This policy sets out what personal data the Shongjog application collects, the purposes for
which it is processed, with whom it is shared, how long it is retained, and the choices
available to the individuals concerned. It applies to the Android application published by
Sasthotech under the package identifier com.sasthotech.marketer.
1.Scope and our role
Shongjog is an enterprise workforce application. It is not a consumer product and is not open to public registration. Accounts are issued by hospitals and diagnostic centres to their own marketing personnel. Two categories of individual appear in the application:
- Staff users — marketing representatives, marketer managers and administrators who sign in using credentials issued by their employer.
- Recorded individuals — referring doctors and agents (“primary consultants”) and prospective patients, whose details are entered by staff in the course of their duties.
Controller and processor. The hospital or diagnostic centre that issues an account determines what is collected and for what purpose, and is the controller of those records. Sasthotech develops and operates the software on that organisation’s instructions, acting as a processor.
Requests concerning your own data are resolved most quickly by the organisation that issued the account. You may also contact Sasthotech directly using the details in section 13, and we will assist that organisation in responding.
2.Data collected from staff users
Account and employment details
Name, employee identifier, telephone number, assigned role, branch and employing organisation. These records are created by the employer when an account is issued.
Location data, during attendance sessions only
On check-in, the application begins recording location and continues until check-out. Each recorded point comprises latitude and longitude, accuracy, speed, bearing, the time of capture, and an indicator of whether the device reported a simulated location.
- Collection begins at check-in and ends at check-out. No location is recorded outside an open attendance session.
- Throughout the session the operating system displays a persistent notification, so collection cannot take place without a visible indicator.
- Where the device is offline, points are retained locally and transmitted once connectivity is restored.
Device identifier
An identifier generated for the installation, used to bind an attendance session to a single device and to resume that session after the application restarts. It is not an advertising identifier and is not used to track individuals across other applications.
Attendance records
Check-in and check-out times, session duration, and the resulting working-time totals.
Photographs
A photograph may be attached when logging a visit to a primary consultant. The camera is invoked only on that action. The application does not access the device photo library.
3.Data recorded about other individuals
In the ordinary course of their duties, staff record details of individuals who are not users of the application. Where your information appears in these records, it was entered by a marketing representative of the hospital or diagnostic centre concerned.
| Category | Information recorded |
|---|---|
| Primary consultants (referring doctors and agents) |
Name, chamber or clinic address, date and time of meeting, visit notes, and the referral performance attributed to them |
| Prospective patients | Name, telephone number, the service in which interest was expressed, expected and follow-up dates, and whether the individual subsequently attended |
| Individuals on follow-up lists | Contact details and the follow-up schedule maintained by the hospital, which may indicate a health condition such as pregnancy |
Health-related information. Where records reveal information about an individual’s health, access is restricted to authorised personnel of the organisation that entered them. Such information is not used for advertising, is not sold, and is not shared with any other organisation on the platform.
4.Purpose of processing
| Data | Purpose |
|---|---|
| Location during a session | To evidence which visits were made and the time spent at each location, enabling field activity to be verified and reported to the employer |
| Attendance times | To record working hours |
| Device identifier | To associate a session with a single device and restore it after an application restart |
| Visit photographs and notes | To evidence and describe a consultant visit |
| Contact details of consultants and prospective patients | To conduct follow-up and to attribute referrals and commission accurately |
| Account details | To authenticate the user and apply the permissions associated with their role |
5.Disclosure and access
- The employing organisation. Marketer managers and administrators at the hospital or diagnostic centre that issued the account may access attendance records, recorded routes, and the visits and contacts entered by their staff.
- Sasthotech personnel. A limited number of authorised engineers may access data in the course of operating the service or investigating a fault reported by the customer.
- Service providers. Hosting and infrastructure suppliers process data on our behalf under contract and solely for the operation of the service.
- Legal obligations. Data may be disclosed where required to comply with a valid legal obligation.
Data belonging to one organisation is segregated from that of every other organisation on the platform.
6.Practices we do not engage in
- Personal data is not sold, rented or licensed to third parties.
- Personal data is not used for advertising, and the application contains no advertising.
- The application contains no third-party analytics, attribution or crash-reporting component. The published build includes no advertising identifier and no social-media tracking kit.
- Location is not collected outside an open attendance session.
- Contacts, messages, call logs and the device photo library are not accessed.
7.Retention
Attendance, visit and location records are retained for the duration of the customer organisation’s agreement with Sasthotech, as they form part of its operational and payroll history. Each organisation determines its own retention period and may instruct us to delete records earlier. Following termination of an account, the associated data is deleted or irreversibly anonymised within 90 days, save where a longer period is required by law. Location points queued on a device are removed from that device once transmitted.
8.Security
- Traffic between the application and our servers is encrypted in transit using HTTPS.
- Access requires authentication, and visibility is constrained by the user’s role, branch and employing organisation.
- Attendance sessions are bound to a single device.
- Internal access is limited to personnel who require it to operate the service.
No system can be guaranteed secure. In the event of a breach affecting personal data, we will notify the affected organisation without undue delay so that it may inform the individuals concerned.
9.Rights and choices
- Permissions. Location and notification permissions are requested only after the application has explained what will be collected and why. Either may be declined, and both may be withdrawn at any time through the device settings. Attendance may still be recorded if permission is declined, but field activity will not be.
- Camera. Access is requested only when a photograph is attached to a visit.
- Access, correction and erasure. Requests should be directed in the first instance to the administrator of the organisation that issued the account, as controller of those records. Requests may also be sent to Sasthotech, and we will assist in responding.
10.Children
Shongjog is a workplace application intended solely for employed adults. It is not directed at children, and accounts are not knowingly issued to any person under the age of 18.
11.International transfers
The service is operated for customers in Bangladesh. Data may be processed on servers located outside Bangladesh by our infrastructure providers. Where such transfers occur, appropriate contractual protections are required of those providers.
12.Changes to this policy
Where this policy is amended, the “last updated” date above will be revised and the version incremented. Material changes will be communicated to the organisations that issue accounts. Continued use of the application following an amendment constitutes acceptance of the revised policy.
13.Contact
Where your data was entered by a hospital or diagnostic centre, please also contact that organisation directly, as it is the controller of those records.