Privacy Policy

Last Updated: January 1, 2025

HipStaff is committed to protecting your privacy and complying with the Philippine Data Privacy Act of 2012 (Republic Act No. 10173). This Privacy Policy explains how we collect, use, and protect your personal information.

1. Information We Collect

We collect the following types of information:

  • Account Information: Name, email address, phone number, company name
  • Employee Data: Names, addresses, contact details, employment information, payroll data
  • Payment Information: Billing address, payment method details (processed securely by our payment providers)
  • Usage Data: How you interact with our platform, IP addresses, browser type, device information

2. How We Use Your Information

We use your information to:

  • Provide and maintain our payroll and HR services
  • Process payroll, generate reports, and ensure compliance with Philippine labor laws
  • Communicate with you about your account and our services
  • Improve our platform and develop new features
  • Comply with legal obligations and prevent fraud

3. Data Sharing and Disclosure

We do not sell your personal information. We may share your data with:

  • Service Providers: Cloud hosting (AWS), payment processors, email services
  • Government Agencies: When required by Philippine law (e.g., BIR, SSS, PhilHealth, Pag-IBIG)
  • Legal Requirements: To comply with court orders or legal processes

4. Data Security

We implement industry-standard security measures to protect your data, including:

  • 256-bit SSL encryption for data in transit
  • AES-256 encryption for data at rest
  • Regular security audits and penetration testing
  • Role-based access controls
  • Daily automated backups

5. Your Rights Under the Data Privacy Act

As a data subject, you have the right to:

  • Access: Request a copy of your personal data
  • Correction: Update or correct inaccurate information
  • Erasure: Request deletion of your data (subject to legal retention requirements)
  • Portability: Receive your data in a machine-readable format
  • Object: Object to certain processing of your data
  • Withdraw Consent: Withdraw consent for data processing (where applicable)

6. Data Retention

We retain your data for as long as your account is active or as needed to provide services. Payroll and employee records are retained for 10 years as required by Philippine labor laws and BIR regulations.

7. Cookies and Tracking

We use cookies and similar technologies to improve your experience, analyze usage, and provide personalized content. You can control cookies through your browser settings.

8. International Data Transfers

Your data is stored in AWS Singapore data centers. We ensure that any international transfers comply with the Philippine Data Privacy Act and implement appropriate safeguards.

9. Children's Privacy

Our services are not directed to individuals under 18 years of age. We do not knowingly collect personal information from children.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes via email or through our platform.

11. Contact Us

For questions about this Privacy Policy or to exercise your data rights, contact our Data Protection Officer:

Data Protection Officer

Email: privacy@hipstaff.asia

Address: Cebu City, Philippines

National Privacy Commission

If you believe your data privacy rights have been violated, you may file a complaint with the National Privacy Commission at privacy.gov.ph