In Short
Blink is a high-security, private in-house team messenger engineered for staff of Workerz.org and corporate enterprises requiring isolated internal communication. It is not a public commercial chat service. Everything it stores lives on dedicated servers under our direct organizational control.
🔒 The Blink Zero-Tracking Commitment
We do not sell personal data, we do not serve advertisements, and there are absolutely no third-party tracking, profiling, or analytical telemetry libraries compiled into any version of the Blink application (Web, Android, or iOS).
Who This Applies To
Blink accounts are exclusively provisioned and managed by an authorized company administrator within your organization or via your enterprise Lead Distribution System. Public self-registration is permanently disabled.
If you do not have a dedicated corporate account issued by your employer or organization, the application has nothing to display and collects no information from your device.
What We Collect
Blink collects only the strict operational data required to securely transmit workplace communications:
- Account Identity: Your corporate username, full name, assigned company division, and organizational role, as maintained in your company's directory or Lead Distribution System.
- Messages & Attachments: The text messages you transmit, along with any user-attached photos, PDF/office documents, or recorded voice notes.
- Device & Session Records: A unique device identifier, device model/manufacturer name, operating system version, Blink application build number, and the timestamp of your last active session. This telemetry allows you to review and remotely revoke your own active sessions from Settings.
- Sign-in Records: Exact timestamp of account authentication and the connecting IP address, recorded strictly for corporate account security and fraud prevention.
- Push Notification Tokens: If you enable push notifications, an operating system push token issued by Google (Firebase Cloud Messaging) or Apple (APNs) so incoming messages can be delivered to your handset when the app is in the background.
What We Do Not Collect
To guarantee complete workplace privacy, Blink strictly enforces the following non-collection policy:
- No Location Data: Zero GPS, Wi-Fi triangulation, or geographic location tracking of any kind.
- No Address Book or Call Logs: No access to your phone's personal contacts, phone call logs, or SMS history.
- No Advertising Identifiers: Zero tracking of Google Advertising IDs (GAID) or Apple IDFA.
- No Third-Party Analytics SDKs: Zero behavioral analytics trackers, commercial crash SDKs, or user surveillance libraries.
Camera, Microphone & Photo Permissions
Blink requests device hardware permissions exclusively at the exact moment you perform an intentional user action:
- Camera: Requested only when you tap to capture a workplace photo directly inside a conversation.
- Microphone: Requested only when you press and hold the voice message recording button.
- Photo Library & Files: Requested only when you browse to attach an existing document or image.
Strict Runtime-Only Access
Nothing is ever captured or accessed in the background. Declining any hardware permission only disables that specific attachment method without affecting text chat or overall app functionality.
Local Network & Offline Wi-Fi Mesh Relay
When external internet connectivity becomes degraded or unavailable, Blink features an automated local peer-to-peer relay mechanism that allows colleagues on the same local Wi-Fi network to exchange urgent workplace messages without interruption.
To achieve this, the application temporarily announces its presence across the local network subnet and accepts secure incoming connections from other authenticated Blink instances.
Cryptographic Company Key Isolation
Every local exchange is authenticated with a cryptographic key issued by your primary company server. Devices outside your organization cannot read, eavesdrop on, or inject messages into your local mesh. Messages delivered locally are synchronized to the central server as soon as internet connectivity returns.
Where Data is Stored & Retention Policy
Server Infrastructure: All server-side message databases and media storage are hosted on dedicated, encrypted enterprise cloud infrastructure physically located in Frankfurt, Germany (European Union) under strict GDPR compliance.
Retention Duration: Messages and attached assets are retained strictly for the duration defined by your enterprise organization's corporate record-keeping policies.
On-Device Offline Storage: An encrypted local copy of your recent conversations is stored on your device so the application functions seamlessly offline. This local cache is completely eradicated the moment you tap Sign Out.
Sub-Processors & Third-Party Sharing
Your workplace data is never shared with anyone outside your employing organization, with exactly one essential infrastructure sub-processor:
| Sub-Processor | Purpose & Scope | Data Transmitted |
|---|---|---|
| Google Firebase Cloud Messaging (FCM) | Background Push Notification Delivery to Android Handsets | Encrypted Push Notification Token & Silent Wakeup Payload |
| Apple Push Notification service (APNs) | Background Push Notification Delivery to iOS Handsets | Encrypted Device Push Token & Badge Count |
We do not sell, license, rent, or distribute personal data to any marketing, advertising, or data broker network under any circumstances.
Hardware-Level Security Architecture
- Transport Security: 100% of all data transmitted between Blink clients and our backend servers is encrypted using 256-bit TLS 1.3 encryption.
- Cryptographic Password Hashing: User passwords are never accessible in plain-text and are hashed using modern salted algorithms (Argon2id / Bcrypt).
- Hardware Keystore Isolation: The authentication credential held by your mobile phone is a high-entropy random token stored directly inside the hardware-backed Android Keystore or iOS Keychain, never your raw password.
- Instant Remote Revocation: Sessions can be revoked instantly by the user from Settings or by an organization administrator via the management console.
Your Choices & Data Rights
As a Blink user, you retain full control over your workplace device and profile:
- Instant Session Purge: Tap Settings → Sign Out to immediately revoke the device token and wipe all locally stored conversations and media cache.
- Account Deletion & Rectification: Request your company administrator or submit a ticket via our Data Deletion Portal to inspect, correct, or delete your account records.
- Notification Controls: You may toggle notification preferences or disable notification permissions at any time via your device's system settings.
Children's Privacy Protection
Blink is strictly a professional enterprise workplace tool engineered for adult employees aged 18 and older. It is not offered to or directed at minors under the age of 18, and we do not knowingly collect personal data from children.
Policy Updates & Contact Channels
If this Privacy Policy undergoes material modifications, we will update the effective date at the top and distribute an in-app notice to all registered enterprise clients.
Official Data Protection & Technical Support Contact
Lead Architect & Data Officer: Muhammad Ahmed Javed
Email: ahmed@workerz.org / support@workerz.org
Phone / WhatsApp: +92 314 597 6895
Headquarters: Workerz.org Software Studio, Islamabad, Pakistan