This Privacy Policy explains how Macrossoft (“we”, “us”) collects, uses, stores, and shares information when you use Macros Loan Management at loanapp.macrossoft.com and the Macros Loan Management mobile apps. The product is a business tool for finance and gold-loan shops. Shop staff enter borrower and loan records. We do not sell personal data.
இந்தத் தனியுரிமைக் கொள்கை, மாக்ரோஸ்சாஃப்ட் (“நாங்கள்”) மாக்ரோஸ் கடன் மேலாண்மை சேவையை loanapp.macrossoft.com மற்றும் மொபைல் செயலிகளில் நீங்கள் பயன்படுத்தும்போது தகவலை எப்படிச் சேகரிக்கிறோம், பயன்படுத்துகிறோம், சேமிக்கிறோம், பகிர்கிறோம் என்பதை விளக்குகிறது. இது நிதி / தங்கக் கடன் கடைகளுக்கான வணிகக் கருவி. கடை ஊழியர்களே கடன் வாங்குபவர் மற்றும் கடன் பதிவுகளை உள்ளிடுகின்றனர். நாங்கள் தனிப்பட்ட தரவை விற்பனை செய்வதில்லை.
1. Who we are
Operator: Macrossoft (MacrosSoft Software Solution).
Product: Macros Loan Management.
Website: https://macrossoft.com/
App / service: https://loanapp.macrossoft.com/
Privacy contact: admin@macrossoft.com
இயக்குபவர்: மாக்ரோஸ்சாஃப்ட் (MacrosSoft Software Solution).
தயாரிப்பு: மாக்ரோஸ் கடன் மேலாண்மை.
இணையதளம்: https://macrossoft.com/
செயலி / சேவை: https://loanapp.macrossoft.com/
தனியுரிமை தொடர்பு: admin@macrossoft.com
2. Login data
We collect login data so that only authorised shop users can open the app and so we can keep accounts secure.
அங்கீகரிக்கப்பட்ட கடை பயனர்கள் மட்டுமே செயலியைத் திறக்கவும், கணக்குகளைப் பாதுகாக்கவும் உள்நுழைவு தரவைச் சேகரிக்கிறோம்.
What we collect
- Name, email address, and/or 10-digit mobile number.
- Password. Passwords are stored as a one-way hash. We cannot read your password.
- Email or SMS one-time codes used to verify signup or reset access.
- Optional Google sign-in: Google account email and basic profile needed to create or match your user record. We do not receive your Google password.
- Session tokens, last login time, and a device identifier on mobile so that one user stays signed in on one device at a time (a new login signs out the previous device).
- Optional on-device app lock: biometric (fingerprint / face) or PIN. That credential stays on the phone. It is not uploaded to our servers.
- பெயர், மின்னஞ்சல் மற்றும்/அல்லது 10 இலக்க அலைபேசி எண்.
- கடவுச்சொல். கடவுச்சொற்கள் ஒரு வழி ஹாஷாகச் சேமிக்கப்படும். உங்கள் கடவுச்சொல்லை நாங்கள் படிக்க முடியாது.
- பதிவு அல்லது அணுகலை மீட்டமைக்கப் பயன்படும் மின்னஞ்சல் அல்லது SMS ஒருமுறை குறியீடுகள்.
- விருப்ப Google உள்நுழைவு: கணக்கை உருவாக்க அல்லது பொருத்தத் தேவையான மின்னஞ்சல் மற்றும் அடிப்படை சுயவிவரம். Google கடவுச்சொல்லை நாங்கள் பெறுவதில்லை.
- அமர்வு டோக்கன்கள், கடைசி உள்நுழைவு நேரம், மற்றும் மொபைலில் சாதன அடையாளம் — ஒரு பயனர் ஒரு நேரத்தில் ஒரு சாதனத்தில் மட்டுமே உள்நுழைந்திருக்க (புதிய உள்நுழைவு முந்தைய சாதனத்தை வெளியேற்றும்).
- விருப்ப சாதனப் பூட்டு: கைரேகை / முகம் அல்லது PIN. இது தொலைபேசியிலேயே இருக்கும். எங்கள் சேவையகத்திற்கு அனுப்பப்படாது.
