Privacy Policy — Ukkera Safety
Last Updated: June 24, 2026
1. Introduction
Ukkera Safety ("Safety", "we", "us", or "our") is a comprehensive Contractor Safety & Compliance Management System (CSCMS) operated by Ukkera Tech LLC. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Safety platform, including the web application, mobile application, and associated services (collectively, the "Service"). By using the Service, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
We collect the following categories of information to provide and improve our Service:
- Personal Identification Information: Name, email address, phone number, government-issued ID, and employment details of contractor workers, admins, and safety officers.
- Certification & Training Records: Professional certifications, training history, permits, and competency assessments required to match workers with appropriate site tasks.
- Geolocation Data: Precise GPS location data collected when workers check in and out of site visits, used to verify presence within approved geofenced perimeters.
- Temporal Data: Timestamp records of all actions including check-in, check-out, checklist submissions, and violation reports.
- Photographic Evidence: Photos uploaded during safety inspections, checklist responses, site audits, and corrective action evidence.
- Compliance Data: Dynamic checklist responses, safety inspection results, violation records, corrective action plans, and audit trail logs.
- Device Information: Device type, operating system, unique device identifiers, and app version for troubleshooting and service optimization.
3. How We Use Your Information
We use the collected information for the following purposes:
- To operate, maintain, and improve the Safety platform and its features.
- To verify worker identities, certifications, and site eligibility before deployment.
- To enforce safety protocols through dynamic checklists and conditional violation triggers.
- To generate GPS-verified, timestamped audit trails for regulatory compliance and incident investigations.
- To communicate with users regarding their visits, violations, corrective actions, and account status.
- To analyze usage patterns and improve safety workflows, checklist effectiveness, and platform performance.
- To comply with legal obligations, industry safety standards, and regulatory reporting requirements.
- To detect, prevent, and address technical issues, fraud, and unauthorized access.
4. Data Sharing and Disclosure
We may share your information in the following circumstances:
- With the Vendor/Host Company: Site owners and vendor administrators who define safety rules and monitor compliance have access to worker data, checklist submissions, and violation records pertaining to their sites.
- With Safety Officers: Authorized vendor safety officers can access visit data, inspection results, and corrective action status to perform audits.
- With Regulatory Bodies: We may disclose information when required by law, regulation, or legal process, or to protect the rights, property, or safety of Ukkera, our users, or others.
- With Service Providers: We engage third-party service providers (cloud infrastructure, analytics, communication tools) who process data on our behalf under strict data processing agreements.
- Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.
We require all third parties to respect the security of your personal data and to treat it in accordance with applicable law.
5. Data Security
We implement industry-standard security measures to protect your information:
- Encryption: All data in transit is protected using TLS 1.3. Data at rest is encrypted using AES-256.
- Access Control: Role-Based Access Control (RBAC) ensures that users can only access data necessary for their role. Contractor companies are strictly isolated from one another.
- Audit Logging: All checklist submissions, edits, GPS stamps, and access events are immutably logged with SHA-256 checksums to prevent tampering and ensure regulatory compliance.
- Offline Security: Checklist data completed offline is stored encrypted on the device and synced securely when connectivity is restored.
- Regular Security Audits: We conduct regular vulnerability assessments, penetration testing, and security reviews of our systems and infrastructure.
6. Data Retention
We retain your information for as long as your account is active or as needed to provide you the Service. Compliance and audit trail data, including checklist submissions, violation records, and GPS logs, are retained for a minimum of six (6) years to comply with regulatory requirements and industry standards.
Upon termination of your account or at the end of the retention period, we will securely delete or anonymize your data unless otherwise required by law.
7. Your Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Right to Access: Request a copy of the personal data we hold about you.
- Right to Rectification: Request correction of inaccurate or incomplete data.
- Right to Deletion: Request deletion of your personal data, subject to legal retention requirements.
- Right to Restrict Processing: Request restriction of processing of your personal data under certain circumstances.
- Right to Data Portability: Request transfer of your data to another service provider in a structured, commonly used format.
- Right to Object: Object to processing of your personal data for specific purposes.
To exercise any of these rights, please contact us using the information provided in the Contact section.
8. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. We encourage you to review this Privacy Policy periodically for any changes. Continued use of the Service after changes become effective constitutes your acceptance of the updated policy.
9. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
- Email: [email protected]
- Website: ukkera.org
We will respond to your inquiry within a reasonable timeframe, typically within 30 days.