Time Ledger
Privacy Policy
Time Ledger is designed around local data ownership. Your time data stays on your device by default, and Apple integrations are optional.
1. What this policy covers
This policy explains how Time Ledger version 1.1.1 handles information. The app does not require you to create or sign in to a Time Ledger account and does not use a Time Ledger account-sync server.
Time Ledger does not include advertising, third-party tracking, third-party analytics, or third-party crash-reporting SDKs. We do not sell your personal data.
2. Information you create
You may create life areas, activities, time entries, notes, goals, focus-session records, profile initials, theme choices, Calendar mappings, sync settings, and other app preferences.
These records are stored on your device by default. They are not automatically sent to us. Data leaves the app only through features you choose, such as private iCloud sync, Apple Calendar output, an export destination, or an email you send to support.
3. Optional private iCloud sync
If you enable iCloud Sync, Time Ledger uses Apple CloudKit to synchronize supported Time Ledger records in the private database associated with the Apple ID signed in on your device. Supported records include life areas, activities, time entries, goals, and focus records. Running timers and profile settings remain on the device.
Enabling sync requires your explicit confirmation and a verified Pro entitlement. Time Ledger does not copy these records to a developer-operated account server. Apple processes iCloud data under your Apple account settings and Apple’s policies.
Turning sync off stops future sync work but does not itself guarantee deletion of records already stored in iCloud or in Apple-managed backups. Use the app’s available sync controls and your Apple account/iCloud settings to manage those copies.
4. Optional Apple Calendar output
If you open Apple Calendar setup, Time Ledger requests Full Calendar Access so it can find, create, update, and remove only Calendar events that it safely maps to completed Time Ledger records.
You choose a writable calendar and which activities are eligible. Time Ledger writes the activity name and start/end time. Private notes are not copied. Your selected calendar account may sync those events to its provider. We do not receive the Calendar contents or the events created through this feature.
Calendar permission is not requested until you open Calendar setup. You can change permission in iOS Settings. Turning Calendar sync off keeps existing Calendar events unless you review and confirm a supported cleanup action.
5. Purchases and subscriptions
Time Ledger Pro may be available as monthly or yearly auto-renewable subscriptions or as a one-time lifetime purchase. Purchases use Apple StoreKit. Apple displays the price and purchase terms and processes your Apple account and payment information.
The app reads StoreKit product information and verified transaction or entitlement status on your device so it can unlock Pro features, restore purchases, and reflect revocation or expiration. We do not receive your payment-card details and do not operate a server that stores your StoreKit transaction history in this version.
6. Exports
You may export time records as CSV or prepare a privacy export as JSON. An exported file leaves the app only after you choose a save or sharing destination. You control the resulting file and are responsible for where it is stored or shared.
Deleting data inside Time Ledger does not delete files already exported, copied, emailed, backed up, or saved elsewhere.
7. Support email
If you choose Send feedback, Time Ledger opens a mail draft that you can review and edit. Nothing is sent until you send the email yourself.
We receive only what you choose to send, which may include your email address, message, screenshots, exported files, device and app context, or other attachments. We use support information to answer your request, troubleshoot, prevent abuse, and maintain the app. We retain it only as reasonably necessary for those purposes or to meet legal obligations.
Do not email passwords, payment-card details, authentication tokens, or information that is not needed for support. You may ask us to delete support information by emailing lrbkwjh@gmail.com.
8. Diagnostics and Apple services
Time Ledger does not include third-party analytics or crash-reporting SDKs. Apple may process StoreKit, iCloud, Calendar-account, App Store, TestFlight, crash, diagnostic, or aggregate sales information under Apple’s settings and policies. Apple may make some reports available to developers. These Apple-controlled systems are separate from automatic collection by a Time Ledger server.
The Privacy, Support, and Terms pages are static webpages. They must not include advertising pixels, third-party analytics, tracking scripts, or chat widgets unless this policy and the App Store privacy answers are updated first.
Public website access logs
When you visit these public webpages, our hosting server records technical request information, including your IP address, access time, requested URL, response status, browser user agent, and a referring page if your browser provides one. These logs are used for website security, availability, and troubleshooting, not advertising or cross-app tracking. Opening a webpage does not upload your Time Ledger time records, private notes, Calendar contents, or purchase history to the website.
Our current server configuration rotates web logs daily and retains fourteen rotated log files. Log access is restricted to server administration. Relevant information may be retained where necessary to investigate security incidents or meet legal obligations. You can contact us with questions about website data or deletion requests.
9. Exporting and deleting local data
Settings > Privacy provides export tools and a Delete time data action. In the current version, that action removes local life areas, time entries, goals, focus-session records, and active timer data. Existing activity definitions are made inactive/archived rather than erased.
Delete time data is not a complete reset of every item stored by the app. Profile initials, theme, purchase-entitlement records, some Calendar/iCloud sync metadata, and other app settings may remain.
The action does not automatically delete exported files, Calendar events, iCloud or device backups, records already stored in iCloud, messages sent to support, or copies saved outside Time Ledger. Removing the app may remove its local container according to iOS behavior, but Apple-managed backups and external copies may remain.
10. Retention, security, and children
Local records remain under your device and backup controls. Information you send to support is retained only as reasonably necessary for support, security, abuse prevention, and legal obligations.
We use reasonable safeguards for information we receive, but no electronic storage or transmission method is completely secure. Protect your device, Apple account, backups, and exported files.
Time Ledger is a general productivity app and is not specifically directed to children. If you believe a child sent personal information to support, contact us so we can review and delete it where appropriate.
11. Changes and contact
We may update this policy when the app’s data practices change. We will update the date at the top of this page and publish the revised policy before relying on materially different data handling.
Privacy and support contact: lrbkwjh@gmail.com
简体中文摘要
Time Ledger 默认把时间记录保存在本机,不要求创建 Time Ledger 账号,也不包含广告、第三方 tracking、第三方 analytics 或第三方 crash SDK。
- 你可以主动启用私有 iCloud 同步;支持的生活领域、活动、时间记录、目标和专注记录会通过你的 Apple ID 私有 CloudKit 数据库同步,Time Ledger 不把这些记录复制到自建账号服务器。
- 你可以主动启用 Apple Calendar;App 只把活动名称和起止时间写入你选择的日历,不复制私密备注,日历账户提供商可能同步这些事件。
- Pro 购买由 Apple StoreKit 处理。我们不接收银行卡信息,也不在本版本用自建服务器保存交易历史。
- 反馈邮件只有在你确认发送后才会送达支持邮箱;我们只处理你主动提供的内容。
- 访问公开网页时,网站服务器会记录 IP、访问时间、请求地址、响应状态、浏览器信息及浏览器提供的来源页面,用于安全、可用性和故障排查,不用于广告或跨 App 跟踪;当前日志配置为每日轮转、保留十四份轮转日志。打开网页不会上传你的时间记录、私密备注、日历内容或购买历史。
- “删除时间数据”会删除本机时间记录、目标、专注记录、生活领域和运行中的计时,并把活动定义归档;它不是完整清空,个人设置、部分同步元数据、外部导出、日历事件、iCloud/备份和支持邮件不会被该按钮统一删除。
如需隐私支持或删除已发送的支持材料,请联系 lrbkwjh@gmail.com。