Ping Privacy Policy
August 6, 2026

This Privacy Policy explains how Sociair ("Sociair", "we", "us") collects, uses, discloses, and protects information when you use the Sociair Ping mobile application for Android and iOS (the "App"), together with the Sociair services the App connects to (the "Service").

Sociair Ping is a workplace communication app.
It is made available to you through an organisation (your employer or another entity that holds a Sociair account — your "Workspace"). Where your Workspace provides the App to you, that organisation is the data controller for the content and account data processed through the Service, and Sociair acts as a data processor on its instructions. Your Workspace's own privacy notice and internal policies apply in addition to this one. For our own website, marketing, and support activity, Sociair is the controller.

If you do not agree with this Policy, please do not use the App.


1. Information We Collect

1.1 Account and Profile Information

When you sign in, we process the credentials and identifiers required to authenticate you and place you in the correct Workspace:

  • Username or email address, and your password (transmitted to our servers to verify your identity; we do not store passwords on your device);

  • Two-factor authentication codes, where your Workspace has enabled 2FA;

  • Your user ID, display name, and profile photo as configured in your Workspace;

  • The tenant/workspace identifier and workspace details associated with your account;

  • Session and refresh tokens issued to keep you signed in.

We do not collect your calendar, location, health data, or financial data. We access your device's contacts solely to identify known callers. This contact information is processed locally and is not sold or shared with third parties.



1.2 Messages and Shared Content

The App is a messaging client. When you use it we process, on behalf of your Workspace:

  • The text of messages you send and receive, including replies, reactions, edits, and deletions;

  • Attachments you send or open — images, video, audio, documents, and other files;

  • Message metadata: sender and recipient identifiers, conversation identifiers, timestamps, delivery and read status, and typing indicators;

  • Conversation state such as pinned, muted, archived, or unread status;

  • Unsent message drafts, which are held only on your device and are not transmitted to us.



1.3 Calls (Voice, Video, and Screen Sharing)

When you place, receive, or join a call:

  • Call media (your microphone audio, camera video, and any screen you choose to share) is transmitted in real time using WebRTC. Media is carried directly between participants where a peer-to-peer connection can be established, and otherwise relayed through media servers operated for the Service. We do not record calls, and the App contains no call-recording feature.

  • Call signalling and metadata — participant identifiers, call start and end times, duration, call type (audio/video), ring, accept, decline, hold, and hang-up events, and connection quality signals — is processed on our servers so calls can be set up, routed, and displayed in your call history.

  • Call Screening & Log Data — To provide call tracking and CRM functionality, the App collects incoming and outgoing phone numbers and call timestamps in real-time (e.g., using the Android Call Screening Service). This data is encrypted and transmitted to our secure servers to match callers against your customer records and maintain your call history.



1.4 Device and Technical Information

  • Push notification identifiers: A Firebase Cloud Messaging (FCM) registration token on Android, an Apple Push Notification service token on iOS, a persistent per-installation identifier generated by the App, and the platform name ("android"/"ios"). These are sent to our servers so notifications can be delivered to the right device, and are deleted from our systems when you sign out or uninstall.

  • Connection and diagnostic data: IP address, app version, operating system version, device model, network state, and server-side logs of API and socket requests. These are used for security, abuse prevention, and troubleshooting.



1.5 Camera, Microphone, and Other Device Permissions

The App requests the following permissions. Each is used only for the stated purpose, and you may decline or later revoke any of them in your device settings.

  • Microphone (RECORD_AUDIO): Audio for voice and video calls and voice messages

  • Camera (CAMERA): Video for video calls and for capturing photos or video you choose to send

  • Photos / Media Access: Only to attach files you explicitly select to a message

  • Notifications (POST_NOTIFICATIONS): Delivering message and incoming-call notifications

  • Bluetooth (BLUETOOTH_CONNECT): Routing call audio to connected headsets and speakers

  • Contacts (READ_CONTACTS): Identifying known callers by name locally on your device

  • Call Logs / Phone State: Call tracking, CRM matching, and maintaining call history

  • Screen Recording / Media Projection: Only while you actively share your screen during a call

  • Foreground Service / Full-Screen Intent: Keeping an ongoing call alive and showing incoming-call screens

  • Network & Internet Access: Connecting to the Service

Camera and microphone are activated only during a call or when you record or capture media, and are released when the call or capture ends. The App does not access them in the background for any other purpose.



1.6 Single Sign-On Across Sociair Apps

If other Sociair applications are installed on the same Android device, the App can read a shared sign-in session from them (via a Sociair-specific permission) so you do not have to sign in twice. This exchange happens locally on your device, only between applications signed by Sociair, and only transfers the session credentials needed to establish your session.



