Privacy Policy

Last updated 23 September 2026 · Effective 23 September 2026

Verso is an offline-first field data collection platform operated by Razite Private Limited ("Razite", "we", "us"). This policy explains what the Verso web application and the Verso Field mobile app collect, why, and what you can do about it.

Two kinds of data, and the difference matters. Some data is about you — your account. Other data is collected by you — the survey responses your team gathers in the field. Survey responses belong to the organisation whose workspace they were collected in, not to us. We store and process them on that organisation's behalf.

1. What we collect

Account information

  • Your name, username and email address.
  • A cryptographic hash of your password. We never store, and cannot recover, the password itself.
  • The workspaces and projects you belong to, and your role in each.
  • Optional profile details you choose to add, such as country.

Survey data you collect

  • The answers entered into forms your organisation designed.
  • Photos, audio, video and files attached to those answers.
  • GPS coordinates, where a form asks a location question.
  • Collection context recorded with each submission: the start and end time, the date, the account that submitted it, and a device identifier generated by the app.

Technical information

  • A device identifier the app generates for itself on first launch. It is random and is not your advertising ID, IMEI, or any hardware serial number.
  • Ordinary server logs — IP address, timestamp and requested URL — kept for security and troubleshooting.

We do not track you across apps or websites. We do not use advertising identifiers, advertising networks, tracking pixels, data brokers or behavioural advertising. When crash reporting is enabled, Sentry processes crash and diagnostic information on our behalf so we can find and fix faults. It is configured not to collect default personal information, screenshots, the app's view hierarchy or user-interaction breadcrumbs. We use that information only for service stability and security, never for advertising or tracking.

2. Device permissions the app requests

The mobile app asks for permissions only when a feature needs them, and only ever in response to a question in the form you are filling in. You can decline any of them; the rest of the app keeps working.

Permission When it is used What we do with it
Location (precise) Only while you are answering a location question, and only when you tap Capture. The coordinates and accuracy are stored as that question's answer. We never track your location in the background, and the app does not collect location while it is closed.
Camera When you take a photo or record video for a question. The captured file is stored as that answer and uploaded on sync.
Photo library / files When you choose an existing photo or attach a document. Only the file you pick is read. The app does not browse or index your library.
Microphone When you record audio for a question. The recording is stored as that answer and uploaded on sync.

3. Why we collect it

  • To provide the service: authenticating you, and storing and syncing your work.
  • To make the data usable by your organisation: showing it in the workspace, allowing review and correction, and producing exports.
  • To keep accounts secure and to investigate abuse or technical faults.
  • To contact you about the service — account confirmation, password resets, and material changes to this policy.

Depending on the context and the law that applies, we process this information to perform our contract with you or your organisation, to pursue our legitimate interests in operating and securing the Service, to comply with legal obligations, or with your consent. You can withdraw a device permission at any time in system settings.

4. How it is stored and secured

  • All traffic between the apps and our servers uses HTTPS (TLS).
  • Passwords are stored only as salted hashes.
  • Uploaded photos and files are held in object storage and served through short-lived, expiring links rather than public URLs.
  • Access is scoped by workspace and by role. Members of one workspace cannot read another's data, and within a workspace a collector sees only their own submissions unless given a reviewing role.
  • We use managed application, database and object-storage infrastructure. Data may be processed in countries where our providers or their subprocessors operate, subject to contractual and legal safeguards required by applicable law.
  • Data on your phone stays on your phone until it syncs. If you uninstall the app before syncing, unsent submissions are deleted with it and cannot be recovered.

5. Who we share it with

We do not sell your data, and we do not share it for advertising. We share it only with:

  • Your organisation. Administrators and reviewers of the workspace can see the submissions collected in it, including attached photos and locations.
  • Infrastructure providers who run the Service on our instructions, including our application and database hosting providers, Cloudflare R2 for object storage, Resend for transactional email, and Sentry for crash diagnostics when crash reporting is enabled. They process data for us under their service terms and data-protection commitments.
  • Authorities, where we are legally required to. We will tell you unless the law forbids it.

6. How long we keep it

Data Retention
Account information While the account is active. After a verified deletion request, we aim to remove it from active systems within 30 days, except where retention is required by law.
Survey responses and attachments Retained for the owning organisation, which controls deletion. See Account & Data Deletion.
Server logs Normally up to 90 days, and longer only where needed to investigate a security incident or meet a legal obligation.
Backups Deleted data may remain in encrypted backups for up to 30 days before it is overwritten. Backups are isolated and used only for disaster recovery.

7. Your rights

You can ask us to:

  • give you a copy of the personal data we hold about you;
  • correct anything inaccurate;
  • delete your account and associated personal data;
  • restrict or object to certain processing;
  • withdraw consent for a device permission — by turning it off in system settings.

To exercise any of these, email support@razite.com. We respond within 30 days, unless applicable law permits or requires a different period. If you believe we have handled your data improperly, you may complain to the competent data-protection or other supervisory authority in your jurisdiction.

Note that where the data is survey responses held for an organisation, we will refer your request to that organisation, since it decides what happens to its data.

8. Children

Verso is a workplace tool and is not directed at children. We do not knowingly create accounts for anyone under 18. Survey responses may describe people of any age; those are the responsibility of the organisation running the survey.

9. Changes to this policy

If we change this policy materially we will update the date above and notify account holders by email before the change takes effect.

10. Contact

support@razite.com
Razite Private Limited, House No. 32, Phase 3, Shahbaz Town, Quetta Cantt, Pakistan
Privacy enquiries are handled at the email address above.