Privacy Policy
This Privacy Policy describes how the Railway Crew mobile application (“App”) collects, uses, stores, and protects information when you use it as an authorized railway crew member. The App is designed for operational compliance and connects to the Railway Monitor backend.
1. Who operates this App
Railway Crew is the mobile application for railway crew members
(USER role accounts). It supports daily operational checklists, face
verification, profile management, and submission history.
Remote Monitoring & Operation App — design and development by TRO Department Bhavnagar Division, Western Railway.
Copyright 2026. All rights reserved.
The App communicates with the Railway Monitor service at
railwaymonitor.in (default API:
https://railwaymonitor.in/api). Administrative functions (form templates,
user management for admins) are handled in a separate admin console, not in this App.
2. Who this policy applies to
This policy applies to registered crew members who:
- Hold a
USERrole account on the Railway Monitor system; - Sign up or log in through the App with a User ID and password; and
- Use the App for sign-on/sign-off checklists, face enrollment, and related features.
The App is not intended for public use, unregistered users, or
administrator accounts. If your account is not a crew USER account, you
will not be granted access after login or sign-up.
3. Information we collect
Depending on how you use the App, we may collect the following categories of information:
Account and profile information
- User ID (crew login ID), full name, password (stored securely on the server, not in plain text in the App)
- Optional: email address, mobile number
- Crew type, base headquarter
- Profile photo (avatar), if you upload one
Operational and form data
- Daily checklist responses (text answers per question)
- Staff type selected (ALP, LP, or TM) and duty type (SIGN-ON or SIGN-OFF)
- Submission history, including questions and answers from past submissions
- Date and metadata associated with form submissions
Face verification data
- Photographs you capture with the camera or select from your gallery for face enrollment
- Face enrollment status returned by the server
Technical and session data
- Access token issued at login, stored locally in secure storage on your device
- API request and response data necessary to operate the App (e.g., loading today’s form, profile updates)
- Standard server and application logs on the backend (as configured by your organization)
Delete account requests
If you use Delete account from the App menu, you may be directed to a hosted web page where you enter your User ID and password to submit a deletion request. Processing of that request is subject to your organization’s operational policy and backend procedures.
4. How we use your information
We use collected information to:
- Authenticate you and maintain your signed-in session
- Display your personalized home dashboard (name, crew ID, latest submission, face status)
- Load and submit role- and duty-specific daily checklists (ALP / LP / TM, sign-on / sign-off)
- Store and display your submission history
- Enroll and verify your face image per your railway’s verification requirements
- Allow you to view and update your profile, including optional password change
- Process account deletion requests submitted through the hosted delete-account page
- Maintain security (e.g., sign you out on unauthorized API responses)
- Support operational monitoring and compliance for Western Railway crew processes
We do not use the App to sell your personal information to third parties.
6. Storage and security
- On your device: Your access token is stored using flutter_secure_storage (platform secure storage). Other App data is not intended for long-term local storage beyond what the operating system caches.
- On the server: Profile, forms, face images, and submission history are stored on the Railway Monitor backend. Security measures (encryption in transit via HTTPS, access controls, server hardening) depend on your deployment configuration.
-
Session handling: If the server returns
401 Unauthorized, the App clears your token and returns you to the login screen.
No method of transmission or storage is completely secure. You are responsible for keeping your User ID and password confidential and for securing your device.
7. Face enrollment
The App allows you to enroll your face by taking a photo with the camera or choosing an image from your photo library. Images may be compressed before upload to reduce size. Face data is used for verification status displayed in the App and processed according to your organization’s face-enrollment policy.
Do not enroll another person’s face or use images you are not authorized to submit.
8. Device permissions
The App may request the following permissions on your mobile device:
| Permission | Purpose |
|---|---|
| Internet | API communication, loading hosted pages (e.g., delete account) |
| Camera | Capturing photos for face enrollment |
| Photo library | Selecting images for face enrollment or profile avatar |
You can revoke permissions in your device settings; some features may not work without them.
9. Account deletion
You may request deletion of your crew account from the App drawer: Delete account. This opens a hosted web form (in-app WebView) where you enter your User ID and password. Submitting the form indicates that a deletion request has been sent; actual deletion is completed by your organization’s backend or operations process, not automatically by the static web page alone.
Deleting your account may remove or anonymize your profile, submissions, and face enrollment data on the server, subject to legal and operational retention requirements.
10. Data retention
We retain information for as long as your account is active and as needed to fulfill operational, safety, audit, and legal obligations of Western Railway and your division. Submission history and checklist data may be retained for compliance reporting. Retention periods are defined by your organization’s data governance policy.
11. Your choices and rights
Depending on applicable law and your organization’s policy, you may have the right to:
- Access and update profile information in the App (Profile screen)
- Change your password from the Profile screen
- Review submission history in the App
- Request correction or deletion of your account via Delete account or through your TRO / IT contact
- Log out at any time from the home drawer, which clears your session token on the device
For requests that cannot be completed in the App, contact your division administrator or the contact listed in Section 14.
12. Children
The App is intended for authorized railway crew members in a professional capacity. It is not directed at children under 13 (or the minimum age required in your jurisdiction), and we do not knowingly collect personal information from children.
13. Changes to this policy
We may update this Privacy Policy from time to time. The “Effective” date at the top of this page will be revised when changes are published. Continued use of the App after changes constitutes acceptance of the updated policy, unless your organization requires separate consent.
14. Contact
For privacy questions, data access requests, or issues with your crew account, contact:
- TRO Department, Bhavnagar Division, Western Railway (app operator / developer)
- Your division IT or crew administration contact for Railway Monitor account issues
- Backend / API support via your organization’s channels for railwaymonitor.in
When reporting a problem, include your crew User ID, device type (Android/iOS), and App version (1.0.0) where possible.