Privacy Policy
Effective September 29, 2026
1. Scope
This policy explains how CronoMark, operated as a sole proprietorship in the United States, handles information when you use our website and timekeeping service.
2. Information we collect
- Account information such as name, email address, authentication information, timezone, and account identifiers.
- Workspace information such as workspace name, memberships, roles, invitations, and project assignments.
- Business and timekeeping data such as clients, projects, tasks, time entries, notes, billable status, rates, and reporting data you choose to enter.
- Billing information such as subscription, customer, price, seat, and payment-status information. Payment card details are handled by Stripe rather than stored by CronoMark.
- Technical information needed to operate, secure, diagnose, and monitor the service.
- Information you provide when contacting support.
3. How we use information
We use information to provide and secure CronoMark; authenticate users; manage workspaces and permissions; track and report time; administer trials, subscriptions, and seats; send transactional messages; provide support; diagnose failures; maintain backups; and meet applicable obligations.
4. Service providers
We currently use Neon for PostgreSQL database and authentication infrastructure, Vercel for application hosting and delivery, Stripe for subscription billing and payment processing, Resend for transactional email, and Sentry for application error monitoring. These providers process information as necessary to provide their services. Providers may change as CronoMark evolves.
5. Sharing
We do not sell personal information. We may share information with service providers as necessary to operate CronoMark, in response to valid legal requirements, to protect service integrity and users, or as part of a business transfer.
6. Workspace administration
Workspace owners and authorized administrators may access and manage workspace information, memberships, projects, assignments, reports, and timekeeping data according to their role. If you use CronoMark through an organization, that organization may control business data associated with its workspace.
7. Retention and deletion
We retain information while needed to provide the service and for legitimate operational, security, billing, backup, and legal purposes. Workspace data may remain in backups for a limited period after deletion from active systems. For the initial version of CronoMark, account or workspace deletion requests should be sent to support@cronomark.com. We may verify identity and workspace authority before deletion.
8. Security
We use reasonable administrative and technical safeguards designed to protect information, including authenticated access, tenant-aware authorization controls, encrypted network connections provided by our infrastructure, production monitoring, and database backup and recovery procedures. No system can guarantee absolute security.
9. Cookies and similar technologies
CronoMark uses technologies necessary for authentication, sessions, security, and core service operation. Optional advertising and behavioral-tracking technologies are not part of the current product. If that changes, we will update this policy and add consent controls when required.
10. International use
CronoMark is operated from the United States and currently targets U.S. business users. Information may be processed in the United States and other locations where our service providers operate.
11. Your choices
You may update supported profile and workspace information in the service and export supported time-report data by CSV. For access, correction, deletion, or other privacy requests that cannot be completed in the application, contact us.
12. Changes
We may update this policy as CronoMark evolves. We will revise the effective date and provide additional notice when appropriate for material changes.
13. Contact
Privacy questions or requests may be sent to support@cronomark.com.
