Privacy Policy
Last updated: June 2026
This Privacy Policy explains how Tickin ("we", "us") collects, uses, and protects information when you use our website and the Tickin HR platform (the "Service"). By using the Service you agree to this policy.
- 01
Information we collect
Account and workspace information you provide (name, work email, company, team members); usage and time-tracking data generated when your team uses the Service (clock-ins, attendance, leave, payroll inputs); and technical data such as IP address, browser type, and pages visited, collected automatically. We do not intentionally collect sensitive personal data beyond what is necessary to operate HR features.
- 02
How we use your information
To provide and operate the Service, authenticate users, process payroll and reporting, send transactional and service emails, provide support, prevent abuse, and improve the product. Workspace data is processed on behalf of the customer (the employer) who controls it.
- 05
Integrations (Slack and Microsoft Teams)
If you connect Slack or Microsoft Teams, we store the workspace ID, the connection's access token, and a mapping of chat users to Tickin accounts (by email). Access tokens are encrypted at rest (AES-256-GCM). When these integrations are active, attendance, leave, and related notifications are delivered to the channels or people you choose — so that information passes through Slack or Microsoft as part of delivering the message. Tickin does not read your conversations, message history, or files. Disconnecting the integration stops this immediately; see https://tickin.pro/slack-data-and-privacy
- 06
Data security
Data is encrypted in transit using TLS. Our database runs on Amazon RDS with encryption at rest enabled and daily automated backups (7-day retention). Passwords are stored only as one-way bcrypt hashes, and sensitive integration credentials (such as Slack bot tokens and email server credentials) are encrypted with AES-256-GCM. Each workspace is isolated in its own dedicated database, and key changes are recorded in an append-only audit log with actor, timestamp, and before/after values. No method of transmission or storage is 100% secure, but we protect your data using industry-standard measures.
- 07
Data retention
We retain account and workspace data for as long as your workspace is active and as needed to provide the Service. After account closure we delete or anonymize data within a reasonable period, except where retention is required by law (for example, tax and payroll records).
- 08
Your rights
Depending on your location, you may have rights to access, correct, export, or delete your personal data, and to object to or restrict certain processing. Employees should contact their workspace administrator; you may also email support@tickin.pro and we will respond in line with applicable law.
- 09
International transfers
Tickin serves global teams, so your data may be processed in countries other than your own. Where required, we use appropriate safeguards for international transfers.
- 10
Children
The Service is intended for businesses and is not directed to individuals under 16. We do not knowingly collect data from children.
- 11
Changes to this policy
We may update this policy from time to time. Material changes will be reflected here with an updated date; continued use of the Service after changes constitutes acceptance.
- 12
Contact
Questions about this policy or your data? Email support@tickin.pro (or info@tickin.pro).