the rights, safety, and security of Pipexi, our users, or the public.

Business transfers: if we are involved in a merger, acquisition, financing, or sale of assets, personal data may be transferred as part of that transaction, subject to appropriate protections.

We do not sell your personal information.

8. Retention

We retain personal data for as long as needed to provide the Services, fulfill the purposes described in this Policy, meet legal/accounting requirements, and resolve disputes.

Organization-controlled workplace content may be retained until the organization deletes it or closes its account, subject to backup and legal retention needs.

When data is no longer required, we delete or anonymize it in accordance with our retention practices.

9. Security

We implement technical and organizational measures designed to protect personal data against unauthorized access, alteration, disclosure, or destruction. These include access controls, encryption in transit, and monitoring.

For more detail on our security practices, see our Security page.

No method of transmission or storage is completely secure. You are responsible for keeping your credentials confidential and using device security features available to you.

10. Your rights and choices

Depending on where you live, you may have rights to access, correct, delete, or export personal data; object to or restrict certain processing; and withdraw consent where processing is based on consent.

You can update many profile details directly in the app or web Settings. For organization-managed data, you may need to contact your organization admin.

To exercise privacy rights or ask questions about this Policy, email us at privacy@pipexi.com. We may need to verify your identity before responding.

You may also have the right to lodge a complaint with a supervisory authority in your country of residence.

11. Children’s privacy

Pipexi is designed for workplace use and is not directed to children under 16 (or the minimum age required in your jurisdiction). We do not knowingly collect personal information from children. If you believe a child has provided us personal data, contact us and we will take appropriate steps to delete it.

12. International transfers

We may process and store information in countries other than where you live. When we transfer personal data internationally, we use appropriate safeguards required by applicable law, such as contractual protections with our service providers.

13. Changes to this Policy

We may update this Privacy Policy from time to time. We will post the updated version on this page and revise the “Last updated” date. If changes are material, we may provide additional notice through the Services or by email where appropriate.

Continued use of the Services after an update means you acknowledge the revised Policy, to the extent permitted by law.

14. Contact us

If you have questions about this Privacy Policy or our data practices, contact us at privacy@pipexi.com.

If you are contacting us about data held in an employer workspace, please also notify your organization administrator so they can help fulfill requests they control.