How we use it
- Authenticate you, keep you signed in, and prevent unauthorised access.
- Send verification and password-reset messages.
- Enforce one active mobile session per user.
- Show the correct company (tenant) workspace after login.
- உங்களை அடையாளம் காண, உள்நுழைவைத் தொடர, அனுமதியில்லாத அணுகலைத் தடுக்க.
- உறுதிப்படுத்தல் மற்றும் கடவுச்சொல் மீட்டமைப்பு செய்திகளை அனுப்ப.
- ஒரு பயனருக்கு ஒரு செயலில் உள்ள மொபைல் அமர்வை வைக்க.
- உள்நுழைவுக்குப் பிறகு சரியான நிறுவனப் பணியிடத்தைக் காட்ட.
3. Camera and KYC photos
The Android and iOS apps request camera (and optionally photo library) permission so staff can capture documents for loan work. We do not use the camera in the background. We do not use photos for advertising.
ஆண்ட்ராய்டு மற்றும் iOS செயலிகள் கடன் பணிக்கான ஆவணங்களை எடுக்க கேமரா (மற்றும் தேவைப்பட்டால் புகைப்பட நூலகம்) அனுமதியைக் கேட்கும். பின்புலத்தில் கேமராவைப் பயன்படுத்துவதில்லை. விளம்பரத்திற்குப் புகைப்படங்களைப் பயன்படுத்துவதில்லை.
What we collect
- Customer KYC photos: customer selfie, Aadhaar / ID proof photo, PAN card photo.
- Supporting files that staff photograph or upload: bank statements, payslips, GST / business registration, loan papers (image or PDF).
- Gold-loan pledge photos of jewellery or packets, where the shop records a pledge.
- Staff disbursement selfie when the shop requires proof of disbursement.
- வாடிக்கையாளர் KYC புகைப்படங்கள்: செல்ஃபி, ஆதார் / அடையாள ஆதாரம், PAN அட்டை.
- ஊழியர் எடுக்கும் அல்லது பதிவேற்றும் ஆவணங்கள்: வங்கி அறிக்கை, சம்பளச் சீட்டு, GST / வணிகப் பதிவு, கடன் ஆவணங்கள் (படம் அல்லது PDF).
- தங்கக் கடனில் அடகு வைக்கும் நகை / பாக்கெட் புகைப்படங்கள்.
- கடை கோரும் போது பணம் வழங்கும் ஊழியரின் செல்ஃபி.
How we use it
- Complete KYC and loan files for that shop.
- Let authorised users of the same company view, verify, or print those documents.
- Store the files on our servers (see Server storage). Access is limited to that company’s authorised staff and to Macrossoft support when needed to fix a problem you raise.
- அந்தக் கடைக்கான KYC மற்றும் கடன் கோப்பை முடிக்க.
- அதே நிறுவனத்தின் அங்கீகரிக்கப்பட்ட பயனர்கள் ஆவணங்களைப் பார்க்க, சரிபார்க்க, அச்சிட.
- கோப்புகளை எங்கள் சேவையகத்தில் சேமிக்க (சேவையக சேமிப்பைப் பார்க்கவும்). அணுகல் அந்த நிறுவனத்தின் அங்கீகரிக்கப்பட்ட ஊழியர்களுக்கும், நீங்கள் எழுப்பும் சிக்கலைச் சரிசெய்யத் தேவைப்படும் மாக்ரோஸ்சாஃப்ட் ஆதரவுக்கும் மட்டும்.
4. SMS
The Android app may request SMS send permission and phone state (to list SIM slots). This is only so shop staff can send loan, collection, or receipt messages to a customer’s number from the staff phone.
ஆண்ட்ராய்டு செயலி SMS அனுப்பும் அனுமதியையும், SIM ஐத் தேர்வு செய்ய தொலைபேசி நிலை அனுமதியையும் கேட்கலாம். கடை ஊழியர் தன் தொலைபேசியிலிருந்து வாடிக்கையாளர் எண்ணுக்குக் கடன் / வசூல் / ரசீது செய்தி அனுப்ப மட்டுமே இது.
