Hosting

Australian region, one cloud, no sub-processing of your records

Where it runs
Amazon Web Services, in the Asia Pacific (Sydney) region — ap-southeast-2. Your timesheet records are stored and processed there.
In transit
HTTPS everywhere, with TLS 1.2 or better. The apps, the API and the email transport all require it.
At rest
Encrypted by the managed AWS services that hold it. We do not run our own database servers or our own mail servers.
Backups
Point-in-time recovery is enabled on the stores that hold customer records, and a workspace can be exported in full on request.

Separation

One workspace cannot see another

Every request is scoped

A request carries which workspace it is for, and that is checked against what the signed-in person is actually a member of — on the server, on every call, not in the browser.

Membership is in the token

The workspaces a person belongs to are minted into their sign-in token by the identity provider. The application cannot widen it.

Removal takes effect immediately

When an administrator removes someone, the next request they make is refused. There is no cache to wait out.

We are not routinely in your data

Running the platform does not give us a way into a workspace. The narrow exceptions — helping you export or restore your own data — are performed on request and recorded in your own audit trail.

Sign-in

There is no password to steal

Signing in sends a one-time code to your work address. There is no password to reuse, to phish or to leak, and no public sign-up form for anyone to probe.

Access is by invitation only: an administrator in your workspace adds a person by their email address, and that is the only route in. Sessions are short-lived and refresh in the background; an administrator removing someone ends their access on the next request.

What we do not collect

The shortest section, on purpose

No card details, ever

The product is free during early access and we hold no payment instrument. When billing exists it will be handled by a specialist payments provider and card numbers will still never reach us.

No location, no device monitoring

CliqHours records hours a person entered. It does not track where they were, when they were at a desk, or what was on their screen.

No advertising or tracking pixels

This website carries no third-party analytics, no advertising tags and no cross-site trackers. It sets no cookies.

No mailing list by default

Product email is transactional — a sign-in code, an invitation, a notice about your own timesheet. We do not add anyone to a marketing list.

Reporting

Found something?

We would much rather hear it from you than not.

Email support@cliqhours.com with the detail — what you did, what happened, and roughly when. We will come back to you.