Bay Area Handrailing LLC Time Tracking Application
Effective date: May 7, 2026
Bay Area Handrailing LLC ("we," "us," or "our") operates an internal time-tracking
application (the "Application") used by our employees to record work time and
synchronize that time to our QuickBooks Online accounting system. This Privacy
Policy explains what information the Application processes, why, and how it is
protected.
1. Who this Policy applies to
The Application is provided solely to active employees and contractors of
Bay Area Handrailing LLC for internal business operations. It is not offered to
the general public. If you are not an authorized user of the Application, please
do not attempt to access it.
2. Information we collect
The Application processes the following information:
Account information — your name, work email address (if used for login), and an authentication PIN that you set or are issued by your manager.
Time entries — clock-in and clock-out timestamps for each task, the customer or job you are working on, the type of work performed, and any description you enter.
Device and connection information — IP address, browser type, and approximate device type, captured automatically by our hosting provider for security and reliability purposes.
QuickBooks Online data — when an authorized administrator connects the Application to our QuickBooks Online company, the Application reads the list of employees, customers, and service items from QuickBooks and writes time activity entries back to QuickBooks. We do not collect QuickBooks accounting records, invoices, payroll figures, banking details, or tax information.
3. How we use the information
To authenticate users and authorize access to the Application.
To record time worked for internal scheduling, payroll, and customer billing.
To create and maintain time activity entries in our QuickBooks Online company.
To diagnose technical problems, prevent abuse, and improve the Application.
4. Sharing with third parties
The Application shares information only with the following parties and only for
the purposes described:
Intuit Inc. (QuickBooks Online) — time activity entries, employee references, customer references, and service item references are transmitted to Intuit's QuickBooks Online API solely to record work time in our company's accounting system. The connection is authorized through Intuit's standard OAuth 2.0 flow.
Our hosting and infrastructure providers — providers that host the Application, store its database, and route network traffic process information on our behalf under contractual data-protection obligations.
We do not sell, rent, or trade your information. We do not share information with
advertisers. We do not use your information to build advertising profiles.
5. How we protect information
All connections to the Application use HTTPS (TLS) encryption in transit.
OAuth tokens that authorize the Application's access to QuickBooks are stored only on the server side. They are never transmitted to or stored on user devices, and are never embedded in client-side code.
Authentication PINs are stored using one-way cryptographic hashing.
Access to administrative functions is restricted to authorized managers.
OAuth refresh tokens are rotated on each refresh and can be revoked centrally.
6. Data retention
Time entries are retained for as long as required for payroll, customer billing,
tax, and recordkeeping purposes, consistent with applicable law. Account
information is retained while your account is active and for a reasonable
period thereafter for audit purposes. You may request deletion of personal
information that is no longer required for legal or business purposes by
contacting us at the address below.
7. Your choices and rights
Depending on your jurisdiction, you may have the right to access, correct, or
request deletion of personal information that we hold about you, and to lodge a
complaint with a data-protection authority. To exercise these rights, contact
us using the information in the "Contact us" section.
California residents have the rights described in the California Consumer
Privacy Act (CCPA), as amended. We do not "sell" or "share" personal information
as those terms are defined under the CCPA.
8. Children's privacy
The Application is provided exclusively to adult employees and contractors. It
is not directed to children, and we do not knowingly collect personal information
from anyone under the age of 16.
9. Changes to this policy
We may update this Privacy Policy from time to time. The "Effective date" above
indicates when it was last revised. Material changes will be communicated to
authorized users.
10. Contact us
Questions or requests regarding this Privacy Policy can be sent to: