This policy applies to the pre-release app
FIFOZ Staging (com.fifoz.app.staging) on TestFlight and
Google Play closed testing. It does not apply to the future public app
FIFOZ, which will have its own policy on
fifoz.com.au.
Status: engineering draft for store listings. Not legal advice. Counsel review is still pending.
Last updated: 15 August 2026.
Who we are
Rygan Lab (RYGANLAB PTY LTD) operates FIFOZ Staging. Contact: [email protected] or https://ryganlab.com.au/contact/.
Staging data is stored in Google Cloud in Australia (Firebase project
fifoz-staging, Cloud Run in australia-southeast1).
What the app does
FIFOZ Staging helps FIFO workers track roster, pay, tax and leave estimates, savings goals, and optional wellness check-ins. It is a general-purpose work and wellness tool, not a bank, payroll bureau, or medical device.
Information we collect
Account
- Email and password, or Google Sign-In, or Sign in with Apple (iOS only)
- A unique user ID issued by Firebase Authentication
You enter in the app
- Roster patterns and calendar events
- Pay records, wage model, employment history, savings goals
- Optional health check-ins (mood, fatigue, sleep quality, meals, hydration, exercise)
Optional platform data
- Wearable reads (Apple Health / Health Connect) if you allow them — see Health privacy
- Payslip images or PDFs you choose to scan (processed then discarded — see below)
Device and diagnostics
- Crash reports via Firebase Crashlytics (to fix bugs)
- Optional product-improvement counters (paywall views, trial/purchase counts). These are integer totals tied to your account, not an advertising ID. You can turn them off in Settings → Privacy & analytics → Conversion insights.
We do not use an advertising ID, do not show third-party ads, and do not sell personal information.
How we use it
- Provide the app features you asked for (roster, pay estimates, goals, wellness)
- Sync your data to your signed-in account so it can appear on another device
- Secure the account and prevent abuse
- Improve the staging app (crash reports and optional conversion counters)
We do not use your data for advertising. We do not share it with your employer.
How we store it (plain language)
- Pay, wage model, employment, savings goals, health check-ins: encrypted on your phone (AES-256-GCM) before they are stored in the cloud. We cannot read the plaintext from our servers.
- Roster dates / pattern metadata: stored so the calendar can work; not the same encryption as pay records.
- Payslip scan (OCR): the file is sent to our staging backend, processed in memory with Google Vertex AI in Australia, then discarded. The saved pay record is written from your phone using the encrypted path above. We do not keep the image or the raw scan text after processing.
- Payroll connections (if you connect Xero/MYOB): OAuth tokens are stored server-side, encrypted, only to keep the connection. That is a disclosed exception — not zero-knowledge.
Who we share with
We share data only as needed to run the app:
- Google Firebase (Authentication, Firestore, Storage, Crashlytics)
- Google Cloud Run / Vertex AI for payslip scanning you start
- Apple or Google if you use their sign-in or health platforms (you control those permissions)
We do not sell data. We do not share pay or health data with employers, advertisers, or data brokers.
Retention and deletion
We keep your staging account data while the account exists. To delete it, follow Delete your FIFOZ account.
After deletion, some encrypted backups or logs may remain for a short period (typically up to 30 days) until they expire.
Your rights (Australia)
You may request access to or correction of personal information we hold, or ask us to delete your account. Email [email protected].
Children
FIFOZ Staging is for adult FIFO workers. We do not knowingly collect personal information from children under 16.