Data Protection Policy - Time Supervisor
Effective Date: 1 June 2025
Last Updated: 15 June 2025
At Time Supervisor, we are committed to protecting the personal data of our users, clients, employees, and stakeholders. This Data Protection Policy explains our principles, practices, and responsibilities concerning the handling of personal data.
1. Purpose
This policy outlines how Time Supervisor collects, processes, stores, shares, and protects personal data in accordance with applicable laws including, but not limited to, the General Data Protection Regulation (GDPR) and other relevant privacy legislation.
2. Scope
- All Time Supervisor employees, contractors, and partners
- All users and customers using our website, platform, or services
- All systems and processes where personal data is processed
3. Data We Collect
- Identity data: name, email address, company name
- Usage data: login times, tracked hours, activity logs
- Technical data: IP address, browser type, operating system
- Billing data (if applicable): address, payment details via third-party processors
4. Lawful Basis for Processing
- User consent
- Performance of a contract
- Legal obligations
- Legitimate business interests (e.g., platform improvement, fraud prevention)
5. Data Processing Principles
- Lawfulness, fairness, and transparency
- Purpose limitation – only use data for specified purposes
- Data minimization – only collect necessary data
- Accuracy – keep data up to date
- Storage limitation – retain data only as long as necessary
- Integrity and confidentiality – ensure appropriate security
6. Data Storage and Retention
Personal data is securely stored on cloud infrastructure provided by reputable providers with industry-standard security measures. Data is retained for as long as your account remains active or as required by law or contractual obligation.
7. Data Sharing and Transfers
We do not sell personal data. Data may be shared with:
- Trusted third-party service providers (e.g., hosting, analytics, customer support)
- Regulatory bodies, if required by law
- Internal staff strictly on a need-to-know basis
Where data is transferred outside the EEA, we ensure adequate safeguards are in place (e.g., standard contractual clauses).
8. Data Security Measures
- End-to-end encryption
- Role-based access controls
- Regular vulnerability scans and backups
- Secure authentication and user access protocols
9. User Rights
As a data subject, you have the right to:
- Access your personal data
- Correct or update inaccurate data
- Request deletion (“Right to be forgotten”)
- Restrict or object to data processing
- Data portability
- Withdraw consent at any time (where applicable)
To exercise any of the above rights, contact privacy@timesupervisor.com .
10. Data Breach Notification
In the event of a data breach that is likely to result in risk to your rights and freedoms, we will notify affected users and the appropriate regulatory authorities within 72 hours, as required by law.
11. Employee and Contractor Obligations
All Time Supervisor employees and contractors are trained in data protection responsibilities and are bound by confidentiality agreements.
12. Policy Updates
We may revise this policy from time to time. Updated versions will be published on our website with the “Last Updated” date. Users will be notified of material changes.
13. Contact Information
If you have any questions or concerns about this Data Protection Policy or how your data is handled, please contact: contact@timesupervisor.com .