Privacy Policy for TimeHuddle
Last Updated: June 29, 2026
Introduction
Medical Informatics Engineering ("we", "our", or "us") operates the TimeHuddle mobile
application (the "Service"). This page informs you of our policies regarding the collection,
use, and disclosure of personal data when you use our Service.
Information We Collect
Information You Provide
-
Account Information: Name, email address, and password when you create an
account
-
Profile Information: Display name, avatar, and optional profile details
-
Work Data: Clock in/out times, timesheet entries, work summaries, and task
descriptions
-
Team Communication: Messages, comments, and other communications within
your organization
-
Organization Data: Team assignments, organizational hierarchy, and member
roles
Automatically Collected Information
-
Device Information: Device type, operating system version, and unique
device identifiers
-
Usage Data: App usage patterns, feature interactions, and performance data
-
Push Notification Tokens: Device tokens for sending notifications (stored
securely, never shared)
How We Use Your Information
We use the collected data for:
-
Service Delivery: Providing time tracking, team collaboration, and work
management features
- Authentication: Securing your account and verifying your identity
-
Notifications: Sending relevant push notifications about work events, shift
reminders, and team updates
- Analytics: Improving app performance and user experience
- Support: Responding to your requests and providing customer support
We do not sell, trade, or rent your personal information to third parties.
Data Storage and Security
- All data is stored securely on our servers with industry-standard encryption
- We use HTTPS/TLS for all data transmission
- Push notification tokens are encrypted and stored separately from user data
- Account passwords are hashed using secure algorithms (never stored in plain text)
Data Sharing
We may share data only in these limited circumstances:
-
Within Your Organization: Work data, timesheets, and communications are
visible to other members of your organization as configured by your organization
administrator
-
Service Providers: With trusted third-party service providers who assist in
operating our service (e.g., cloud hosting, push notification services)
-
Legal Requirements: When required by law, regulation, or legal process
Third-Party Services
TimeHuddle uses the following third-party services:
-
Apple Push Notification Service (APNs): For delivering push notifications
to iOS devices
- MongoDB Atlas: For secure database hosting
- Better Auth: For authentication services
These services have their own privacy policies governing their use of your information.
Your Rights
You have the right to:
- Access: Request a copy of your personal data
- Correction: Update or correct your personal information
- Deletion: Request deletion of your account and associated data
- Export: Download your work data in a portable format
- Opt-Out: Disable push notifications through your device settings
Children's Privacy
TimeHuddle is not intended for use by children under the age of 13. We do not knowingly
collect personal information from children under 13.
Data Retention
We retain your data for as long as your account is active or as needed to provide services.
When you delete your account, your personal data is removed from our active systems within 30
days.
Work history and organizational records may be retained for legal or compliance purposes as
required by applicable employment laws.
Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by
posting the new Privacy Policy on this page and updating the "Last Updated" date.
Contact Us
If you have any questions about this Privacy Policy, please contact us:
California Privacy Rights
If you are a California resident, you have additional rights under the California Consumer
Privacy Act (CCPA):
- Right to know what personal information is collected
- Right to know if personal information is sold or disclosed
- Right to opt-out of the sale of personal information (we do not sell your data)
- Right to request deletion of personal information
- Right to non-discrimination for exercising your rights
European Privacy Rights
If you are located in the European Economic Area (EEA), you have rights under the General Data
Protection Regulation (GDPR):
- Right to access your personal data
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Right to withdraw consent
To exercise these rights, please contact us at support@mieweb.com.