- We send SMS. We do not read your SMS inbox. The app does not collect, upload, or scan received messages, OTP SMS, or message content from other apps.
- Phone state / SIM list is used only to choose which SIM sends the outbound message. We do not harvest your call log.
- On iOS, SMS is opened in the system compose sheet. The user confirms send. The app does not send iOS SMS silently.
- We may also send one-time login or verification codes by SMS through our SMS provider (for example MSG91) to the mobile number on the account. That is a server-side send, not device inbox access.
- Shops may instead (or also) notify customers on WhatsApp if that add-on is enabled. WhatsApp traffic uses the shop’s linked WhatsApp connection.
- நாங்கள் SMS அனுப்புகிறோம். உங்கள் SMS இன்பாக்ஸைப் படிப்பதில்லை. பெற்ற செய்திகள், OTP SMS அல்லது பிற செயலிகளின் உள்ளடக்கத்தைச் சேகரிக்கவோ பதிவேற்றவோ ஸ்கேன் செய்யவோ மாட்டோம்.
- தொலைபேசி நிலை / SIM பட்டியல் வெளிச்செல்லும் செய்தியை எந்த SIM அனுப்புகிறது என்பதைத் தேர்வு செய்ய மட்டுமே. அழைப்புப் பதிவை எடுக்கமாட்டோம்.
- iOS-ல் கணினி SMS எழுதும் திரை திறக்கும். பயனரே அனுப்புவதை உறுதி செய்கிறார். iOS SMS-ஐ மௌனமாக அனுப்புவதில்லை.
- கணக்கில் உள்ள அலைபேசிக்கு உள்நுழைவு / உறுதிப்படுத்தல் குறியீட்டை எங்கள் SMS வழங்குநர் (எ.கா. MSG91) மூலம் சேவையகத்திலிருந்து அனுப்பலாம். இது சாதன இன்பாக்ஸ் அணுகல் அல்ல.
- கடை WhatsApp சேவையை இயக்கியிருந்தால் வாடிக்கையாளருக்கு WhatsApp-ல் அறிவிக்கலாம். அது கடையின் இணைக்கப்பட்ட WhatsApp இணைப்பைப் பயன்படுத்தும்.
5. Notifications
The apps and website may request permission to show push notifications so staff see operational alerts (for example a loan created, a collection recorded, or a backup failure).
செயலிகளும் இணையதளமும் புஷ் அறிவிப்புகளை காட்ட அனுமதி கேட்கலாம் — கடன் உருவாக்கம், வசூல் பதிவு, காப்புப் பிரதி தோல்வி போன்ற பணி அறிவிப்புகளுக்கு.
- If you allow notifications, we store a Firebase Cloud Messaging (FCM) device token for that browser or phone, linked to your user account.
- We use the token only to deliver in-app and push alerts you (or your company admin) have enabled.
- Notification history for your account is stored on our servers so you can open it later in the app.
- You can turn events on or off in notification settings. On logout we revoke that device token where possible. You can also disable notifications in the phone or browser settings.
- We do not use push notifications for third-party advertising.
- அறிவிப்புகளை அனுமதித்தால், அந்த உலாவி அல்லது தொலைபேசிக்கான Firebase Cloud Messaging (FCM) சாதன டோக்கனை உங்கள் பயனர் கணக்குடன் இணைத்துச் சேமிக்கிறோம்.
- நீங்கள் (அல்லது நிறுவன நிர்வாகி) இயக்கிய செயலி / புஷ் அறிவிப்புகளை அனுப்ப மட்டுமே டோக்கலைப் பயன்படுத்துகிறோம்.
- பின்னர் செயலியில் பார்க்க, அறிவிப்பு வரலாறு எங்கள் சேவையகத்தில் சேமிக்கப்படும்.
- அறிவிப்பு அமைப்புகளில் நிகழ்வுகளை இயக்கலாம் / நிறுத்தலாம். வெளியேறும்போது அந்தச் சாதன டோக்கலை முடிந்தவரை ரத்து செய்கிறோம். தொலைபேசி அல்லது உலாவி அமைப்பிலும் அறிவிப்புகளை அணைக்கலாம்.
