1. Scope and operator
This Privacy Policy applies to the TinyTimeLog public website, authenticated web application, iOS and Android applications, application programming interfaces, account and customer support, billing administration, and related services (collectively, the “Service”).
TinyTimeLog is a product line operated by Purple Unicorn Labs LLC (“TinyTimeLog,” “we,” “us,” or “our”). This policy explains the personal information we collect, where it comes from, why we use it, when we disclose it, how long we keep it, and the rights and choices that may be available to you.
2. Our role for Personal and Team Workspaces
For Personal Workspaces and for activities such as account administration, billing administration, website measurement, security, and support, TinyTimeLog generally determines why and how personal information is processed.
For a Team Workspace, the customer organization may determine why and how its employees’ or contractors’ timekeeping, notes, location, and related records are processed. In that situation, the organization is responsible for its instructions, notices, lawful basis, permissions, and responses to requests concerning the information it controls, and TinyTimeLog processes that information to provide the Service to the organization. Team owners and authorized administrators may access, manage, export, lock, and retain records in their Workspace.
3. Information we collect
We collect information from you, Team owners and administrators, your browser or device, the Service itself, identity and billing providers, and other providers that help operate the Service. The categories may include:
- Account and identity information: email address, display name, TinyTimeLog user identifier, Microsoft identity identifiers and claims, account status, sign-in events, and account timestamps. Microsoft manages the identity-provider account and sign-in credentials; TinyTimeLog manages separate Service-specific Account and Workspace records.
- Profile and preference information: time zone, date and time formats, selected Workspace, display settings, timer preferences, reminder preferences, and analytics choices.
- Workspace and membership information: Workspace name and type, owner, members, roles, invitations, status, settings, display color, and plan entitlements.
- Client and activity information: client and activity names, status, billable defaults, and optional accounting or payroll mapping codes.
- Time records: start and end times, time zones, duration, billable and manual-entry indicators, notes, locks, edits, synchronization status, identifiers, and history.
- Optional location information: point-in-time Start or Stop location, accuracy or uncertainty, capture time and status, and geographic labels derived from a captured location when the feature and Workspace policy permit collection.
- Billing information: Paddle handles paid-order financial transactions as merchant of record. TinyTimeLog receives limited information such as plan, subscription status and dates, billing email, currency, Paddle customer, subscription, and transaction identifiers, invoices, and webhook status. TinyTimeLog does not receive or store your full payment card number.
- Reports and exports: export settings, selected columns, generated files, export history, mapping choices, batch identifiers, and download activity.
- Audit, security, and diagnostic information: record changes, actor identifiers, timestamps, authorization events, request and mutation identifiers, safe error codes, legal holds, IP address, browser or app and operating-system information, connectivity state, route category, performance timing, and privacy-filtered logs.
- Support communications: messages, attachments, screenshots, contact information, delivery events, and case records that you or a customer provide.
- Local device and browser information: cached records, pending changes, synchronization state, session state, local reminder schedule, consent choices, and Microsoft Authentication Library-managed token-cache material.
Please avoid placing payment-card numbers, Social Security numbers, protected health information, or other information subject to specialized regulatory or security requirements in notes or support messages unless we have expressly agreed in writing that the Service supports that use.
4. How we use information
We use personal information to:
- create and administer Accounts and Workspaces, authenticate users, and manage permissions;
- record and synchronize time, operate offline-friendly features, generate reports and exports, and provide user-requested map previews;
- administer subscriptions, reconcile entitlements, process purchases through Paddle, and maintain accounting and transaction records;
- respond to support, privacy, deletion, security, and other requests;
- protect the Service, investigate misuse, preserve record integrity, prevent fraud, resolve conflicts, and enforce our Terms of Service;
- maintain, troubleshoot, measure, and improve the Service, including through optional analytics or telemetry where enabled; and
- comply with legal obligations, respond to lawful requests, establish or defend claims, and complete corporate transactions.
Where laws such as the GDPR or UK GDPR apply, our legal basis depends on the purpose. We process information as necessary to provide the Service and perform our contract with you; for proportionate legitimate interests such as securing, supporting, and improving the Service; to comply with legal obligations such as tax, accounting, and lawful requests; and with consent where required for optional technologies. A Team customer is responsible for identifying its lawful basis for workforce time and location records.
5. Location information
TinyTimeLog may collect a point-in-time location when you start or stop a timer if location is enabled for the Workspace and permitted for that action. We do not continuously track you, collect location in the background, use geofencing, build route history, or collect location for manual time entries or ordinary edits.
If location permission is denied, unavailable, unsupported, invalid, or times out, the timer action can continue. We may retain a status showing that location was not captured without retaining coordinates.
