Privacy Policy

TaskTime Pro is a local-first app. Your work data lives in your browser and, if you choose, in your own Google Drive or Dropbox. Connected services process only what their requested features need.

1. Your work records are local by default

TaskTime Pro stores all of your projects, tasks, time entries, expenses, invoices, and preferences directly in your browser using IndexedDB. Those records stay on your device unless you explicitly choose a connected feature such as cloud sync or invoice email delivery.

There is no TaskTime-hosted workspace database where we can look up or recover your work records as an account service. Connected services process only the information needed to perform the feature you request, as described below.

2. Cloud sync goes to your own storage

If you connect Google Drive or Dropbox, TaskTime Pro syncs your data between your browser and a TaskTime application folder inside your own provider storage. The synced copies belong to your provider account and are not stored as a TaskTime-hosted workspace.

To make sync work, a small edge service securely maintains your selected provider connection, stores its encrypted refresh token, issues short-lived access tokens to authorized browser sessions, and supports revocation. Routine sync file requests travel directly between your browser and Google Drive or Dropbox. The access token stays only in active-browser memory, and the edge service does not receive or retain routine sync file bodies. It does not keep your cloud file content as a TaskTime-hosted workspace.

Sync is entirely optional. TaskTime Pro works fully offline without it, and you can disconnect at any time.

3. No advertising cookies or cross-site tracking

The TaskTime Pro app and website do not use advertising cookies, tracking pixels or cross-site ad tracking. The app uses browser storage for your workspace, preferences and connected-feature state. Optional payment pages are covered by Stripe's own privacy and cookie policies.

The production app may send limited aggregate usage counters — things like whether a session happened or how often broad action categories were used. Metrics may include the app version, a generated device-install identifier, local day buckets, session and action totals, and whether sync was enabled. They contain no project names, task names, client names, invoice or expense data, notes, report contents, email bodies, cloud sync file contents, tracked hours, or raw work records.

4. What optional services store

Google Drive or Dropbox stores the sync documents and backups you choose to place in your own account. While cloud authorization remains active, TaskTime Pro's edge service stores the encrypted OAuth refresh token needed to issue short-lived browser access. Disconnect detaches the current browser without deleting your provider files; Wipe data & disconnect removes validated TaskTime sync files and backups, revokes access, and disconnects the browser.

The aggregate usage data described in section 3 may include a generated device-install identifier and a sync-session header, but no work-record content. Dropbox account-information access lets your browser show the connected account email. That email stays local unless you choose to use it for billing at Checkout; it is excluded from work-data sync, backups, exports and metrics.

Pro and its trial use a billing profile linked to your connected Google or Dropbox identity, with plan, trial and service-usage records. Stripe processes payments and billing contact/tax details; TaskTime Pro does not store full card details. Billing records are separate from your workspace and are not included in work-data sync or backups.

Hosted sending keeps minimal delivery, quota and duplicate-prevention records, such as account/recipient hashes, status and timestamps. TaskTime Pro does not keep a server-side archive of your PDF or message body.

If you enable system reminders, TaskTime Pro stores only the browser push subscription needed for delivery and generic reminder timestamps. We do not store task names, expense details, notes, amounts, client or project names, or other personal app data for this service. Turning reminders off removes the device subscription and cancels future scheduled reminders.

Runtime diagnostics may also be captured when configured, as described below. There is no TaskTime-hosted workspace database or advertising analytics.

5. Invoice email sending

With Pro hosted sending, your browser generates a PDF and sends it with your message through TaskTime Pro's edge service to Resend for delivery. Resend's privacy policy applies to that processing. PDF downloads and delivery through your own email remain free.

Resend is used solely to deliver the email on your behalf. We do not use it for marketing, advertising, or tracking.

6. Runtime diagnostics

The TaskTime app and public website may use DebugBundle for runtime failures when configured. Website diagnostics capture technical errors without enabling product analytics or collecting form contents. Diagnostics are for investigating crashes, sync failures, email delivery failures, PDF generation failures, and other operational incidents.

Diagnostics may include error messages, stack traces, environment labels, app service names, source filenames, line numbers, and limited incident metadata. They are not intended to include your projects, tasks, invoices, expenses, notes, cloud sync file contents, or other private app records.

7. Data retention

Your local data stays on your device until you delete it or clear your browser storage. Synced copies stay in Google Drive or Dropbox until you remove them through TaskTime Pro controls or your provider account. The encrypted refresh token is kept only while the related provider authorization remains active. Aggregate metrics and operational audit data may be retained for abuse prevention, reliability analysis, and product maintenance, but should remain minimized and exclude private app records.

Billing records are retained while needed to manage your subscription and meet accounting obligations. A minimal keyed identifier used to prevent repeat trials is retained for up to three years (1,095 days) from your first trial or Pro activation, including after billing-profile deletion. Renewals do not restart that period. Existing billing history may still establish that an account has already used its trial. For billing-data or privacy requests, contact support@tasktime.pro. Deleting workspace data does not cancel a subscription; manage it separately in billing settings.

Completed hosted-email delivery references are removed after 30 days. Unresolved delivery attempts remain available for reconciliation; minimal usage and duplicate-send safeguards are retained separately. TaskTime Pro does not retain the email body or attached PDF. Our delivery provider processes messages under its own privacy policy.

Tax and accounting records are kept for the applicable statutory period: generally at least six years from the end of the relevant year under Malta VAT rules, with longer periods where required by late or corrected returns, disputes or legal obligations. Records subject to the VAT One Stop Shop scheme must be kept for ten years where that scheme applies. A billing-profile deletion request does not erase records we are legally required to retain.

8. Security

Because your work records live primarily in your browser and, if enabled, your own Google Drive or Dropbox, their security depends on your device, browser, and provider account. We cannot guarantee the security of those systems, but the architecture minimizes TaskTime-hosted data and limits connected services to their stated product functions.

9. You are in control

You can use TaskTime Pro without an account, work offline without cloud sync, export your records, disconnect sync, explicitly remove TaskTime Pro sync data and backups from your connected provider, disable reminders, and delete local app data from the Account page. TaskTime Pro does not maintain a hosted workspace copy from which it can recover your projects, tasks, invoices, expenses, or time entries.

10. Changes to this policy

This policy may be updated as TaskTime Pro evolves. The current version will always be posted here with the date it was last changed.