- மூன்றாம் தரப்பு விளம்பரத்திற்குப் புஷ் அறிவிப்புகளைப் பயன்படுத்துவதில்லை.
6. Server storage
Account, loan, customer, photo, and file data are stored on Macrossoft servers (hosted in India, currently AWS in the Mumbai region) so the shop can use the same records on web and mobile.
கணக்கு, கடன், வாடிக்கையாளர், புகைப்படம் மற்றும் கோப்புத் தரவு மாக்ரோஸ்சாஃப்ட் சேவையகங்களில் சேமிக்கப்படும் (இந்தியாவில், தற்போது மும்பை AWS). கடை வலையிலும் மொபைலிலும் அதே பதிவுகளைப் பயன்படுத்த இது.
- Database: users, company settings, customers, KYC fields, loans, receipts, collections, and related operational records for that tenant.
- File storage: KYC photos, pledge photos, PDFs, and other uploads. Files are stored either on our application server disk or in object storage (for example Amazon S3) under the company’s tenant. Downloads use time-limited authorised links. Other companies cannot see your files.
- Plan limits: photo and file volume is limited by the company’s subscription storage quota.
- Backups: we keep whole-server backups for disaster recovery. A company admin may optionally connect their own Google Drive to export an archive; that uses Google’s Drive with the shop’s Google account, limited to files the shop creates through this connection.
- Access: staff see data according to their company permissions. Macrossoft personnel access tenant data only as needed to operate the service, billing, or support.
- தரவுத்தளம்: அந்த நிறுவனத்திற்கான பயனர்கள், அமைப்புகள், வாடிக்கையாளர்கள், KYC புலங்கள், கடன்கள், ரசீதுகள், வசூல் மற்றும் தொடர்புடைய பதிவுகள்.
- கோப்புச் சேமிப்பு: KYC புகைப்படங்கள், அடகு புகைப்படங்கள், PDF மற்றும் பிற பதிவேற்றங்கள். கோப்புகள் எங்கள் சேவையக வட்டில் அல்லது ஆப்ஜெக்ட் சேமிப்பில் (எ.கா. Amazon S3) அந்த நிறுவனத்தின் கீழ் இருக்கும். பதிவிறக்கங்கள் காலவரையறுக்கப்பட்ட அங்கீகரிக்கப்பட்ட இணைப்புகள். பிற நிறுவனங்கள் உங்கள் கோப்புகளைப் பார்க்க முடியாது.
- திட்ட வரம்பு: புகைப்பட / கோப்பு அளவு சந்தா சேமிப்பு ஒதுக்கீட்டால் வரையறுக்கப்படும்.
- காப்புப் பிரதி: பேரிடர் மீட்புக்கு முழு சேவையக காப்புப் பிரதி வைக்கிறோம். நிர்வாகி விரும்பினால் சொந்த Google Drive-ஐ இணைத்து காப்பகத்தை ஏற்றுமதி செய்யலாம்; அது கடையின் Google கணக்கில், இந்த இணைப்பு உருவாக்கும் கோப்புகளுக்கு மட்டும்.
- அணுகல்: ஊழியர்கள் நிறுவன அனுமதிகளின்படி தரவைப் பார்ப்பார்கள். மாக்ரோஸ்சாஃப்ட் பணியாளர்கள் சேவை, பில்லிங் அல்லது ஆதரவுக்குத் தேவைப்படும்போது மட்டும் அணுகுவார்கள்.
7. Other information we process
- Business records the shop enters: borrower identity and contact details, addresses, nominees, loan amounts, gold item details, receipts, and accounts.
- Billing details for the shop subscription (plan, invoices). Card, UPI, or netbanking checkout is handled by Razorpay; we receive payment and subscription status, not your full card number. Recurring subscription charges use a UPI or card mandate authorised through Razorpay.
- Technical logs: IP address, device type, app version, and error logs, used to secure and run the service.
- We do not run third-party advertising SDKs and do not sell data to data brokers.
