Privacy Policy
Version 1.1 · Effective [EFFECTIVE_DATE]
1. Who We Are
Seer Application, registered in Sudan at [REGISTERED_ADDRESS] ("Seer," "we," "us"), operates the Seer mobile app and admin dashboard. For data protection purposes, Seer is the data controller of your personal information.
Privacy inquiries: seer.com.sd@gmail.com
2. Scope of This Policy
This Privacy Policy explains what personal data we collect, why, how we use and share it, how long we keep it, and your rights. It applies to all users of the Seer iOS and Android apps, including riders, drivers, and people who apply to become drivers. The web admin dashboard is accessible only to Seer staff and is subject to separate internal policies.
3. Data We Collect and Why
3.1 All users
- Phone number (E.164 format) — Authentication and account identity — Legal basis: contract performance
- Full name — Account identity and trip manifests — Legal basis: contract performance
- Gender (M/F) — Service operations and matching — Legal basis: contract performance
- Email address (optional) — Non-critical communications — Legal basis: consent
- Static pickup/drop-off coordinates — Route assignment and trip operations; snapshotted at booking time — Legal basis: contract performance
- Payment receipt images (JPEG/PNG) — Payment verification by admin — Legal basis: contract performance
- Wallet balance and transaction data — Subscription and refund management — Legal basis: contract performance
- Booking and trip history — Service delivery and dispute resolution — Legal basis: contract performance / legitimate interest
- Profile avatar (optional) — User identification in-app — Legal basis: consent
- Push notification token — Service alerts and trip updates — Legal basis: consent / legitimate interest
- Crash and error data via Sentry — App stability and bug fixing — Legal basis: legitimate interest
3.2 Drivers
- Live GPS location during an active trip — Enables riders to track driver approach; stored transiently — Legal basis: contract performance
- Vehicle details (plate, make, capacity) — Trip operations and rider identification of the vehicle — Legal basis: contract performance
3.3 Driver applicants
If you apply to drive for Seer, we additionally collect the verification documents listed in Section 6. These include national identity and criminal record documents. We do not collect these from riders.
3.4 What we do not collect
We do not collect credit or debit card numbers or biometric data. We do not collect national identity documents or criminal record documents from riders — these are required only from driver applicants, as set out in Section 6.
4. Real-Time Location Data
4.1 The driver's GPS position is captured and transmitted in real time during an active trip only. Riders' locations are not tracked at any time.
4.2 Riders assigned to the same active trip can see the driver's real-time position within the app during the trip window only. This visibility ends when the trip concludes or when you are marked dropped off or absent, whichever is earlier.
4.3 Real-time location data is stored transiently in Firebase Realtime Database and is deleted when the trip ends, is cancelled, or is terminated. We retain only the time of the last position update, never the coordinates themselves. Static pickup and drop-off coordinates are retained for the duration of your account plus 2 years after deletion.
4.4 We do not sell location data or use it for advertising profiling.
4.5 When you view the live trip map, map imagery is requested from the OpenStreetMap Foundation. This request necessarily discloses your device's IP address and the map area being viewed to that organisation. See Section 7.
5. Payment Receipts and Financial Data
5.1 Payment receipt images are uploaded to Firebase Storage and accessible only to authorized Seer administrators for payment verification.
5.2 We do not store, transmit, or process credit or debit card data of any kind.
5.3 Wallet transaction records are retained for the duration of your active account and for 5 years after account deletion, in line with financial record-keeping best practices.
6. Driver Verification Documents
6.1 This section applies only to drivers and driver applicants. If you use Seer solely as a rider, none of it applies to you.
6.2 To verify that a driver is licensed, insured, and lawfully able to carry passengers, we require the following document scans:
- Driving licence — front and back
- National identity document — front
- Vehicle registration
- Vehicle insurance certificate
- Criminal record certificate
- Photograph of the vehicle showing the number plate
6.3 Legal basis: performance of our agreement with the driver, and our legitimate interest — shared by every rider — in verifying that the person driving is licensed, insured, and suitable to carry passengers. Criminal record information is processed solely to make an admission decision and for no other purpose.
6.4 These documents are visible only to authorized Seer reviewers. They are not shared with riders, other drivers, or any third party except where disclosure is required by Sudanese law or a valid legal order.
6.5 Where an application is withdrawn, rejected, expired, or otherwise closed, the document scans are automatically deleted 90 days after that outcome. Approved applicants' documents are copied to the driver record and retained while the driver remains active on the Platform.
6.6 If you are rejected, you may ask us to delete your documents before the 90-day period elapses by writing to seer.com.sd@gmail.com.
7. How We Share Your Data
We do not sell your personal data. We share it only as described below:
- Within Seer — Administrators and operations staff can view data necessary to operate the service. Access is limited to personnel who need it.
- With drivers — The driver assigned to your trip receives, for each rider on the manifest: your phone number, your pickup stop and its coordinates, your party size, and the subscription amount recorded against your booking. The phone number allows the driver to reach you at pickup. Drivers do not receive your gender, your wallet balance, your payment receipts, or your trip history on other routes.
- With other riders — Riders sharing an active trip can see the driver's live position. They do not receive your personal details.
