Chopar Privacy Policy

Updated: 2026-08-08

This policy describes how the Chopar / Start Delivery platform handles data across the courier app, the admin panel, the customer web app, the Telegram bot, and the delivery backend services.

What the platform is for

Chopar is used to create orders, assign couriers, run warehouse and transit operations, track deliveries, communicate with customers and staff, record payments, and send operational notifications.

What data is processed

Account data: name, phone number, role, branch, login and session identifiers.

Order data: sender, recipient, phone numbers, addresses, order contents, price, payment status, comments, timestamps, and tracking information.

Courier data: assigned orders, shift status, location while the app is in use, delivery actions, media evidence, and cash and deposit records.

Media and proofs: photos, audio, QR and barcodes, uploaded files, and delivery evidence.

Technical data: push tokens, app version, permission state, the local sync queue, diagnostics, and request errors.

Telegram/bot data: Telegram identifiers, chat state, onboarding, and broadcast responses, if the user interacts with the bot.

How the data is used

To authenticate users and protect staff-only areas.

To create, assign, track, and complete delivery orders.

To dispatch couriers, plan routes, verify delivery stages, and run warehouse processes.

For push, socket, Telegram, and operational notifications.

To sync courier actions recorded offline once the network returns.

For support, security, auditing, and reliable service operation.

Location

The courier app may request location while the app is in use. Location is needed for the work shift, dispatching, the active order, routing, and delivery confirmation.

During an active shift the Android app may continue sending location in the background through a foreground service with a persistent system notification.

The current Android build does not request the separate ACCESS_BACKGROUND_LOCATION permission.

Camera, microphone, Bluetooth, and files

The camera is used for QR scanning and photo confirmations.

The microphone is used only for audio confirmations within delivery workflows.

Bluetooth is used to discover and connect receipt or label printers.

Files and media are used when a delivery workflow requires uploading evidence.

Third-party services

The platform may use Firebase Cloud Messaging for push notifications, mapping services for routes, hosting/storage/monitoring infrastructure, and the Telegram API for bot flows.

Data sharing

Data is shared only where necessary to operate deliveries, support users, comply with the law, protect the platform, or provide infrastructure services.

Chopar does not sell personal data and does not use sensitive data for third-party advertising.

Security

The platform uses HTTPS/WSS, authenticated access to protected APIs, role-based permissions, secure token storage where supported, and operational measures against unauthorised access.

The courier app’s offline queue is encrypted on the device. Photos and audio awaiting upload are held temporarily in app-managed storage and removed after a successful sync or when a failed action is explicitly deleted.

Retention and deletion

Operational delivery data may be retained for accounting, disputes, security, auditing, and legal obligations.

Courier and staff accounts are created by the company or an administrator; the courier app has no public self-registration.

For access, support, and data questions, use the public contact page: https://choparexpress.uz/contact

Some records may be retained where required by law, financial accounting, fraud prevention, or operational audit.

Contact

For privacy, support, or data deletion requests, use the support contact listed in the Google Play Console or Chopar’s official support channel.