- கடை உள்ளிடும் வணிகப் பதிவுகள்: கடன் வாங்குபவர் அடையாளம் மற்றும் தொடர்பு, முகவரி, நியமனம், கடன் தொகை, தங்கப் பொருள் விவரம், ரசீதுகள், கணக்குகள்.
- கடை சந்தா பில்லிங் (திட்டம், விலைப்பட்டியல்). அட்டை, UPI அல்லது நெட் பேங்கிங் செலுத்தலை Razorpay கையாளும்; நாங்கள் செலுத்தல் மற்றும் சந்தா நிலையைப் பெறுவோம், முழு அட்டை எண்ணை அல்ல. திரும்பத் திரும்ப சந்தா வசூல் Razorpay வழி UPI/அட்டை mandate அனுமதியில் நடைபெறும்.
- தொழில்நுட்ப பதிவுகள்: IP முகவரி, சாதன வகை, செயலி பதிப்பு, பிழைப் பதிவுகள் — சேவையை இயக்கவும் பாதுகாக்கவும்.
- மூன்றாம் தரப்பு விளம்பர SDK-களை இயக்குவதில்லை. தரகு நிறுவனங்களுக்குத் தரவை விற்பதில்லை.
8. Who we share data with
- Your company: other authorised users in the same shop, as set by that shop’s permissions.
- Infrastructure: cloud hosting and backup (Amazon Web Services in India), and file object storage when enabled.
- Google: if you use Google sign-in or Google Drive backup (only the scopes you authorise).
- Firebase / Google: FCM to deliver push notifications.
- SMS provider (for example MSG91): mobile number and message content for OTP or other server-sent SMS.
- Razorpay: subscription billing, checkout, and payment status.
- Meta / WhatsApp: if the shop enables WhatsApp send, message content and customer numbers the shop chooses to send.
- Authorities when required by applicable Indian law.
- உங்கள் நிறுவனம்: அதே கடையின் அனுமதியுள்ள பிற பயனர்கள்.
- உள்கட்டமைப்பு: மேக ஹோஸ்டிங் மற்றும் காப்புப் பிரதி (இந்தியாவில் Amazon Web Services), இயக்கப்பட்டிருந்தால் கோப்புச் சேமிப்பு.
- Google: Google உள்நுழைவு அல்லது Google Drive காப்புப் பிரதி (நீங்கள் அனுமதிக்கும் வரம்பு மட்டும்).
- Firebase / Google: புஷ் அறிவிப்புகளுக்கு FCM.
- SMS வழங்குநர் (எ.கா. MSG91): OTP அல்லது சேவையக SMS-க்கு அலைபேசி எண் மற்றும் செய்தி.
- Razorpay: சந்தா பில்லிங், checkout மற்றும் செலுத்தல் நிலை.
- Meta / WhatsApp: கடை WhatsApp அனுப்பலை இயக்கினால், கடை தேர்ந்தெடுக்கும் வாடிக்கையாளர் எண் மற்றும் செய்தி.
- இந்தியச் சட்டம் கோரும்போது அதிகாரிகள்.
9. How long we keep data
We keep login, loan, KYC, and file data while the company account is active so the shop can run its books. After a company is closed, we delete or anonymise tenant data within a reasonable period, except where Indian tax, accounting, or other law requires a longer hold, or where we must keep records of a dispute or security incident. Device tokens are removed when you log out or the token is revoked. On-device biometric or PIN never leaves the device.
கடை கணக்குகளை நடத்த, நிறுவனக் கணக்கு இயங்கும் வரை உள்நுழைவு, கடன், KYC மற்றும் கோப்புத் தரவை வைத்திருப்போம். நிறுவனம் மூடப்பட்ட பிறகு, இந்திய வரி / கணக்கு அல்லது பிற சட்டம் நீண்ட காலம் வைக்கச் சொல்லாத வரை, அல்லது தகராறு / பாதுகாப்பு நிகழ்வு பதிவு தேவைப்படாத வரை, நியாயமான காலத்தில் தரவை நீக்குவோம் அல்லது அடையாளம் நீக்குவோம். வெளியேறும்போதோ டோக்கல் ரத்து செய்யப்படும்போதோ சாதன டோக்கல்கள் நீக்கப்படும். சாதனத்தில் உள்ள கைரேகை / PIN சாதனத்தை விட்டு வெளியேறாது.
