Privacy

Privacy policy

Current version · 2 October 2026

This policy describes what Levamen collects on levamen.co.zw, why it is kept, and who can see it.

Who this covers

The operator of this website provides the SoftWorkX workspace. When a person creates a company, that organization becomes responsible for the business records it enters: customers, suppliers, employees, students, borrowers, and the documents around them. SoftWorkX stores those records so the organization can run its apps.

Account details

Sign up asks for:

  • Your name and email address
  • A password, stored only as a one-way hash
  • The company name and the short address used for sign-in, such as /t/your-company

The first account is the workspace administrator. Later accounts are created by someone who already has permission to invite people.

Records the company enters

The apps hold the operational data the company types in: quotations, invoices, bills, payments, stock, payroll, leases, loans, tickets, and similar records. Currency amounts on a document stay in the partner currency. The ledger stores the company-currency amount using the exchange rate locked at posting.

Cookies and storage in the browser

Signing in sets one cookie and keeps two small pieces of state:

  • A cookie named swx_refresh, used only to renew the session. It is HttpOnly, SameSite Lax, limited to /api/v1/auth, and kept for 14 days. On this site it is sent only over HTTPS.
  • The short-lived access token stays in the page memory and is not written to disk.
  • The browser remembers the selected organization and the light or dark theme under the names softworkx.organizationId and softworkx.theme.

How the data is used

Account details are used to sign a person in, to apply their role, and to show the apps their organization has installed. Company records are used to run those apps: to post journals, to print documents, and to show the reports the user is allowed to open. SoftWorkX does not sell personal information and does not use company records to advertise to the people named in them.

How long it is kept

Account and company records stay for as long as the workspace exists and the organization keeps them. Signing out revokes the refresh cookie. An administrator can deactivate a person or correct a record inside the apps.

Who to ask

For a record inside a company, ask that company's workspace administrator. They decide who may open it. For this website, read the data protection notice and the contact page.