Privacy Policy

Last updated: January 6, 2026

1. Introduction

Temporic ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our time tracking and project management service.

By using Temporic, you agree to the collection and use of information in accordance with this policy. We are dedicated to ensuring transparency about our data practices and providing you with control over your personal information.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Name, email address, password (hashed), business/organization name, role within organization
  • Time Tracking Data: Time entries, project details, task descriptions, hours worked, timesheet submissions and approvals
  • Business Data: Team member information, project assignments, client information, approval workflows, organizational structure
  • Payment Information: Billing details and subscription information (we do not store credit card information directly)
  • Communications: Support requests, feedback, and correspondence with our team

2.2 Automatically Collected Information

  • Usage Data: Pages visited, features used, time spent in app, interaction patterns, navigation paths
  • Device Information: Browser type and version, operating system, device type, screen resolution, IP address
  • Analytics Data: Collected via Google Analytics 4 for usage statistics and service improvement
  • Log Data: Access times, error logs, performance metrics, API usage patterns
  • Cookies: Session identifiers, authentication tokens, preference settings (see Section 8 for details)

3. How We Use Your Information

We use the information we collect to:

  • Provide, operate, and maintain the time tracking service
  • Process your transactions and manage subscriptions
  • Send you service-related communications (timesheet reminders, approvals, etc.)
  • Improve and personalize your experience
  • Analyze usage patterns to enhance our service
  • Detect, prevent, and address technical issues or fraudulent activity
  • Comply with legal obligations

4. Data Sharing and Disclosure

We do not sell your personal information. We may share your information only in the following circumstances:

4.1 Service Providers

  • Google Analytics 4: Usage analytics and service improvement insights
  • Hosting Provider: Cloud infrastructure and secure data storage
  • Email Service: Transactional emails, notifications, and system alerts
  • Security Services: Authentication, encryption, and threat detection

All service providers are carefully vetted and bound by data protection agreements to ensure your information remains secure.

4.2 Business Transfers

If we are involved in a merger, acquisition, or sale of assets, your information may be transferred. We will provide notice before your information is transferred.

4.3 Legal Requirements

We may disclose your information if required by law or in response to valid requests by public authorities.

5. Data Security

We implement comprehensive technical and organizational measures to protect your data:

  • Encryption: TLS/HTTPS encryption for all data transmission, AES-256 encryption for data at rest
  • Authentication: Secure HTTP-only cookie authentication, session management, and automated timeout
  • Password Security: Bcrypt/Argon2 hashing with salt for all passwords, no plain-text storage
  • Access Controls: Role-based access control (RBAC), principle of least privilege, multi-factor authentication support
  • Security Monitoring: Regular security audits, vulnerability scanning, intrusion detection systems
  • Database Security: Parameterized queries, SQL injection prevention, regular backups with encryption
  • Infrastructure: Isolated environments, firewall protection, DDoS mitigation, secure API endpoints
  • Compliance: Regular updates and patches, security best practices, OWASP Top 10 protection

However, no method of transmission over the Internet is 100% secure. While we strive to protect your data using industry-leading practices, we cannot guarantee absolute security. We encourage users to use strong passwords and enable all available security features.

6. Data Retention

We retain your information for as long as your account is active or as needed to provide services. Our data retention practices include:

  • Active Accounts: Data retained for the duration of your subscription
  • Closed Accounts: Personal data deleted or anonymized within 90 days of account closure
  • Backup Data: May persist in backup systems for up to 180 days
  • Legal Requirements: Some data may be retained longer for tax, accounting, or legal compliance
  • Analytics Data: Aggregated and anonymized data may be retained indefinitely for service improvement

You can request immediate deletion of your data by contacting us at [email protected]. We will process such requests within 30 days, subject to legal retention requirements.

7. Your Rights (GDPR)

If you are in the European Economic Area (EEA), you have the following rights:

  • Right to Access: Request a copy of your personal data
  • Right to Rectification: Correct inaccurate data
  • Right to Erasure: Request deletion of your data ("right to be forgotten")
  • Right to Restrict Processing: Limit how we use your data
  • Right to Data Portability: Receive your data in a machine-readable format
  • Right to Object: Object to processing of your data
  • Right to Withdraw Consent: Withdraw consent at any time

To exercise these rights, contact us at [email protected]

8. Cookies and Tracking

We use cookies and similar tracking technologies:

  • Essential Cookies: Required for authentication and core functionality
  • Analytics Cookies: Google Analytics 4 for usage statistics

You can control cookies through your browser settings. See our Cookie Policy for more details.

9. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place for such transfers, including Standard Contractual Clauses approved by the European Commission.

10. Children's Privacy

Our service is not directed to individuals under 16. We do not knowingly collect personal information from children. If we become aware that a child has provided us with personal information, we will delete it immediately.

11. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights:

  • Right to know what personal information we collect
  • Right to delete your personal information
  • Right to opt-out of the sale of personal information (we do not sell data)
  • Right to non-discrimination for exercising your rights

12. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date. We encourage you to review this policy periodically.

13. Contact Us

If you have questions about this Privacy Policy, wish to exercise your rights, or have concerns about data protection, please contact us:

Email: [email protected]
Support: [email protected]
Website: https://temporic.com

We aim to respond to all privacy inquiries within 48 hours. For data subject requests, we will respond within 30 days as required by applicable law.

This Privacy Policy is effective as of the date stated at the top of this document. By using Temporic, you consent to our Privacy Policy.