Privacy
Privacy Policy
Last updated September 19, 2026
Scope
MunshiOS is a business software service intended for authorized business users. It is not designed as a consumer service for children, and users should not create accounts for children or enter child data unless it is genuinely required for a lawful business purpose.
What we collect
MunshiOS may process account details, business identity and contact information, workspace records, customer and supplier records, tax identifiers, invoice and payment data, inventory records, device and diagnostic information, security events, and information users choose to enter into the service.
How we use information
We use information to provide and secure the service, operate accounting and inventory features, support users, maintain auditability, prevent abuse, improve reliability, and meet tax, legal, security, contractual, or compliance obligations.
FBR Digital Invoicing
When an authorized workspace enables FBR Digital Invoicing, MunshiOS may prepare and transmit required invoice, seller, buyer, tax and product information to FBR and to the licensed integrator or PRAL route configured for that workspace. Production transmission is intended to occur only after the required integration route has been configured and authorized. MunshiOS does not claim to be an FBR-licensed integrator unless a valid license is separately obtained and disclosed.
Data minimization
We aim to collect and transmit only information reasonably needed for the feature being used. FBR submission records keep structured payload and response history for integrity, reconciliation, troubleshooting and audit purposes; authentication secrets and FBR access tokens must not be stored in ordinary invoice records or exposed to workspace users who do not need them.
Workspace separation and access
Business records are scoped to a workspace and access is controlled through authenticated users, roles and permissions. Workspace owners and administrators are responsible for granting access only to authorized people and for removing access when it is no longer required.
Service providers and data transfers
MunshiOS may use hosting, authentication, database, infrastructure, communications, payment and support providers. These providers may process data in locations outside Pakistan. We limit provider access to what is reasonably needed to operate the service and expect appropriate contractual and technical safeguards for the processing they perform.
Analytics and session recording
MunshiOS does not currently use session-replay tools to record keystrokes or authenticated business screens. If that changes, the applicable notice, consent or other legal requirements and masking controls should be implemented before such recording is enabled.
No sale of business data
MunshiOS does not sell customer workspace records, invoice data, tax identifiers or other business records to advertisers or data brokers.
Retention and deletion
We retain information while an account or workspace is active and for periods reasonably required for security, accounting integrity, tax records, statutory obligations, dispute handling, backups and audit history. Financial, tax and FBR transmission records may need to remain in an immutable or non-destructive history instead of being permanently deleted on demand.
Your choices
Authorized users can update many business details from the product and may request account or data-related assistance through the support channels published by MunshiOS. A request to remove data may be limited where retention is required for accounting integrity, tax compliance, fraud prevention, security or another lawful obligation.
Security
We use authentication, access controls, workspace scoping, audit trails and other safeguards designed to reduce unauthorized access, alteration or disclosure. No online service can guarantee absolute security, so users should also protect credentials, devices and administrator access.
Changes
We may update this policy as MunshiOS, applicable law or connected compliance services evolve. Material changes will be reflected on this page with an updated revision date.