10. Your choices and rights
You can access or correct your own staff profile in the app. Company admins manage staff users and customer records for their shop. Under the Digital Personal Data Protection Act, 2023, you may request access, correction, or erasure of personal data we hold, subject to legal exceptions (for example records the shop must keep for lending or tax). Borrower KYC and loan files are entered by the shop; we treat the shop as the primary controller of that customer data and will assist the shop when a lawful request is made. To exercise a request, email admin@macrossoft.com from the registered account email.
செயலியில் உங்கள் ஊழியர் சுயவிவரத்தைப் பார்க்க / திருத்தலாம். நிறுவன நிர்வாகிகள் தங்கள் கடைக்கான ஊழியர் மற்றும் வாடிக்கையாளர் பதிவுகளை நிர்வகிப்பர். டிஜிட்டல் தனிப்பட்ட தரவுப் பாதுகாப்புச் சட்டம், 2023-ன் கீழ், சட்ட விதிவிலக்குகளுக்கு உட்பட்டு (கடன் அல்லது வரிக்குக் கடை வைத்திருக்க வேண்டிய பதிவுகள் போன்றவை) அணுகல், திருத்தம் அல்லது நீக்கத்தைக் கோரலாம். வாடிக்கையாளர் KYC மற்றும் கடன் கோப்புகளைக் கடையே உள்ளிடுகிறது; அந்த வாடிக்கையாளர் தரவின் முதன்மை பொறுப்பு கடைக்கு. சட்டப்பூர்வக் கோரிக்கையில் கடைக்கு உதவுவோம். கோரிக்கைக்குப் பதிவு மின்னஞ்சலிலிருந்து admin@macrossoft.com எழுதவும்.
11. Security
We use HTTPS, hashed passwords, tenant separation, permission checks, and signed file links. No method of transmission or storage is perfectly secure. Use a strong password, do not share logins, and lock the device.
HTTPS, ஹாஷ் செய்யப்பட்ட கடவுச்சொற்கள், நிறுவனப் பிரிப்பு, அனுமதிச் சோதனைகள், கையொப்பமிட்ட கோப்பு இணைப்புகளைப் பயன்படுத்துகிறோம். எந்தப் பரிமாற்றமும் சேமிப்பும் முழுமையாகப் பாதுகாப்பானதல்ல. வலுவான கடவுச்சொல் பயன்படுத்துங்கள், உள்நுழைவைப் பகிர வேண்டாம், சாதனத்தைப் பூட்டுங்கள்.
12. Children
The service is for adult shop staff and business use. It is not directed at children under 18. We do not knowingly create staff accounts for children.
இந்தச் சேவை வயது வந்த கடை ஊழியர்கள் மற்றும் வணிகப் பயன்பாட்டுக்கானது. 18 வயதுக்குக் குறைந்த குழந்தைகளுக்கானதல்ல. குழந்தைகளுக்கு ஊழியர் கணக்குகளை வேண்டுமென்றே உருவாக்குவதில்லை.
13. Changes
We may update this policy when the product or the law changes. The effective date at the top will change. The current version is always at https://loanapp.macrossoft.com/privacy.
தயாரிப்பு அல்லது சட்டம் மாறும்போது இந்தக் கொள்கையைப் புதுப்பிக்கலாம். மேலே உள்ள நடைமுறைத் தேதி மாறும். தற்போதைய பதிப்பு எப்போதும் https://loanapp.macrossoft.com/privacy-ல் இருக்கும்.
14. Contact
Questions about login data, KYC photos, SMS, notifications, or server storage:
Email: admin@macrossoft.com
Web: https://macrossoft.com/
உள்நுழைவு தரவு, KYC புகைப்படங்கள், SMS, அறிவிப்புகள் அல்லது சேவையக சேமிப்பு குறித்த கேள்விகள்:
மின்னஞ்சல்: admin@macrossoft.com
இணையம்: https://macrossoft.com/