The short version
- The Task Manager is a tool for workplaces. Your employer creates your account — there is no public sign-up.
- We store your work details (name, work email, role) and the work itself (projects, tasks, comments, ratings).
- We do not use your location, camera, microphone or contacts. The app requests internet access and nothing else.
- There are no ads, no analytics trackers and no third-party AI services, and we never sell your information.
- Your employer's administrators can see your work and can delete your account. You can also ask us directly — see section 12.
1. About this policy
The Task Manager is a workplace task and project management tool. Organisations use it so their administrators and staff can create projects, assign tasks, record progress and comments, and review team workload and performance.
This policy describes the app's actual behaviour — what it collects, why, who can see it, and the choices you have. It covers both the mobile app and the web admin panel.
2. An app for employers
Accounts are not self-registered. There is no public sign-up. Your account exists because an administrator at your organisation created it and linked it to that organisation.
That splits responsibility in an important way:
- Your organisation decides what is recorded about you, who may see it, how you are rated, and how long records are kept. For that information, your organisation is the data controller.
- We provide and host the software and process that information on your organisation's behalf and under their instructions, acting as the processor.
So if you want your information corrected or removed, the fastest route is your own administrator — they control the records. You can also contact us directly; see section 10.
3. Information we collect
Everything below is either entered by you, entered by an administrator at your organisation, or generated by the system as you use it. We do not buy information about you and we do not obtain it from data brokers.
| Category | What it includes | Why we hold it |
|---|---|---|
| Account & identity | Your name, work email address, password, job designation, department, role (super admin, admin or employee), and the organisation(s) your account belongs to. A profile photo can be added through the web admin panel. | To create your account, sign you in, and show the right information to the right people. |
| Work you create | Projects (name, client name, description, start and due dates, progress, status), tasks (title, description, dates, priority, status, category), and the remarks and comments you post on them. | This is the core function of the product — it is the work being managed. |
| Performance information | Workload and performance figures calculated from your tasks, plus ratings and written rating remarks recorded about you by an administrator or manager. | To produce the team reports and performance screens your organisation uses. |
| Notifications | In-app notification records (title, message, type, read or unread) about tasks and projects relevant to you. | To tell you when something assigned to you changes. |
| Security & activity logs | An audit trail of significant actions, recording your name, the action, the module involved, the date and time, and the IP address the request came from. We also store hashed session refresh tokens and their expiry. | To keep accounts secure, keep you signed in safely, and let administrators trace who changed what. |
| Technical error logs | Server-side error messages written when something fails, which may incidentally include technical details of the request that failed. | To diagnose and fix faults. |
Please keep personal details out of free-text fields
Task descriptions, project descriptions and remark boxes are free text. Whatever is typed there is stored as written and is visible to others in your organisation with access to that task or project. Please do not enter sensitive personal information — such as health details, government identity numbers or financial account details — into those fields.
4. What we do not collect
We have deliberately kept the app's footprint small. It requests a single Android permission, INTERNET, needed to reach our server, and it declares no permission-gated data access on iOS.
The app does not collect, access or transmit any of the following:
- Your location, at any level of precision
- Your camera, photo library, microphone or audio recordings
- Your contacts, calendar, call logs, SMS messages or installed-app list
- Files or documents stored on your device
- Advertising identifiers — there is no advertising or ad targeting of any kind
- Third-party analytics, behavioural tracking or crash-reporting components
- Biometric information
- Payment card or bank details — the app processes no payments
What is stored on your device
Your signed-in session is held in the app's memory only while it is running. The app does not write your account details or work data into long-term storage on the device, so closing the app clears the session and you sign in again next time.
5. The quick-add feature
The app can suggest a task or project from an instruction written in plain language. Because this feature is sometimes described as “voice” or “AI”, here is exactly what it does:
- No audio is recorded. The feature accepts typed text. The app has no microphone permission and contains no speech-recognition component, so it cannot and does not listen to you.
- Suggestions are produced on your device. Your text is matched locally, inside the app, against the project and employee names already loaded into it.
- Nothing is sent to an external AI provider. We do not transmit your text, tasks, remarks or any other content to any third-party artificial-intelligence or machine-learning service, and we do not use your content to train any AI model.
If you accept a suggestion, the resulting task or project is saved to our server in the normal way described in section 3 — exactly as if you had typed it into the form yourself.
