Privacy Policy

Last Updated: September 3, 2026

How this Policy relates to a signed Service Agreement: This Policy applies to everyone who uses MeroHajir. If your organisation has also signed a separate Service Agreement — with us directly or through an authorised Channel Partner — that Agreement's data-handling terms apply in addition to this Policy and prevail on any point it expressly covers.

1. About This Policy

1.1 MeroHajir is a cloud attendance, roster, leave and payroll platform. The MeroHajir software, and all intellectual property in it, is owned by the Software Owner ("Software Owner," "we," "us," "our"). Full company and registration details are available on request, or are stated in the Service Agreement where your organisation has signed one.

1.2 The Service may be sold, implemented and supported directly by the Software Owner, or by an authorised MeroHajir Channel Partner, distributor, reseller or implementation partner (a "Service Provider"). Where a Service Provider other than the Software Owner handles your account, references to "we" and "us" in this Policy include that Service Provider for the data it handles on our behalf.

1.3 This Policy explains what information we collect through the Service, how we use it, and the rights you and your employees have over it. It applies to www.merohajir.com, the MeroHajir web application, and the MeroHajir Android app.

2. Information We Collect

2.1 Account & Company Information
  • Company/organisation name, address and billing details
  • Administrator name, email address and phone number
  • Subscription and module selections
2.2 Employee Data You Enter
  • Employee name, contact details, position and branch
  • Biometric identifiers (fingerprint templates, face templates, or card numbers) captured through the attendance device(s) you connect to the Service — see Clause 3.5 on consent
2.3 Attendance & Operational Data
  • Attendance punches and timestamps
  • Roster and shift assignments, leave applications, visit logs
  • Payroll figures generated through the Service
2.4 Usage & Device Data
  • IP address, browser type and device information
  • Log-in activity and system usage
  • Performance and error logs

3. Data Ownership and How We Use It

3.1 Ownership. All employee, attendance, roster, leave, visit and payroll data you or your employees enter into MeroHajir remains your property. We process it solely to deliver the Service, and do not sell it, rent it, or use it for any purpose other than operating and improving the Service, unless you give us separate written consent.

3.2 We use the information to: provide and maintain the Service; process attendance, roster, leave and payroll records; generate the reports you request; communicate service updates, security alerts and support responses; process payments; comply with our legal obligations; and improve the Service for all users.

3.3 We may use aggregated or de-identified statistics that cannot reasonably be traced back to you or your employees to understand and improve the Service.

3.4 Where your Service Provider is an authorised Channel Partner rather than the Software Owner directly, that Channel Partner may access your account information as reasonably necessary to provide implementation, sales and support services to you, under the same confidentiality obligations that apply to us.

3.5 You are responsible for obtaining any consent required by applicable law from your employees before enrolling them for biometric attendance, and for maintaining your own privacy notice to your employees where required.

4. Data Storage and Security

4.1 We apply reasonable technical and organisational security measures in line with accepted industry practice, including encrypted transmission, access controls and regular backups.

4.2 No system connected to the internet can be guaranteed absolutely secure. We do not warrant that the Service will be uninterrupted, error-free, or immune to unauthorised access, and give no guarantee against loss arising from events beyond our reasonable control.

4.3 If we become aware of a security incident affecting your data, we will notify you without undue delay, describe what is known, and cooperate reasonably in investigation and remediation.

4.4 Unauthorised access obtained through credentials issued to you, or through your own devices, networks or personnel, is your responsibility.

5. Data Retention and Export

5.1 We retain your data for as long as your subscription is active, and for a reasonable period after, as stated in your Service Agreement where one exists, or otherwise as reasonably necessary to comply with our legal obligations and resolve disputes.

5.2 You may export your data at any time during an active subscription. On termination of your subscription, you may request an export before we delete your data in the ordinary course.

6. Data Sharing and Disclosure

6.1 We do not sell your personal information, or your employees' personal information, to third parties.

6.2 We may share information with: service providers who support our operations (hosting, payment processing, notification delivery); an authorised Channel Partner servicing your account (Clause 3.4); a competent authority or court, where required by the prevailing laws of Nepal or a lawful order; a successor entity in connection with a merger, acquisition or transfer of business assets; or anyone else, with your consent.

7. Your Rights

Depending on your role and location, you may have the right to:

  • Access and receive a copy of your personal data
  • Correct inaccurate or incomplete information
  • Request deletion of your personal data, subject to our legal and contractual retention obligations
  • Object to or restrict certain processing of your information
  • Receive your data in a structured, exportable format (Clause 5.2)
  • Withdraw consent where processing is based on consent

To exercise these rights, contact us using the details in Clause 10.

8. International Data Transfers

8.1 Your information may be transferred to and processed in countries other than Nepal, which may have different data protection laws.

8.2 Where we transfer personal information outside Nepal, we take reasonable steps to ensure it continues to receive an appropriate level of protection.

9. Changes to This Policy

9.1 We may update this Policy from time to time. Changes take effect when posted on this page with an updated "Last Updated" date.

9.2 For significant changes, we will also provide notice through the Service or by email. Please review this Policy periodically.

10. Contact Us

Questions about this Policy, or requests relating to your data, can be sent to us through the contact form on our website.