The web application may store the coordinates, accuracy, and capture time supplied by your browser and may derive general geographic labels from them. The mobile applications reduce a successful platform location on the device to an approximate area before saving or synchronizing it and do not retain the more precise platform coordinate in TinyTimeLog’s business-data store. Mobile operating systems may still display their own permission terminology based on the application’s declared permissions.
Authorized Personal Workspace owners and authorized Team personnel may view location associated with a time entry. A Team customer decides whether to enable location for its workforce and is responsible for workplace notices, permissions, lawful basis, labor requirements, and monitoring obligations.
If an authorized web user deliberately selects View map, the browser sends the saved coordinate and ordinary request information to Google Maps Platform to provide a static map. No map request occurs merely because a user opens a time entry.
6. Device and browser storage
TinyTimeLog stores authoritative application records on its services and also keeps limited local copies for authentication and offline-friendly operation. The web application may use IndexedDB, local or session storage, cookies, and service-worker caches for records, pending changes, invitations, synchronization state, preferences, security, and session functions.
The mobile applications use account-separated, app-private SQLite storage for cached records and a durable pending-change outbox. Depending on your use, this may include Workspaces, clients, activities, time entries, notes, approximate location associated with eligible timer events, conflicts, and synchronization state. Microsoft Authentication Library manages mobile sign-in and token-cache material. TinyTimeLog does not collect your Microsoft password or place a second copy of access tokens in its business-data database.
Optional long-timer reminders are scheduled as local notifications. Current TinyTimeLog mobile functionality does not require a remote push token for those reminders. Keep notification previews non-sensitive and protect your device and browser profile.
Signing out and deleting an Account are different actions. If you expressly choose to keep unsynchronized work when signing out, local data may remain on that device. After the Service accepts an Account-deletion request, the application attempts to purge that Account’s local data and authentication session. A browser or device that does not reconnect cannot be erased remotely, and uninstalling an application removes local application data but does not by itself delete server records.
7. Cookies, analytics, and telemetry
We use cookies and similar browser technologies that are necessary for authentication, security, invitations, preferences, offline operation, synchronization, and other essential Service functions. Blocking essential storage may prevent parts of the Service from working.
The public website is delivered through Cloudflare and includes Cloudflare Web Analytics for site delivery, security, performance, and website measurement. Cloudflare may receive IP address, browser or device information, request information, timestamps, and performance information according to our configuration and Cloudflare’s role as a provider.
Unless analytics is disabled for the deployment, the authenticated web application uses Google Analytics to measure usage by approved route category. The application is designed to exclude query strings, URL fragments, referrers, pending-invitation state, and certain authentication routes from those page-view events. Google may receive categorized route information, timestamps, cookies or identifiers, IP address, and browser or device metadata according to the deployed configuration.
When application monitoring is enabled, Microsoft Azure monitoring services may process limited, privacy-filtered operational and performance telemetry to protect, troubleshoot, and improve the Service. We do not intentionally place time-entry notes, location coordinates, access tokens, or full URLs with query strings in analytics events.
Where TinyTimeLog offers an analytics choice, you can use it to decline or withdraw from optional analytics. Withdrawal stops future optional collection and the application attempts to clear TinyTimeLog-controlled analytics identifiers where feasible; it does not affect earlier lawful processing. You can also control cookies and browser storage through your browser, although doing so may impair the Service.
8. When we disclose information
We disclose personal information only as reasonably necessary for the purposes described in this policy:
- Workspace users: authorized owners, administrators, and other users according to Workspace roles and settings.
- Microsoft: Microsoft Entra and Microsoft Authentication Library manage the identity and authentication information used to sign in. Microsoft Azure hosts the authenticated web application, API, databases, server-side application data, email delivery, security services, and enabled monitoring.
- Paddle: Paddle handles paid-order financial transactions as merchant of record, including checkout, payment collection, tax, receipts, subscription administration, refunds, buyer support, and fraud or dispute handling.
- Cloudflare: for public-site delivery, security, performance, and web measurement.
- Google: for enabled web analytics and for a static map preview only when an authorized user requests one.
- Email and support providers: for invitations, service and lifecycle notices, message delivery, and support.
- Professional advisers and authorities: where reasonably necessary for legal advice, compliance, security, claims, or a valid legal request.
- Business-transfer recipients: in connection with a proposed or completed financing, merger, acquisition, reorganization, or sale of assets, subject to appropriate protection of the information.
If applicable law treats an enabled analytics disclosure as a “sale,” “sharing,” or targeted advertising, you may use an available analytics control or contact us to exercise the applicable opt-out right.