- Google LLC (Firebase) — Authentication, database, storage, cloud functions, messaging. Location: USA / EU. See: privacy.google.com
- Functional Software Inc. (Sentry) — Crash reporting; may capture partial user context in stack traces. Location: USA. See: sentry.io/privacy
- OpenStreetMap Foundation — Map imagery for the live trip map. Receives your IP address and the map area viewed when the map is displayed. Location: United Kingdom. See: osmfoundation.org/wiki/Privacy_Policy
- Our email provider — Transactional email (account and administrative notices) is delivered through a third-party mail server, which processes your email address and the content of those messages.
- Google LLC (Google Fonts) — Font rendering on admin dashboard only. Location: USA.
- Legal requirements — We may disclose data to courts or regulators when required by Sudanese law or a valid legal order.
8. Cross-Border Data Transfers
Your data is processed on Google LLC infrastructure with servers in the USA and, where applicable, the EU. Sentry processes crash data in the USA and the OpenStreetMap Foundation operates in the United Kingdom. By using the Platform you acknowledge your data may be transferred outside Sudan. Where these providers are subject to the GDPR, they maintain Standard Contractual Clauses under Article 46; this reflects our providers' arrangements and is not a representation that the GDPR governs our processing generally.
9. Data Retention
- Account data (name, phone, gender, email): Active account + 3 years after deletion
- Booking and trip history: Active account + 3 years after deletion
- Payment receipts: Active account + 5 years after deletion
- Wallet and transaction records: Active account + 5 years after deletion
- Driver real-time GPS location: Deleted automatically when the trip ends, is cancelled, or is terminated
- Static pickup/drop-off coordinates: Active account + 2 years after deletion
- Driver applicant document scans (closed applications): Deleted automatically 90 days after the application closes
- Approved driver documents: Retained while the driver is active, then per the periods above
- Crash/error data (Sentry): 90 days (Sentry default policy)
- Profile avatar: Deleted within 30 days of account deletion request
- Push notification tokens: Deleted upon account deletion or app uninstall
Deletion of live location data and of closed applicants' documents is automated. The remaining periods are applied by us on request or on review; if you want confirmation that data relating to you has been deleted, write to seer.com.sd@gmail.com and we will confirm in writing.
10. Your Rights
Depending on your jurisdiction, you may have the following rights:
- Access — Request a copy of personal data we hold about you.
- Rectification — Request correction of inaccurate or incomplete data.
- Erasure — Request deletion of your personal data.
- Portability — Request your data in a structured, machine-readable format.
- Objection — Object to processing based on legitimate interest.
- Withdrawal of consent — Where processing is based on consent (optional email, avatar, push notifications), you may withdraw at any time without affecting prior processing.
To exercise any right, email seer.com.sd@gmail.com with the subject "Data Rights Request." We will respond within 30 days.
11. Account and Data Deletion
11.1 You may request deletion of your account and associated data at any time by emailing seer.com.sd@gmail.com with the subject "Account Deletion Request" from your registered phone number, or by using the account deletion option in the app where available.
11.2 We will confirm receipt within 5 business days and complete deletion within 30 days of verification.
11.3 Certain data may be retained where required by law (e.g. financial records) as set out in Section 9.
11.4 Deleting your account does not automatically refund any unused wallet credit. See the Terms of Service for how credit is treated on closure.
12. Data Breach Notification
12.1 If a breach of security leads to the accidental or unlawful destruction, loss, alteration, or unauthorised disclosure of your personal data, and that breach is likely to result in a significant risk to you, we will notify you without undue delay and in any event within 72 hours of becoming aware of it.
12.2 The notice will describe, in plain language, what happened, which categories of data were affected, what we have done in response, and what you can do to protect yourself.
12.3 Where we are required to notify a regulator, we will do so within the period that regulator requires.
13. Push Notifications
13.1 Push notifications require your consent at the OS level (iOS/Android). You may withdraw consent at any time through your device notification settings.
13.2 Disabling push notifications does not affect your ability to use the Platform but may result in missing time-sensitive updates.
14. Cookies and Local Storage
The Seer app uses minimal local device storage for functional purposes only: your preferred display language and theme setting. We do not use tracking cookies or behavioral advertising. The admin dashboard may use session cookies for authentication only.
15. Children's Privacy
The Platform is available only to people aged 18 or over, and is not directed at children. We do not knowingly collect data from anyone under 18. If we learn that we have collected data from a person under 18, we will delete it without undue delay. If you believe we hold data about a child, contact seer.com.sd@gmail.com immediately.
16. Data Security
We implement industry-standard technical and organizational measures: Firebase Security Rules restricting access by authenticated role, TLS encryption in transit, and access controls limiting admin access to authorized personnel. Driver verification documents are held in access-controlled storage separate from general app data. No system is completely secure; we cannot guarantee absolute security of data transmitted over the internet.
17. Changes to This Policy
We will notify you of material changes via in-app notification at least 14 days before the new version takes effect. The version number and effective date at the top identify the current version.
18. Contact Us
Data Controller: Seer Application
Address: [REGISTERED_ADDRESS]
Privacy, support and rights requests: seer.com.sd@gmail.com