QwickwaveQwickwave
Legal

Privacy Policy

Last updated: September 22, 2026

This Privacy Policy explains how Qwickwave (“Qwickwave,” “we,” “us,” or “our”) collects, uses, discloses, and safeguards information in connection with our software-as-a-service platform, including Lead Management, Field Service Management (FSM), and HRMS (together, the “Services”), our websites at qwickwave.com and its subdomains, and any related mobile or desktop applications.

This policy applies to two groups of people, and treats them differently: (1) the businesses that sign up for Qwickwave and the individual users they authorize (“Customers”), and (2) the individuals whose information a Customer stores in the Services — such as leads, clients, technicians, and employees (“Data Subjects”). Where a Customer uses the Services to collect and manage information about Data Subjects, the Customer is the controller of that data and Qwickwave acts as a data processor / service provider acting on the Customer’s instructions. This policy describes both our practices as a controller (for Customer account and billing data) and our commitments as a processor (for the data Customers store in the Services).

1. Information we collect

1.1 Information you provide to us

  • Account & company information: name, work email, phone number, password (hashed), company name, industry, country, and billing details when you register, start a trial, or purchase a plan.
  • Payment information: when you subscribe to a paid plan, payment is processed by our payment processor (Stripe). We receive confirmation of payment and limited billing metadata (such as the last four digits of a card and expiry) — we do not store full card numbers on our own servers.
  • Support & communications: information you provide when you contact support, request a demo, or otherwise communicate with us, including the content of that communication.

1.2 Information Customers store in the Services (Customer Data)

When a Customer uses the Services, its authorized users may input, upload, or connect data including:

  • Lead & contact data(Lead Management): names, phone numbers, email addresses, WhatsApp messages, inquiry details, and deal history for the Customer’s prospects and clients.
  • Field service data (FSM): customer job addresses, technician locations and schedules, job notes, invoices, and payment status.
  • Employee & HR data (HRMS): names, contact details, government identification numbers (where applicable and permitted under local law), bank details for payroll, salary and compensation records, leave and performance records, and documents uploaded during onboarding or offboarding.

We process this Customer Data only on the Customer’s behalf and according to their instructions (typically expressed through their configuration and use of the Services), and not for our own independent purposes.

1.3 Information collected automatically

  • Usage data: pages visited, features used, timestamps, device type, browser type, and approximate location derived from IP address.
  • Cookies & similar technologies: used on our marketing website and product to keep you signed in, remember preferences (such as currency and language), and understand aggregate usage. See Section 7.
  • Device & log data: IP address, operating system, and crash or error logs, used to secure and troubleshoot the Services.

2. How we use information

  • To provide, maintain, and improve the Services the Customer has subscribed to.
  • To process transactions, manage subscriptions, calculate usage-based billing, and send related invoices or receipts.
  • To send transactional communications: account verification, password resets, candidate onboarding invitations, payslip delivery, invoice delivery, and similar product notifications, delivered via our email provider (Resend) and, where a Customer has connected it, WhatsApp.
  • To provide customer support and respond to inquiries.
  • To monitor, detect, and prevent fraud, abuse, and security incidents, including enforcing seat and usage limits tied to a Customer’s subscription tier.
  • To comply with legal obligations and enforce our Terms of Service.
  • With consent or a legitimate business reason, to send marketing communications about product updates — you can opt out of these at any time.

We do not sell personal information, and we do not use Customer Data (leads, employee records, job data, etc.) to train third-party advertising products or to market to Data Subjects on our own behalf.

3. How we share information

We share information with the following categories of recipients:

  • Sub-processors / infrastructure providers who process data on our behalf under contract, including: Google Cloud Platform / Firebase (application hosting, database, authentication, and file storage), Stripe (payment processing), Resend (transactional email delivery), and Meta / WhatsApp Business Platform (for Customers who enable WhatsApp messaging features).
  • Integrations you enable:if a Customer connects a third-party integration (for example, IndiaMART, a Zapier-style webhook, or a biometric attendance device), data flows to and from that third party according to the Customer’s own configuration. Qwickwave is not responsible for that third party’s own privacy practices.
  • Legal & safety: where required to comply with law, a valid legal process, or to protect the rights, property, or safety of Qwickwave, our Customers, or others.
  • Business transfers: in connection with a merger, acquisition, or sale of assets, subject to this policy or a materially equivalent one.

4. International data storage & transfers

Qwickwave’s infrastructure is hosted on Google Cloud Platform / Firebase, which may store and process data in multiple regions. Where data is transferred across borders, we rely on our infrastructure and sub-processors’ own contractual and technical safeguards (such as standard contractual clauses, where applicable) to protect it. Customers operating in jurisdictions with data localization requirements are responsible for confirming that our hosting arrangement meets their obligations before storing regulated data in the Services.

5. Data retention

We retain Customer Data for as long as the Customer’s account is active, plus a limited period afterward to allow for account recovery, unless a shorter period is requested and technically feasible, or a longer period is required by law (for example, statutory retention periods for payroll and tax records under applicable employment law). Account and billing records are retained as required for accounting, tax, and audit purposes. Log and usage data is retained for a limited period for security and diagnostic purposes and then deleted or aggregated.

6. Security

We apply technical and organizational measures designed to protect information, including encryption of data in transit (HTTPS/TLS), role-based access control within the Services, per-tenant data isolation so one Customer cannot access another’s data, and restricted internal access to production systems. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.

7. Cookies

We use essential cookies required for authentication and core functionality, and limited functional cookies to remember preferences such as currency and language. Where required by law, we will request consent before setting non-essential cookies. You can control cookies through your browser settings, though disabling essential cookies may prevent parts of the Services from working.

8. Your rights

Depending on your location and applicable law (such as the GDPR, India’s Digital Personal Data Protection Act, or other regional privacy laws), you may have rights to access, correct, delete, or export your personal information, restrict or object to certain processing, and withdraw consent where processing is based on consent.

If you are a Data Subject whose information has been entered into the Services by a Customer (for example, as a lead, client, technician, or employee), please direct requests to that Customer first, as they control the data. If you are a Customer, you can exercise most of these rights directly within the product, or by contacting us at support@qwickwave.com.

9. Children’s privacy

The Services are intended for business use by adults and are not directed to children. We do not knowingly collect personal information from individuals under the age of 16. If we become aware that we have inadvertently collected such information, we will delete it.

10. Third-party links

The Services may contain links to third-party websites or services we do not control. This policy does not apply to those third parties, and we encourage you to review their respective privacy policies.

11. Changes to this policy

We may update this Privacy Policy from time to time. We will update the “Last updated” date above, and for material changes we will provide additional notice (such as an email to account administrators) where required by law.

12. Contact us

Questions, requests, or complaints about this policy or our data practices can be sent to support@qwickwave.com.