9. Retention, Account deletion, and local cleanup
We keep personal information only for as long as reasonably necessary for the purpose for which it was collected, to provide an active Account or Workspace, to complete the Account-closure and export process, to follow a Team customer’s lawful instructions, and to meet legal, accounting, security, fraud-prevention, dispute, and recordkeeping requirements.
Retention depends on the record and its context:
- Account and Personal Workspace information is retained while needed to provide the Account and then moves through the closure, limited export, deletion, and backup-expiration stages presented by the Service.
- Team time records, notes, associated location, membership, locks, and audit history may remain under the Team customer’s instructions and lawful recordkeeping schedule after a member’s access ends.
- Billing, transaction, tax, audit, security, export, and legal-hold records are retained for the applicable accounting, compliance, security, claims, or evidentiary period.
- Generated export files, analytics information, support communications, operational logs, and backups are retained according to configured schedules and provider arrangements, then deleted, de-identified, or allowed to expire unless a legal hold or other lawful need applies.
Requesting Account deletion
You can begin Account deletion in the web application through User Settings or in a mobile application through More > Account deletion. If you cannot sign in, email info@tinytimelog.com or use our contact page. We may verify your identity and, for an authorized agent, the agent’s authority before acting. We will respond within the period required by applicable law and explain any denial or available appeal.
Closure is irreversible once confirmed and may be blocked until Team ownership and billing responsibility are transferred. Deleting an Account does not itself cancel a Paddle subscription or provide a refund; use the billing controls described in our Terms of Service and Refund Policy.
When a deletion request is accepted, we restrict access and begin the applicable export and deletion lifecycle. We delete or de-identify information that is no longer needed, but a Team customer may lawfully retain its business records and we may retain billing, security, legal-hold, claims, and other records required or permitted by law. Residual copies in backups expire through the ordinary backup cycle.
Other browsers, devices, downloads, and exports may retain copies until they reconnect, are cleared, or are deleted by their owner. TinyTimeLog Account deletion does not delete your Microsoft identity-provider account; contact Microsoft separately if you want to exercise rights concerning that account.
10. Your rights and choices
Depending on where you live and subject to lawful exceptions, you may have the right to:
- request access to, correction of, or deletion of personal information;
- receive a portable copy of certain information;
- object to or request restriction of certain processing;
- withdraw consent for future processing where consent is the legal basis;
- opt out of an activity treated as sale, sharing, or targeted advertising under applicable law;
- appeal a denied request where applicable; and
- complain to an applicable privacy or data-protection authority.
You may update available profile, Workspace, location, notification, and analytics choices in the Service. Disabling future optional collection does not invalidate earlier lawful processing or require deletion of a record that a Team customer or law requires us to retain.
For information in a Team Workspace, please direct your request first to the organization that controls the Workspace. We will assist the organization as required by our agreement and applicable law. We will not discriminate against you for exercising an applicable privacy right.
To exercise a right concerning information TinyTimeLog controls, email info@tinytimelog.com or use our contact page. We may request information reasonably necessary to verify your identity, authority, and request.
11. International processing
Purple Unicorn Labs LLC is based in the United States, and personal information may be processed in the United States and in other places where our providers operate. Those places may have different data-protection laws from your home jurisdiction.
Where applicable law requires a transfer mechanism or additional safeguards, we use an approved mechanism appropriate to the transfer, such as an adequacy decision or contractual protections, and supplementary measures where appropriate. Contact us if you need information about the mechanism relevant to your information.
12. Security
We use administrative, technical, and organizational measures designed to protect personal information in light of its nature and the risks involved. These measures include access controls, authentication, authorization boundaries, data-integrity checks, privacy-filtered diagnostics, and protections provided by our hosting and platform providers.
No method of transmission or storage is completely secure. We cannot guarantee absolute security, and app-private or browser storage should not be treated as immune from access by someone who controls an unlocked, compromised, rooted, or jailbroken device. Protect your devices, browser profiles, Microsoft identity account, exports, and downloaded copies.
13. Children
TinyTimeLog is intended for adults. You must be at least 18 years old to create or use an Account, and the Service is not directed to children. We do not knowingly collect personal information from a child under 13. If you believe a child has provided personal information, contact us so we can investigate and take appropriate action.
A Team customer must not provision an underage user unless the customer has confirmed that the use is lawful and has provided all required notices and obtained all required permissions or consents.
14. Changes and contact
We may update this Privacy Policy to reflect changes in the Service, our practices, providers, or legal requirements. We will post the updated policy at this URL, revise the effective or last-updated date, and provide additional notice before a material change takes effect where required by law.
Operator: Purple Unicorn Labs LLC, operating the TinyTimeLog product line
Privacy and support email: info@tinytimelog.com
You may also use the public contact page. This contact method is available without signing in.