Railway Crew

App: Railway Crew (version 1.0.0)  Â·  Effective: May 2026  Â·  Platforms: Android & iOS

Privacy Policy

This Privacy Policy describes how the Railway Crew mobile application (“App”) collects, uses, stores, and protects information when you use it as an authorized railway crew member. The App is designed for operational compliance and connects to the Railway Monitor backend.

1. Who operates this App

Railway Crew is the mobile application for railway crew members (USER role accounts). It supports daily operational checklists, face verification, profile management, and submission history.

Remote Monitoring & Operation App — design and development by TRO Department Bhavnagar Division, Western Railway.

Copyright 2026. All rights reserved.

The App communicates with the Railway Monitor service at railwaymonitor.in (default API: https://railwaymonitor.in/api). Administrative functions (form templates, user management for admins) are handled in a separate admin console, not in this App.

2. Who this policy applies to

This policy applies to registered crew members who:

  • Hold a USER role account on the Railway Monitor system;
  • Sign up or log in through the App with a User ID and password; and
  • Use the App for sign-on/sign-off checklists, face enrollment, and related features.

The App is not intended for public use, unregistered users, or administrator accounts. If your account is not a crew USER account, you will not be granted access after login or sign-up.

3. Information we collect

Depending on how you use the App, we may collect the following categories of information:

Account and profile information

  • User ID (crew login ID), full name, password (stored securely on the server, not in plain text in the App)
  • Optional: email address, mobile number
  • Crew type, base headquarter
  • Profile photo (avatar), if you upload one

Operational and form data

  • Daily checklist responses (text answers per question)
  • Staff type selected (ALP, LP, or TM) and duty type (SIGN-ON or SIGN-OFF)
  • Submission history, including questions and answers from past submissions
  • Date and metadata associated with form submissions

Face verification data

  • Photographs you capture with the camera or select from your gallery for face enrollment
  • Face enrollment status returned by the server

Technical and session data

  • Access token issued at login, stored locally in secure storage on your device
  • API request and response data necessary to operate the App (e.g., loading today’s form, profile updates)
  • Standard server and application logs on the backend (as configured by your organization)

Delete account requests

If you use Delete account from the App menu, you may be directed to a hosted web page where you enter your User ID and password to submit a deletion request. Processing of that request is subject to your organization’s operational policy and backend procedures.

4. How we use your information

We use collected information to:

  • Authenticate you and maintain your signed-in session
  • Display your personalized home dashboard (name, crew ID, latest submission, face status)
  • Load and submit role- and duty-specific daily checklists (ALP / LP / TM, sign-on / sign-off)
  • Store and display your submission history
  • Enroll and verify your face image per your railway’s verification requirements
  • Allow you to view and update your profile, including optional password change
  • Process account deletion requests submitted through the hosted delete-account page
  • Maintain security (e.g., sign you out on unauthorized API responses)
  • Support operational monitoring and compliance for Western Railway crew processes

We do not use the App to sell your personal information to third parties.

5. Sharing of information

Your information may be shared only as follows:

  • Railway Monitor backend — Data you enter in the App is sent to the API server (default: https://railwaymonitor.in/api) to provide App functionality. Your organization controls this server and its administrators.
  • Authorized personnel — Administrators using the separate admin console may access crew and submission data as permitted by your organization’s policies and applicable law.
  • Hosted delete-account page — If configured, deletion requests may be submitted via an external static page (e.g., Render-hosted URL). Credentials entered there should be processed only by your approved backend or operations team.
  • Legal requirements — We may disclose information if required by law, regulation, or a valid governmental or railway authority request.

6. Storage and security

  • On your device: Your access token is stored using flutter_secure_storage (platform secure storage). Other App data is not intended for long-term local storage beyond what the operating system caches.
  • On the server: Profile, forms, face images, and submission history are stored on the Railway Monitor backend. Security measures (encryption in transit via HTTPS, access controls, server hardening) depend on your deployment configuration.
  • Session handling: If the server returns 401 Unauthorized, the App clears your token and returns you to the login screen.

No method of transmission or storage is completely secure. You are responsible for keeping your User ID and password confidential and for securing your device.

7. Face enrollment

The App allows you to enroll your face by taking a photo with the camera or choosing an image from your photo library. Images may be compressed before upload to reduce size. Face data is used for verification status displayed in the App and processed according to your organization’s face-enrollment policy.

Do not enroll another person’s face or use images you are not authorized to submit.

8. Device permissions

The App may request the following permissions on your mobile device:

Permission Purpose
Internet API communication, loading hosted pages (e.g., delete account)
Camera Capturing photos for face enrollment
Photo library Selecting images for face enrollment or profile avatar

You can revoke permissions in your device settings; some features may not work without them.

9. Account deletion

You may request deletion of your crew account from the App drawer: Delete account. This opens a hosted web form (in-app WebView) where you enter your User ID and password. Submitting the form indicates that a deletion request has been sent; actual deletion is completed by your organization’s backend or operations process, not automatically by the static web page alone.

Deleting your account may remove or anonymize your profile, submissions, and face enrollment data on the server, subject to legal and operational retention requirements.

10. Data retention

We retain information for as long as your account is active and as needed to fulfill operational, safety, audit, and legal obligations of Western Railway and your division. Submission history and checklist data may be retained for compliance reporting. Retention periods are defined by your organization’s data governance policy.

11. Your choices and rights

Depending on applicable law and your organization’s policy, you may have the right to:

  • Access and update profile information in the App (Profile screen)
  • Change your password from the Profile screen
  • Review submission history in the App
  • Request correction or deletion of your account via Delete account or through your TRO / IT contact
  • Log out at any time from the home drawer, which clears your session token on the device

For requests that cannot be completed in the App, contact your division administrator or the contact listed in Section 14.

12. Children

The App is intended for authorized railway crew members in a professional capacity. It is not directed at children under 13 (or the minimum age required in your jurisdiction), and we do not knowingly collect personal information from children.

13. Changes to this policy

We may update this Privacy Policy from time to time. The “Effective” date at the top of this page will be revised when changes are published. Continued use of the App after changes constitutes acceptance of the updated policy, unless your organization requires separate consent.

14. Contact

For privacy questions, data access requests, or issues with your crew account, contact:

  • TRO Department, Bhavnagar Division, Western Railway (app operator / developer)
  • Your division IT or crew administration contact for Railway Monitor account issues
  • Backend / API support via your organization’s channels for railwaymonitor.in

When reporting a problem, include your crew User ID, device type (Android/iOS), and App version (1.0.0) where possible.