Last updated: 7 July 2026
Applies to: AMD GatePass Android application (package com.amd.gatepass)
Rahul Dilip Pawar ("we", "us", "the Provider") operates the AMD GatePass application ("the App"), an enterprise gate-pass management system used by educational and institutional organizations to issue, approve, and track digital gate passes. This policy explains what data the App collects, why, and how it is handled.
The App is a business-to-business tool. Accounts are created and managed by an organization's administrators (a "Super Admin" or "Organization Admin"). If you are a student, staff member, or guard using the App, your account was provided to you by your organization, and that organization is the controller of your data. Direct questions about your records to your organization first.
We only collect the data needed to operate the gate-pass system. We do not sell personal data or use it for advertising.
Account and profile information. When an administrator creates your account we store your name, email address, assigned role (student, staff, HOD, principal, guard, admin, etc.), and your organization and department. An optional phone number may be stored if your organization provides one. Email address and password are used to authenticate you via Firebase Authentication; passwords are handled by Firebase and are not stored by us in readable form.
Gate-pass and activity records. When you request, approve, reject, or scan a gate pass, we store the associated records: pass details, approval history, timestamps, gate-in / gate-out logs, and the status of each pass. These records are retained as an audit log for security and accountability.
Push notification token. If you grant notification permission, the App stores a Firebase Cloud Messaging (FCM) device token linked to your account so we can send in-app and push notifications (for example, pending approvals or overdue alerts). You can revoke this by disabling notifications in your device settings.
Camera. The App uses your device camera solely to scan QR codes on gate passes. Camera images are processed on-device to read the QR code and are not stored, transmitted, or retained. The camera is not used to take or upload photos.
We use the information above to authenticate users, route gate passes through an organization's approval workflow, generate and verify tamper-proof QR codes, maintain security audit logs, send operational notifications, and produce reports and analytics for administrators (such as exit trends and pass volume).
We use Google Firebase (Authentication, Cloud Firestore, and Cloud Messaging) as our backend infrastructure provider. Data is stored and processed on Google's cloud infrastructure on our behalf under Google's terms. See Google's privacy policy at https://policies.google.com/privacy.
Your data is visible within your organization to users whose role grants access (for example, an approver can see passes routed to them, and administrators can see records for their organization). Data is partitioned by organization so that different organizations cannot see each other's records.
We do not share personal data with third parties for their own marketing or advertising purposes. We may disclose information if required by law or to protect the safety and security of users.
Account and gate-pass records are retained for as long as your organization maintains its account, or as required for the organization's security and audit needs. When an administrator deletes a user or the organization ends its use of the App, the associated records may be removed subject to the organization's retention requirements.
Access to data is enforced server-side by Firestore Security Rules based on each user's role and organization — the client application is a user interface only and cannot bypass these rules. Gate-pass QR codes are signed with HMAC-SHA256 so that tampered or forged codes are rejected at scan time. Authentication is handled by Firebase Authentication.
Because organizations administer their own users, requests to access, correct, or delete your personal data should be directed to your organization's administrator. You can change your own password from within the App. You can disable push notifications at any time in your device settings. For requests we are able to action directly, contact us at the address below.
The App is provided to organizations for administrative and security use. Where an organization enrolls students who are minors, the organization is responsible for obtaining any consent required under applicable law. We do not knowingly collect data directly from children outside of this organizational context.
We may update this policy from time to time. Material changes will be reflected by updating the "Last updated" date above.
Rahul Dilip Pawar
babashree8605@gmail.com
C/O Bajirao Suka Pawar, At- Rundhati
Post- Mathgavhan, Amalner, PO: Amalner
Dist: Jalgaon, Maharashtra, 425401