Privacy Policy

IBMK staff management, IBMK app and IBMK Terminal · Last updated 22 September 2026

IBMK is a staff-management service for restaurants and hospitality businesses. It is used by the business that employs you (the Employer) to plan shifts, record working time, manage absences and share announcements. This policy explains what data the IBMK apps and website process, why, and what your rights are.

1. Who is responsible

For the data of employees and staff, the Employer that invited you is the controller under the GDPR: it decides what is recorded and can see it. IBMK processes that data on the Employer's behalf as a processor. For the operation of the service itself (accounts, security, service e-mails), IBMK is the controller.

IBMK is operated by Dragos Chirtoaca, 271 rue de la Culaz, 01210 Ornex, France. Contact for all privacy matters: dragos@ibmk.eu.

2. What we process

DataPurposeLegal basis
Account: name, e-mail, password (stored hashed), language, employment type, position, hire dateSign-in, your profile in the Employer's rosterContract with the Employer (Art. 6(1)(b) GDPR); the Employer's legitimate interest in running its staff (Art. 6(1)(f))
Shifts, worked time, breaks, clock-in/clock-out times, signatures confirming a clock-out, absence requestsScheduling, working-time records and payroll preparation, which the Employer is legally required to keepEmployment contract and legal obligations of the Employer (Art. 6(1)(b), (c))
Location (latitude, longitude, accuracy) — only at the moment you clock in or out from your own phone, and only if your Employer enabled phone clock-inConfirming that the punch happened at the workplace. Location is never tracked in the background and never stored as a track; the punch keeps one position.Employer's legitimate interest in accurate time records (Art. 6(1)(f)); you can always use the wall terminal instead
Push notification tokensDelivering notifications you chose to receive (published shifts, decisions on your requests, announcements)Your consent, given in the app or browser (Art. 6(1)(a))
Terminal device credentialIdentifying a wall tablet that an admin paired to a location; no personal dataLegitimate interest (Art. 6(1)(f))
Problem reports you send: your message plus technical facts (page, app version, browser, connection, permission states, last failed request)SupportLegitimate interest (Art. 6(1)(f))
Usage analytics on the admin website (page views, clicks, replays with text masked), never on the kiosk or the terminalImproving the productLegitimate interest (Art. 6(1)(f)); processed in the EU by PostHog

3. Where the data lives and who helps us

We do not sell personal data and do not use it for advertising.

4. How long we keep it

Working-time and shift records are kept for as long as the Employer's legal retention duties require. Announcements are deleted after six months. Punch audit entries and problem reports are kept for a limited period for security and support, then deleted. When an Employer closes its account, its data is deleted.

5. Your rights

To delete your account, follow the steps on ibmk.eu/delete-account. You can ask for access to your data, correction, deletion, restriction, portability, and you can object to processing based on legitimate interest. You can withdraw consent to notifications at any time in your phone or browser settings. Because the Employer is the controller for your employment data, please direct requests about shifts, time records and absences to your Employer; we support them in answering. You also have the right to lodge a complaint with a data protection authority.

6. The apps

The IBMK app and IBMK Terminal load the same service as the website inside a native shell. The app asks for location permission only when you clock in or out from your phone; the terminal does not use location. Neither app accesses your contacts, photos or files unless you actively choose a file to upload.

7. Changes

We update this policy when the service changes. The date at the top shows the current version.