Your Privacy Matters

Privacy Policy

Last updated: July 17, 2026

TracTeck ("we", "us", or "our") is committed to protecting the privacy and security of your personal and biometric data. This Privacy Policy explains how TimeBridge ("the Platform") collects, uses, stores, and protects information when you use our workforce management services. By using TimeBridge, you agree to the practices described in this policy.

1. Information We Collect

  • Personal Identifiable Information (PII): Full name, email address, phone number, employee ID, designation, department, and profile image.
  • Biometric Data: Fingerprint templates and facial recognition data captured via authorized biometric devices, stored in encrypted form.
  • Location Data: GPS coordinates during mobile check-in and geofence validation.
  • BLE Tracking Data: Real-time zone location, movement events, and activity timestamps from BLE tags assigned to workers.
  • Usage Data: Login timestamps, app interactions, device metadata, and audit logs.

2. How We Use Your Data

  • Attendance tracking, shift scheduling, and payroll calculation.
  • Real-time worker safety monitoring and productivity analytics via BLE tracking.
  • Leave management, exception requests, and workforce allocation.
  • Compliance reporting, audit trails, and dispute resolution.
  • Sending notifications, reminders, and announcements related to work schedules.

3. Data Security & Encryption

  • All sensitive PII and biometric data is encrypted at rest using AES-256-GCM.
  • Encryption keys are isolated from the frontend and managed via secure server-side environment secrets.
  • Data is only decrypted in memory after Row-Level Security (RLS) validation passes.
  • All data in transit is secured via HTTPS/TLS encryption.
  • Role-based access control ensures users only see data permitted by their role (admin, HR manager, supervisor, finance, employee, viewer).

4. Data Storage & Retention

  • Data is stored in secure, cloud-hosted databases with per-tenant isolation (multi-tenancy).
  • Biometric templates are stored as irreversible hashes — raw fingerprint or face images are never retained.
  • Attendance and tracking data is retained for the duration of the active subscription plus a 90-day grace period for export.
  • Upon account termination, all tenant data is permanently deleted within 30 days unless legally required otherwise.

5. Your Rights & Consent

  • Explicit written consent is required from employees before biometric data (fingerprint/face) is collected.
  • Employees may request access to, correction of, or deletion of their personal data at any time.
  • Employees may withdraw biometric consent — alternative attendance capture methods (PIN, card, manual) will be provided.
  • Employees may opt out of BLE tracking if not part of a safety-critical role where tracking is mandatory.

6. Data Sharing & Third Parties

  • We do not sell, rent, or trade your personal or biometric data to any third party.
  • Data is only shared with authorized personnel within your organization as permitted by role-based access.
  • Aggregated, anonymized analytics may be used for product improvement — no individual PII is included.
  • Legal compliance: Data may be disclosed to authorities if required by law or court order.

7. Updates to This Policy

  • TracTeck may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements.
  • Users will be notified of material changes via email or in-app notification at least 14 days before they take effect.
  • Continued use of TimeBridge after changes take effect constitutes acceptance of the updated policy.

Questions about your data?

For privacy enquiries, data requests, or to withdraw biometric consent, contact our Data Protection Officer.

admin@tracteck.com
TimeBridgeby TracTeck

© 2026 TracTeck. All rights reserved.