Introduction
Welcome to Streamline ("we," "our," or "us"). We are committed to protecting your privacy and handling your data in an open and transparent manner. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and web services (collectively, the "Service").
Streamline is a workforce management and time tracking application designed for businesses to track employee work hours, locations, and job assignments.
Information We Collect
1. Personal Information
When you create an account, we collect:
- Name
- Email address
- Phone number (optional)
- Company name
- Password (encrypted and never stored in plain text)
2. Location Data
To provide our core time tracking and workforce management features, we collect:
- Foreground Location: When you clock in or out, we capture your current location to verify your work location.
- Background Location: While you're clocked in, we track your location in the background to record your work path and verify you remain at the job site. This tracking stops automatically when you clock out.
- Location History: We store your location breadcrumb trail during work hours for audit purposes and to verify work attendance.
Important: Location tracking only occurs while you are clocked in as "working." When you are clocked out, no location data is collected. You have full control over when tracking begins and ends.
3. Time Tracking Data
- Clock in/out timestamps
- Total work hours
- Break durations
- Job assignments
- Activity logs and audit trails
4. Photo Data (Optional)
If your company administrator enables photo verification, we may collect photos you take when clocking in or out. This feature is optional and can be disabled by your administrator.
5. Device Information
- Device type and model
- Operating system version
- App version
- Device identifiers (for push notifications)
6. Usage Data
- App interactions and feature usage
- Error logs and crash reports
- Performance metrics
How We Use Your Information
We use the collected information for the following purposes:
1. Core Service Delivery
- Track employee work hours and attendance
- Verify job site location and geofencing compliance
- Generate timesheets and payroll reports
- Manage job assignments and workforce allocation
- Calculate overtime and work hours
2. Account Management
- Create and maintain your user account
- Authenticate users and prevent unauthorized access
- Send important account notifications
- Process billing and subscriptions
3. Service Improvement
- Analyze app usage to improve features
- Debug technical issues and crashes
- Optimize app performance
- Develop new features based on usage patterns
4. Communication
- Send service-related notifications
- Respond to support requests
- Send important updates about the Service
Data Sharing and Disclosure
Within Your Organization
Your data is shared with your company administrators who have access to:
- Your time tracking records and work hours
- Your location data during work hours
- Your job assignments and activity logs
- Reports generated from your data
Third-Party Service Providers
We use trusted third-party services to operate our Service:
- Supabase (Data storage and authentication) - All data is encrypted at rest and in transit
- Stripe (Payment processing) - Handles subscription billing securely
- Vercel (Web hosting) - Hosts our web application
- Expo (Mobile app infrastructure) - Powers our mobile application
These providers are contractually obligated to protect your data and may only use it to provide services to us.
Legal Requirements
We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., court orders, subpoenas, or government agencies).
What We DON'T Do
- We do not sell your personal data to third parties
- We do not share your data with advertisers
- We do not use your data for marketing purposes unrelated to the Service
- We do not track your location when you're clocked out
Data Security
We implement industry-standard security measures to protect your data:
- Encryption: All data is encrypted in transit (HTTPS/TLS) and at rest
- Authentication: Secure password hashing (bcrypt) and session management
- Access Control: Role-based access ensures only authorized users see your data
- Database Security: Row-level security policies prevent unauthorized data access
- Regular Updates: We keep our systems updated with the latest security patches
While we strive to protect your data, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security.
Data Retention
We retain your data for as long as necessary to provide the Service and comply with legal obligations:
- Active Accounts: Data is retained while your account is active
- Deleted Accounts: Upon account deletion, personal data is removed within 30 days (unless required by law to retain longer)
- Time Records: May be retained for 7 years to comply with employment and tax regulations
- Backups: Data in backups may persist for up to 90 days after deletion
Your Rights and Choices
You have the following rights regarding your data:
Access and Portability
- Request a copy of your personal data
- Export your time records and reports
Correction
- Update your profile information in app settings
- Request corrections to inaccurate data
Deletion
- Request deletion of your account and data
- Note: Your employer may retain time records for legal/payroll purposes
Location Control
- Disable location services in device settings (will prevent clock in/out)
- Clock out to stop all location tracking
How to Exercise Your Rights
Contact us at privacy@streamline-app.com to exercise any of these rights.
Children's Privacy
Our Service is not intended for individuals under the age of 16. We do not knowingly collect personal information from children. If you believe we have collected data from a child, please contact us immediately.
International Data Transfers
Your data may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws. By using our Service, you consent to the transfer of your data to our servers and service providers.
We ensure that all data transfers comply with applicable data protection laws and that appropriate safeguards are in place.
GDPR Compliance (European Users)
If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR):
- Right to access your personal data
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Right to withdraw consent at any time
Our legal basis for processing your data is:
- Contract Performance: Processing is necessary to provide the Service
- Legitimate Interest: Business operations, security, and service improvement
- Consent: Where you have provided explicit consent
- Legal Obligation: Compliance with laws and regulations
CCPA Compliance (California Users)
If you are a California resident, you have rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information is collected
- Right to know if personal information is sold or disclosed
- Right to opt-out of sale of personal information
- Right to deletion of personal information
- Right to non-discrimination for exercising CCPA rights
Note: We do not sell your personal information.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by:
- Updating the "Last Updated" date at the top of this policy
- Sending a notification through the app or email
- Posting a prominent notice on our website
We encourage you to review this Privacy Policy periodically. Your continued use of the Service after changes are posted constitutes your acceptance of the updated policy.
Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Consent
By using our Service, you acknowledge that you have read and understood this Privacy Policy and consent to the collection, use, and disclosure of your information as described herein.