Security, Compliance & Data Governance

Privacy Policy for DocuTrack HR

Effective Date: October 2026 (Updated for DocuTrack HR Enterprise v2.1)

This Privacy Policy describes how DocuTrack HR (“the Add-on”, “we”, “our”) collects, uses, handles, and safeguards your data when you install and use our Google Sheets™ Add-on.

Our Core Data Philosophy: Your data belongs exclusively to you and your organization. DocuTrack HR is engineered with an on-device architecture that runs entirely within your Google Workspace™ account. At no time is your employee data, names, email addresses, or document dates transmitted to or stored on any external database owned by the developer.

1. The Core Principle: What We Do NOT Do

To ensure maximum security for international schools, universities, and enterprise HR departments, we are completely transparent about what this Add-on does not and cannot do:

2. OAuth Permissions & Scopes: Exactly Why We Need Them

To automate your HR document tracking, DocuTrack HR requires specific permissions granted via Google OAuth. The Add-on operates on the principle of least privilege:

https://www.googleapis.com/auth/spreadsheets.currentonly

View and manage your spreadsheets (Active Sheet Only)

Why it is needed: The Add-on needs permission to read the dates, names, and email addresses in the currently active spreadsheet to calculate document expiration statuses. It writes "VALID", "APPROACHING", and "URGENT" color pills and email timestamp logs directly back into your designated output columns. It cannot access any other spreadsheets in your Google Drive™—only the specific file you have open.

https://www.googleapis.com/auth/script.send_mail

Send email as you

Why it is needed: DocuTrack HR utilizes Google's standard mail service to dispatch automated email notifications to the staff addresses listed in your spreadsheet, as well as the weekly digest to your HR department. All emails originate from your own authenticated Gmail account. We cannot read, delete, or manage your inbox; we only have permission to send these automated alerts.

https://www.googleapis.com/auth/script.scriptapp

Allow this application to run when you are not present

Why it is needed: This permission allows the Add-on to establish time-driven background triggers (such as checking expiration dates daily at 8:00 AM or executing chunked batches for large staff rosters). This ensures automation functions reliably even when the spreadsheet is closed and no user is logged in.

https://www.googleapis.com/auth/script.container.ui

Display and run third-party web content

Why it is needed: This allows the Add-on to display its interactive settings menu and configuration dashboard natively inside your Google Sheets™ sidebar.

3. Google API Services User Data Policy (Limited Use Disclosure)

DocuTrack HR's use and transfer to any other app of information received from Google APIs will adhere strictly to the Google API Services User Data Policy, including the Limited Use requirements.

We strictly limit our API usage to providing and improving the user-facing features of HR document automation. We never transfer this data to any third party, nor do we use it for serving advertisements or training artificial intelligence / machine learning models.

4. Data Storage, Retention, and Location

All settings you configure in the DocuTrack HR sidebar (such as column mappings, custom email messages, reminder thresholds, and 60-day notification logs) are stored directly inside Google's PropertiesService.getDocumentProperties().

5. Data Deletion & Right to be Forgotten (GDPR Compliance)

You maintain complete, immediate control over all stored data. You can delete all DocuTrack HR configuration, settings, and logs at any time via any of the following methods:

  1. In-App Factory Reset: Open the sidebar, navigate to the Global Settings tab, and click Clear System Data. This instantly wipes all document properties and deletes all active triggers.
  2. Deleting the Spreadsheet: Deleting the Google Sheet permanently purges all associated document properties from Google servers.
  3. Uninstalling the Add-on: Uninstalling DocuTrack HR from Google Workspace immediately revokes all OAuth permissions and permanently cancels all future background triggers.
  4. License Server Erasure: If you are a PRO subscriber and wish to purge your verified email address from our AWS license registry, click "Delete Cloud License Data" in the sidebar or email us directly at sethi+docutrack@eduflip.net for immediate erasure within 24 hours.

6. Security Measures

Because DocuTrack HR operates within the Google Cloud infrastructure, your data benefits from Google's enterprise-grade security protocols:

7. Contact Us & Inquiries

If you have questions, compliance verification requests, or require assistance regarding this Privacy Policy, please contact our data governance team:

DocuTrack HR Data Governance
Lead Developer: Sethi De Clercq
Email: sethi+docutrack@eduflip.net
Website: sethideclercq.com