Bridze EyeTrack — Privacy Policy
Effective date: 9 July 2026

This Privacy Policy explains how Bridze Innovations Private Limited, a company incorporated under the laws of India (“Bridze”, “we”, “us”), handles information in connection with the Bridze EyeTrack workforce-monitoring service (the “Service”). It applies to the organizations that subscribe to the Service (“Customers”) and to the people who use the Customer’s dashboard.

1. Our role

EyeTrack is a tool that Customers use to monitor computers they own or control. In respect of the screenshots and activity data captured through the Service, the Customer is the data controller / data fiduciary and Bridze acts only as a data processor, processing that data on the Customer’s instructions to provide the Service. Each Customer is responsible for the lawfulness of its monitoring and for informing and obtaining any required consent from the people it monitors.

2. Information we handle

3. Where monitoring data is stored

Screenshots are stored in the Customer’s own Google Drive, connected by the Customer through Google OAuth. Bridze does not keep copies of screenshots on its own servers; only a reference (the Google Drive file identifier) is stored in our database so authorized admins can view images through the dashboard. Images are streamed privately to signed-in admins and are never made public.

4. Google user data and API scopes

When a Customer connects Google Drive, EyeTrack requests the “See, edit, create and delete only the specific Google Drive files you use with this app” permission (.../auth/drive.file). With this scope EyeTrack can only access files it creates itself — it cannot see or touch any other files in the Customer’s Google Drive.

Limited Use disclosure. Bridze EyeTrack’s use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Specifically, we use Google user data only to provide and improve the Service’s storage feature; we do not use it for advertising, we do not sell it, and we do not transfer it to third parties except as necessary to provide the Service, to comply with applicable law, or as part of a merger or acquisition. We do not allow humans to read this data except with the Customer’s consent, for security or to comply with law, or where the data has been aggregated and anonymized.

5. How we use information

We use account and usage information to operate, secure, support, and improve the Service, to provision and manage Customer organizations, and to communicate with Customers about their accounts. We use monitoring data solely to store and display it back to the Customer’s authorized admins.

6. Sharing

We do not sell personal information. We share information only with service providers that help us run the Service (for example, our hosting and database providers), bound by confidentiality obligations; when required by law; or in connection with a business transfer. Monitoring data remains in the Customer’s own storage and is not shared by us.

7. Security

We apply reasonable technical and organizational measures, including encryption in transit, encryption of stored access tokens, access controls, and admin-only private viewing. No method of transmission or storage is completely secure, but we work to protect information under our control.

8. Retention and deletion

Monitoring data is retained in the Customer’s own Google Drive and is deleted by the Customer at its discretion. A Customer may disconnect Google Drive or revoke Bridze’s access at any time from its Google Account settings, after which Bridze can no longer access the stored files. On termination we cease processing and, on request, delete Customer account records we hold, subject to law.

9. Your choices

Customers control their data and can revoke Google Drive access, request deletion of account records, or contact us with any privacy request. Individuals who are monitored should direct requests to their own organization (the Customer), which controls that data.

10. Children

The Service is intended for business use and is not directed to children.

11. Changes

We may update this Policy and will post the updated version here with a new effective date.

12. Contact

Questions about this Policy or your data: eyetrack@bridzeai.com. This Policy is governed by the laws of India.

← Back to home