Privacy Policy
Last updated: 24 December 2024
Introduction
Trackable NZ ("we", "our", or "us") is committed to protecting the privacy of our users. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our time tracking application and related services.
By using Trackable NZ, you agree to the collection and use of information in accordance with this policy.
Information We Collect
Account Information
When you create an account, we collect:
- Email address
- Password (encrypted)
- Name (as provided by you or your employer)
- Company/organisation name
Time and Attendance Data
When you use the app for time tracking, we collect:
- Clock in and clock out times
- Break start and end times
- Travel start and end times
- Notes and custom field entries
- Shift history and timesheet records
Location Data
If GPS tracking is enabled by your employer, we collect:
- GPS coordinates at clock in and clock out
- Periodic GPS coordinates during your shift (frequency determined by your employer's settings)
- Travel route data when travelling between sites
Important: Location tracking is controlled by your employer and only occurs while you are clocked in. We do not track your location outside of work hours. You can see your GPS settings in the app or ask your employer about their tracking configuration.
Photos
If photo verification is enabled by your employer:
- A photo may be captured at clock-in time for identity verification purposes
- Photos are stored securely and only accessible to your employer
Device Information
We may collect basic device information to ensure the app functions correctly:
- Device type and operating system
- Browser type (for the web app)
- App version
Chat Messages
If you use the team chat feature:
- Messages sent in team chat
- Direct messages to your employer
How We Use Your Information
We use the collected information for the following purposes:
| Purpose | Data Used |
|---|---|
| Provide time tracking services | Account info, time data, location data |
| Generate timesheets and reports | Time data, break/travel records |
| Verify work attendance | Location data, photos (if enabled) |
| Enable team communication | Chat messages |
| Calculate NZ employment law compliance | Shift duration, break times |
| App functionality and improvements | Device information |
| Customer support | Account info, usage data |
Data Storage and Security
Where We Store Your Data
Your data is stored using Google Firebase, a secure cloud platform. Data may be stored on servers located in Australia or other regions as part of Google's global infrastructure.
Security Measures
We implement appropriate security measures to protect your data:
- All data is transmitted over encrypted HTTPS connections
- Passwords are hashed and never stored in plain text
- Access to data is restricted based on your role (employee vs manager)
- Firebase security rules ensure users can only access their own company's data
- Regular security updates and monitoring
Data Sharing
Within Your Organisation
Your time tracking data, location data, and photos are visible to your employer (the manager/admin of your company account). This is the primary purpose of the application.
Third-Party Services
We use the following third-party services to operate Trackable NZ:
- Google Firebase: Database, authentication, and file storage
- Google Maps: Map display and location services
- Vercel: Web hosting
- Stripe: Payment processing (for subscription payments only - we do not store your card details)
- Resend: Email delivery for invitations and notifications
We Do Not
- Sell your personal information to third parties
- Share your data with advertisers
- Use your data for purposes unrelated to the time tracking service
- Access your location when you are not clocked in
Data Retention
We retain your data for as long as:
- Your account is active
- Required by your employer for payroll and record-keeping purposes
- Required by New Zealand employment law (employers must keep wage and time records for 6 years)
If you or your employer request account deletion, we will delete your personal data within 30 days, except where we are legally required to retain it.
Your Rights
Under the New Zealand Privacy Act 2020, you have the right to:
- Access: Request a copy of your personal data
- Correction: Request correction of inaccurate data
- Deletion: Request deletion of your data (subject to legal retention requirements)
- Complaint: Lodge a complaint with the Office of the Privacy Commissioner
To exercise these rights, contact us at privacy@trackable.co.nz or support@trackable.co.nz.
Employee vs Employer Responsibilities
For Employees
Your employer controls the GPS tracking settings, photo verification requirements, and data retention for your account. If you have concerns about how your data is being collected or used, please speak with your employer first.
For Employers
As the account administrator, you are responsible for:
- Informing employees about GPS tracking and photo verification
- Configuring appropriate tracking settings for your business needs
- Complying with employment laws regarding employee monitoring
- Managing data access and retention within your organisation
Children's Privacy
Trackable NZ is a workplace application and is not intended for use by children under 16. We do not knowingly collect personal information from children.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any significant changes by:
- Posting the new policy on this page
- Updating the "Last updated" date
- Sending an email notification for material changes
Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
New Zealand Privacy Commissioner
If you are not satisfied with our response to a privacy concern, you can contact the Office of the Privacy Commissioner:
Website: www.privacy.org.nz
Phone: 0800 803 909