1.7 Analytics

The App does not include third-party advertising SDKs, behavioural analytics SDKs, or cross-app tracking. We do not sell personal data, and we do not use your messages or call content for advertising or to train machine-learning models.


2. How We Use Information

We use the information described above to:

  • Authenticate you, maintain your session, and place you in the correct workspace;

  • Deliver, sync, and display your messages, attachments, and conversations;

  • Set up, connect, and manage voice, video, and screen-sharing calls;

  • Send push notifications for new messages and incoming calls;

  • Provide message history, search, and call history;

  • Maintain the security and integrity of the Service, investigate abuse, and enforce our terms;

  • Diagnose faults and improve reliability and performance;

  • Comply with legal obligations.

We rely on the following legal bases where the GDPR or similar laws apply: performance of a contract (providing the Service), legitimate interests (security, abuse prevention, service improvement), your consent (device permissions such as camera, microphone, and notifications), and legal obligation.


3. How Information is Shared

We share information only as follows:

  • Within your Workspace: Messages, attachments, calls, and presence information are visible to the participants you send them to, and to workspace administrators to the extent their administrative tools allow.

  • Your Organisation: Your Workspace administrator may be able to access, export, retain, or delete workspace content and account data under its own policies and applicable law.

  • Service Providers (Sub-processors): Who process data on our behalf under contract, including:

    • Google Firebase Cloud Messaging and Firebase Remote Config (Google LLC) — push notification delivery and remote configuration on Android;

    • Apple Push Notification service (Apple Inc.) — push notification delivery on iOS;

    • Cloud hosting, storage, and media-relay (TURN/SFU) providers used to run the Service.

  • Legal and Safety: Where required by law, legal process, or to protect the rights, safety, or property of Sociair, our customers, or the public.

  • Business Transfers: In a merger, acquisition, or asset sale, subject to this Policy continuing to apply to the transferred data.

We do not sell or rent personal information, and we do not share it for cross-context behavioural advertising.


4. Data Storage, Retention, and Deletion

  • On your device, the App stores your session tokens, cached conversations and messages, message drafts, and app preferences in the application's private storage area, protected by the operating system's app sandbox. Downloaded attachments may also be cached locally.

  • On our servers, messages, attachments, call metadata, and call log data are retained for as long as your Workspace's account and retention settings require. Your Workspace controls its retention period and may delete content. Call log data is stored on our servers to provide your account history until you request its deletion.

  • Push identifiers are deleted from our servers when you sign out or unlink the device.

  • Signing out clears the locally stored session, cached messages, and drafts from the device. Uninstalling the App removes all local data.

  • Deleting the App does not delete data held on the Service. To have your account or workspace content deleted, contact your Workspace administrator, or write to us at info@sociair.com and we will act on the instruction from the responsible controller.


5. Security

We protect information in transit using TLS/HTTPS for API and socket connections, and DTLS/SRTP encryption for real-time call media, as required by WebRTC. Access to production systems is restricted to authorised personnel. Call media is not recorded by the App.

No method of transmission or storage is completely secure. If you believe your account has been compromised, notify your Workspace administrator and contact us at info@sociair.com immediately.


6. International Transfers

The Service is operated from, and information may be stored and processed on our secure servers. Where personal data is transferred out of the country in which you are located, we use appropriate safeguards such as Standard Contractual Clauses or an equivalent lawful transfer mechanism.


7. Your Rights

Depending on where you live, you may have the right to access, correct, delete, restrict, or object to the processing of your personal data, to withdraw consent, to data portability, and to lodge a complaint with a supervisory authority.

Because your Workspace is the controller of workspace content, please direct these requests to your Workspace administrator in the first instance. You may also contact us at info@sociair.com and we will forward the request to the responsible controller and assist in responding.

You can withdraw device permissions (camera, microphone, notifications) at any time in your device settings; some features will stop working when you do.


8. Children

The Service is a workplace product and is not directed to children. We do not knowingly collect personal information from anyone under 13 years of age. If you believe a child has provided us with personal information, contact us at info@sociair.com and we will delete it.


9. Changes to This Policy

We may update this Policy from time to time. When we do, we will revise the "Last updated" date above and, where the changes are material, provide notice in the App or by email before they take effect. Continued use of the App after the changes take effect means you accept the updated Policy.


10. Contact Us

Sociair

DurbarMarg, Kathmandu

Email: info@sociair.com

Ready To Get Started?
Let’s be your companion along the way. Try our services, it's absolutely free.