Helium MDM Portal Privacy Policy
For the Android app Helium MDM Portal (package com.helium.mdm.portal)
Effective and last updated: 9 August 2026
Helium MDM Portal is operated by eHelium for authorized retailers and administrators. It provides access to device enrollment and management, customer records, KYC and payment workflows, and related business services.
Information we collect
- Account and contact information: owner name, shop name, mobile number, city, optional business address and GST number, account approval state, login credentials, and session identifiers.
- Customer and managed-device information: customer name and mobile number, device identifiers, serial number, model, enrollment and assignment status, command status, device health, last-seen time, and other records required to provide device-management services.
- Location: precise or approximate location reported by a managed device when an authorized user requests or uses a device-location function. The Portal app itself does not request Android location permission.
- KYC and identity information: information and document images that an authorized user chooses to submit through a KYC workflow, including identity details and verification status.
- Payment and mandate information: order, transaction, mandate, installment, payment status, amount, and provider reference information. Payment-card or bank credentials entered on a payment provider's page are handled by that provider and are not stored by the Portal app.
- Enrollment and diagnostics: local network service addresses, wireless-debugging pairing details, enrollment QR payloads, setup progress, application version, request logs, IP address, timestamps, and security/audit events.
- User-selected files: files or images selected for an authorized upload, such as KYC documents.
Device permissions and on-device processing
- Camera: used when the user opens the enrollment scanner. Google ML Kit text recognition reads wireless-debugging addresses and pairing codes on the device. Scanner camera frames are not uploaded by this scanning feature.
- Nearby Wi-Fi devices and Wi-Fi state: used to discover a customer device offering Android wireless debugging on the same local network. This permission is declared as not used to derive location.
- Notifications: used only when dashboard notifications are enabled and permitted by the user.
- Biometric/device credential: Android's system prompt confirms fingerprint or secure screen-lock authentication. The app receives only success or failure and does not receive, collect, or store fingerprint or biometric templates.
- Network access: used to communicate with Helium MDM services over encrypted HTTPS and to perform user-initiated local enrollment.
How we use information
- Authenticate users, create and administer retailer accounts, and maintain secure sessions.
- Provide dashboards, device enrollment, assignment, commands, KYC, payment, mandate, token purchase, and support functions.
- Protect the service, apply rate limits, investigate misuse, maintain audit records, and diagnose reliability problems.
- Meet contractual, accounting, fraud-prevention, security, and legal obligations.
Sharing and service providers
We do not sell personal data and the app contains no advertising SDK. Information may be available to the authorized retailer or organization responsible for the customer or managed device, authorized eHelium administrators, and service providers needed to operate the service. These may include hosting and infrastructure providers, Cashfree or another displayed payment provider for payment processing, Google Maps when a user chooses to open a map, and Google ML Kit for on-device text recognition. A provider receives only information required for the selected function and handles it under its own terms and privacy policy.
Security
Helium MDM uses encrypted HTTPS transport, authentication and access controls, restricted administrative access, protected runtime secrets, security logging, and encrypted backups. No internet service can guarantee absolute security, but we apply safeguards appropriate to the sensitivity of the information.
Retention
Account and operational data is retained while the account or managed-device relationship is active and as needed for service delivery, support, security, audit, accounting, fraud prevention, dispute resolution, and legal obligations. When data is no longer required, it is deleted or anonymized according to operational retention procedures. Encrypted backup copies expire through the backup-retention cycle. Some transaction, security, or audit records may be retained after account deletion where required by law or for legitimate fraud-prevention and security purposes.
Account and data deletion
You can request deletion without reinstalling the app.
Email info@ehelium.in with the subject “Helium MDM Portal account deletion request”. Include the registered mobile number and shop name so ownership can be verified. Do not send your password, OTP, payment credentials, Aadhaar number, or document images by email.
After reasonable identity verification, we will delete the Portal account and personal data associated with it, except information that must be retained for legal, accounting, security, fraud-prevention, active device-management, or dispute-resolution reasons. We will explain any required retention when responding to the request. Managed devices may need to be released, reassigned, or unenrolled before deletion can be completed safely.
Children
The app is intended for authorized business users and is not directed to children.
Changes
We may update this policy when app features, service providers, or legal requirements change. The current effective date will appear at the top of this page.
Contact
For privacy questions, access or correction requests, or deletion requests, contact eHelium at info@ehelium.in.