6. How we use information
We use the information in section 3 only to:
- operate the service — authenticate you and show your projects, tasks and notifications;
- let administrators and managers manage teams, assign work and view reports;
- generate the workload, performance and rating views your organisation has chosen to use;
- keep the service secure, investigate suspected misuse and maintain the audit trail;
- diagnose faults and improve reliability;
- meet legal or regulatory obligations that apply to us.
We do not sell your personal information. We do not share it with advertisers, data brokers or marketing networks, we do not use it for advertising, and we do not use it to make automated decisions that have legal consequences for you.
7. Who can see it
Inside your organisation
The Task Manager is a shared workspace. Depending on their role, other people in your organisation can see your name, designation, department, profile photo, the tasks and projects you are attached to, the remarks you write, and your workload, performance and rating information. Administrators and super administrators have the broadest visibility, including the audit trail.
Outside your organisation
We share information outside your organisation only in these limited situations:
- Hosting. The service runs on servers operated by our hosting provider, which stores the data on our behalf and does not use it for its own purposes.
- Google Fonts. The mobile app downloads the “Inter” typeface from Google's font servers the first time it is needed. That request necessarily reveals your device's IP address to Google and is governed by Google's Privacy Policy. No account details, tasks or other content are included in it.
- Legal requirement. Where we are legally obliged to disclose information in response to a valid, binding request from a court or authority.
- Business transfer. If the service is transferred to another operator, information may transfer with it. We will notify affected organisations beforehand.
The store you install the app from (Google Play or the Apple App Store) handles your download and platform account separately, under its own privacy policy. We never receive your Play or Apple account credentials.
8. How we protect it
- All traffic between the app and our server is encrypted in transit using HTTPS/TLS.
- Passwords are stored only as bcrypt hashes. They are never stored in readable form, and we cannot recover or tell you your password.
- Signed-in sessions use short-lived access tokens; longer-lived refresh tokens are stored hashed and expire automatically.
- Access is restricted by role, so people see only what their role permits.
- Administrative actions are recorded in the audit trail described in section 3.
- The web admin panel includes protection against cross-site request forgery.
No system can be guaranteed completely secure. If we become aware of a breach affecting your personal information, we will notify the affected organisation and any regulator, as applicable law requires.
9. How long we keep it
We keep information for as long as your organisation maintains its account with us, and for as long as needed for the purposes in section 6. Security and audit logs, including IP addresses, are kept only as long as they remain useful for security and accountability.
How deletion works in practice. When a company, employee, project, task or notification is deleted through the app or admin panel, the record is marked as deleted and hidden from the interface but retained in our database, so related work history and the audit trail stay intact. If you want records permanently and irreversibly erased, ask for permanent erasure using section 12. After an organisation closes its account, remaining data is deleted or anonymised, unless we are required by law to keep it longer.
10. Your rights and deletion
Subject to applicable law, you may ask to:
- Access the personal information we hold about you;
- Correct information that is inaccurate or incomplete;
- Delete your account and associated personal information;
- Object to or restrict certain processing;
- Receive a copy of the information you provided, in a portable format;
- Withdraw consent where our processing relies on consent;
- Complain to your local data-protection authority.
Deleting your account and data
There are two routes, and the first is usually faster:
- Ask your organisation's administrator. Because your employer controls your account, an administrator can remove your account and records directly in the admin panel.
- Write to us using section 12, from your registered work email address, with the subject “Data deletion request”. We will verify your identity, forward the request to your organisation where they are the controller, and respond within a reasonable period. Say if you want permanent erasure rather than the standard hidden-record deletion described in section 9.
We may keep a minimal record of the request itself, and anything we are legally required to retain.
11. Children
The Task Manager is a workplace tool intended solely for employees and contractors of an organisation. It is not directed to children, it has no public sign-up, and we do not knowingly collect information from anyone under 18. If you believe a child's information has been entered into the service, tell us and we will remove it.
12. Requests and questions
For any privacy question, or to exercise the rights in section 10, email privacy@thetaskmanager.co.in from your registered work email address. Please describe your request clearly so we can act on it.
If your request concerns records your employer controls, we will pass it to your organisation's administrators and confirm that we have done so.
13. Changes to this policy
We may update this policy as the product changes or the law requires. The “Last updated” date at the top will change, and this page always shows the current version at its published address. Where a change materially affects how we handle personal information, we will notify the organisations that use the service. Continuing to use The Task Manager after an update means you accept the revised policy.