Privacy policy

Privacy Policy for PGR Companion: Residency

Privacy disclosures for the Android application pk.vexel.pgrcompanion.

Institutional sign-in
Server-backed
No ads
No analytics SDK

Effective date: 8 September 2026
Last updated: 8 September 2026

This Privacy Policy explains how PGR Companion: Residency handles information when you use the Android application. PGR Companion is developed and provided by Vexel Consultants.

1. What we collect

To use PGR Companion, you must sign in with a PGR SIMS account issued to you by your institution. The application does not provide self-registration or allow you to create an account inside the app.

When you sign in, we process the following information to identify you and display your training record:

  • Name
  • Email address
  • Username
  • Phone number

If you are asked to submit a document as part of onboarding, such as an identity or eligibility document, we also process the file that you choose to upload.

2. How we use information

The information processed by PGR Companion is used solely to:

  • Authenticate you
  • Identify your PGR SIMS account
  • Display your onboarding status
  • Display your postgraduate training information
  • Display supervisor-assignment status
  • Manage your account within the PGR SIMS system
  • Process documents that you deliberately choose to submit

Your name, email address, username, and phone number are required for the application to function. PGR Companion does not provide an offline mode.

Document uploads are optional and occur only when you choose to submit a requested document.

3. Data transmission and server

PGR Companion communicates directly with the PGR SIMS production server at android.pgsims.alshifalab.pk.

The application does not use a separate third-party application backend for your PGR SIMS data. Information required for the service is transmitted from the app to the PGR SIMS server over an encrypted connection.

4. Who we share information with

We do not share your information with third-party advertisers, analytics providers, data brokers, or unrelated third-party services.

Data used by the application is sent directly to the PGR SIMS production server as required to provide your institutional account, onboarding, training, supervisor-assignment, and document-submission functions.

5. Credentials and session security

Your password is transmitted only when you sign in so that the PGR SIMS server can authenticate you. Your password is not stored on your device by PGR Companion.

After successful authentication, only the resulting session token is stored on the device. The session token is stored using Android encrypted storage based on Tink-backed encrypted preferences, rather than plain-text storage.

6. Encryption

All communication between PGR Companion and the PGR SIMS server uses HTTPS.

Cleartext, unencrypted network traffic is disabled in the released application.

7. Document uploads

If your onboarding process requires a document, PGR Companion may allow you to choose and upload the relevant file. Uploading a document occurs only when you deliberately select and submit that file.

You should upload only documents that you are authorized to provide through your institutional PGR SIMS account.

8. Advertising, analytics, and tracking

PGR Companion does not:

  • Display advertising
  • Use an advertising SDK
  • Use an analytics SDK
  • Use a third-party crash-reporting SDK
  • Build behavioral advertising profiles
  • Sell personal data

9. Data deletion

PGR Companion does not currently provide an in-app self-service option for deleting your institutional PGR SIMS account or its associated server-side records.

Requests for deletion or other administrative action relating to your account or institutional records must be submitted through the institution that issued your PGR SIMS account. Any deletion or retention of institutional postgraduate training records is handled through the applicable administrative process and may be subject to institutional, regulatory, audit, or legal record-retention requirements.

For privacy or support questions relating to PGR Companion, you may also contact contact@vexel.pk.

10. Security

PGR Companion uses encrypted network communication and encrypted Android storage for the locally retained session token. No electronic system can guarantee absolute security, but the application is designed to reduce exposure of authentication credentials and prevent cleartext network communication.

You are responsible for protecting access to your device and keeping your institutional login credentials confidential.

11. Changes to this Privacy Policy

This Privacy Policy may be updated if the application's functionality, data-processing practices, server configuration, institutional requirements, or legal obligations change. The effective date shown above will be updated when material changes are made.

12. Contact

Questions or privacy concerns relating to PGR Companion may be directed to:

Vexel Consultants
Email: contact@vexel.pk
Website: https://vexel.pk
Privacy Policy: https://vexel.pk/apps/pgr-companion/privacy/