Data processing
Last updated 8 October 2026
This page is the data processing agreement between Clockade (Innovation With Pixels) as processor and the customer as controller, for personal data the customer puts into Clockade. It forms part of the terms.
What we process
Staff names, work emails, roles, working time, attendance, leave, payroll figures, expenses, screenshots and app and website names captured while a timer runs, and vault entries. Purpose: to provide Clockade to the customer. Duration: while the customer uses Clockade, then 90 days.
Our commitments
- We process the data only on the customer's documented instructions, which are its use and settings of Clockade.
- Everyone who can access it is bound to confidentiality.
- We keep it secure: HTTPS, hashed passwords, encryption of secrets, separation between customers, access logs and nightly backups.
- We use the service providers listed in the privacy policy and will tell admins by email before adding one.
- We help the customer answer requests from its staff (copies, corrections, deletion).
- We tell the customer without undue delay, and within 72 hours, if we become aware of a breach affecting its data.
- At the end, we delete the data after 90 days, or sooner if the customer asks, apart from backups which expire within 30 days.
Transfers
Data is stored in the European Union (Hetzner, Germany). Where a provider processes data elsewhere, it is covered by standard contractual clauses or an equivalent safeguard.
To sign a copy for your records, write to support@clockade.com.