Pramaan — Privacy Policy

Effective 10 June 2026 · Frontier Labs Private Limited

Pramaan is a sign-in companion app: it lets you approve sign-ins to your organisation's applications with a tap, generates authenticator codes, and stores passkeys in your device's secure hardware. It is built so that the most sensitive material — private keys and authenticator secrets — never leaves your device. This policy explains what little data the service does process, and why.

Data we process, and why

DataPurposeWhere it lives
Account identifiers (name, username, email) from your organisation's identity provider Signing you in and showing which account is in use Your identity provider; cached on your device
Device enrolment record (device model, a hardware-backed public key, a push-notification token) Delivering sign-in requests to your device and verifying your approvals The Pramaan ID Broker operated by your organisation
Sign-in security metadata (IP address, approximate location derived from it, time, application name) Shown to you on each approval so you can reject sign-ins that are not yours; risk checks against unusual locations; security audit log The Pramaan ID Broker, in the audit trail
Device integrity verdict (Google Play Integrity) Detecting compromised or counterfeit devices at enrolment Verified server-side; the verdict is not retained beyond evaluation and logging

Data that never leaves your device

What we don't do

Retention

Enrolment records are kept while the device is enrolled and are deleted when you (or your administrator) revoke the device — revocation is available in the app under "Where you're signed in". Sign-in audit events are retained per your organisation's security policy and then purged.

Your choices and rights

Contact

Frontier Labs Private Limited
contact@pramaanid.cloud

Changes to this policy will be posted at this address with an updated effective date.