Privacy policy
Last updated: October 4, 2026
This policy explains how the Ekiplio mobile app and the ekiplio.online website process personal data. In short: your location is never tracked in the background or continuously, there are no ads and no tracking, and your data is not shared for marketing.
Controller and contact
For any privacy question or request: destek@ekiplio.online
What data we collect
We process only the data the service needs to work.
This website uses no cookies or analytics; the server keeps only the usual access log (IP address, time, requested page) for security and debugging.
- Account details: name, e-mail address, password (stored only in an irreversible form) and an optional phone number
- Job data: the job's title, description, customer and address details, comments, file attachments, checklist and activity log
- Field proof: start and finish stamps, proof photos, the customer signature (name, optional title, signature drawing) and the time and location information tied to these records
- Device information: the device notification token, platform (iOS or Android) and last-seen time, used to send notifications
Location
Location is taken only with the while-using-the-app permission (when-in-use) and only once at a time. It is recorded at these moments: when you start a job, when you finish a job, when you take a proof photo and when you collect a customer signature.
There is no background location, no continuous location tracking and no geofence monitoring. The app does not ask for these permissions.
If you do not grant location permission the job still starts; the stamp is marked as without location and the business manager can see this. You can change the permission in your device settings at any time.
Camera and photos
The camera is used only to take proof photos. A watermark with the job number, date-time and location is added to the photo; the photo appears only in that job's record and report.
If you pick a file from your gallery for a job attachment, only the files you select are accessed; the gallery is not scanned. The microphone is not used.
Notifications
We send notifications when a job is assigned, when a status changes and when a deadline is near. Notification permission is requested at the first job assignment; you can turn it off in your device settings.
How we use data
We use your data to provide the service, run the job workflow, generate the delivery report, send notifications and keep the service secure. We do not show ads, track your behaviour or build profiles.
Who it is shared with
We do not sell your data and do not share it for marketing.
Because push delivery (Expo) and the app stores (Apple, Google) operate outside Turkey, the data these services require may be transferred abroad.
- Inside your business: who sees a job depends on the role. Managers see the whole business, team leads see their teams' jobs, staff see their own jobs and, as far as the business setting allows, their team's jobs
- Service providers: the providers we use for server hosting, push notification delivery (Expo, Apple, Google) and e-mail delivery process data only to provide the service
- Your customer: the PDF delivery report reaches the customer through the business's automatic e-mail setting on the job type or when you share it
- Legal obligation: when an authorised authority makes a lawful request
Retention and deletion
Your data is kept while your account and business are active.
You can delete your account in the app under Settings; if you cannot reach the app, you can send a request through the account deletion page.
- If a staff member deletes their account, their personal information is permanently deleted; the jobs, stamps and comments they made stay in the business under the name “Deleted user”
- If the business owner deletes their account, the business, all jobs, photos and files are permanently deleted unless ownership is transferred to another manager
- Database backups are kept for 7 days and then deleted; deleted data also leaves the backups at the end of that period
Security
Connections are encrypted with HTTPS. Access is limited by role and permission, and the activity log cannot be edited. No system is entirely risk-free; if we notice a breach we will report it within the legal time limits.
Your rights
Under Turkish law No. 6698 (KVKK) and, where it applies, the GDPR, you have the right to access, correct and delete your data, to object to processing and to data portability. Write to destek@ekiplio.online with your request.
For your business's customer and job data, Ekiplio acts on behalf of the business. Requests about that data are first directed to your business; we provide the help needed.
Children
Ekiplio is a business app and is not directed at children.
Changes
If we update this policy we change the date above; we also announce important changes in the app.