External sign-in
Your account uses Microsoft sign-in
TinyTimeLog delegates account authentication to Microsoft’s identity platform and does not ask you to create or store a separate TinyTimeLog password.
Data security & integrity
Your time data supports invoices, payroll, and client relationships. TinyTimeLog is designed to keep access scoped, changes accountable, and your records dependable.
External sign-in
TinyTimeLog delegates account authentication to Microsoft’s identity platform and does not ask you to create or store a separate TinyTimeLog password.
Scoped access
Workspace permissions separate personal records from team data. Owners, admins, and members see only the records, reports, settings, exports, and team features their role allows.
Server authority
The server rechecks identity, workspace access, record locks, and business rules before accepting changes—even when work began offline.
Integrity from capture to review
Fast capture is useful only when the resulting record holds up later. TinyTimeLog keeps the experience simple while protecting the decisions that make time data trustworthy.
TinyTimeLog does not take screenshots, record keystrokes, or continuously track GPS. When location context is useful and enabled, it can be captured at the start and stop of a timer—not as a continuous trail of someone’s day.
Workspaces are isolated from one another, and access is based on each person’s role. Members see only the time records, reports, settings, exports, and team features their role permits; administrative actions require elevated permission.
Authentication is provided through Microsoft’s identity platform. TinyTimeLog does not ask you to create or store a separate TinyTimeLog password, and application access remains subject to TinyTimeLog’s own authorization checks.
No. TinyTimeLog does not capture screenshots, record keystrokes, or continuously track GPS locations. If your team wants location context, it can be captured at timer start and stop without following someone throughout the day.
TinyTimeLog is designed to use HTTPS for traffic between your browser and its services. Authentication, workspace authorization, and server-side validation provide additional safeguards.
Important time-entry changes have a reviewable activity history, helping authorized users understand what changed and providing useful context for locks and sync outcomes.
Payment information is collected and processed by Paddle as merchant of record. TinyTimeLog receives subscription and transaction status rather than collecting or storing card details.
You can request account closure and data deletion. We provide time to export your records, then delete or minimize information on the schedule below. Legal holds and applicable legal, tax, or customer requirements may require certain records to remain longer.
Offline browser storage is limited to the active user’s necessary time information and pending changes. TinyTimeLog separates that data by user and isolates or clears it when accounts change, helping protect people who share the same browser.
TinyTimeLog checks important actions before accepting them. We confirm who you are, what you are allowed to access, and which information can be included in an export.
TinyTimeLog’s application code includes server-owned record, synchronization, audit, and retention rules intended to preserve data integrity. Production backup availability, restoration procedures, recovery times, monitoring, and incident-response operations have not been verified and are not promised on this page.
Have a retention, legal-hold, or security-review question? Contact TinyTimeLog
Confident, focused timekeeping
Start simply, keep access clear, and give every hour a dependable home.