Security
How we handle your data
Your hours say a lot about your business. Here is where they live, who can reach them, and what we do to keep it that way.
Where your data lives
Everything runs on servers inside the European Union. Your data is not copied to other continents and is never sold or handed to advertisers.
Signing in
Ergosy has no passwords to steal. You sign in with a single-use code sent to your email, valid for ten minutes and limited in how often it can be tried. Changing your email address requires confirmation on both the old and the new address.
Who can see what
Everything belongs to an organisation. Within it, roles decide who may manage projects, see everyone's hours, or open reports. A project can be limited to the people who work on it.
In transit and at rest
All traffic runs over TLS. Sign-in codes and extension tokens are stored hashed, never in readable form, and tokens expire.
This website
No cookies and no third-party trackers. We count visits with a daily rotating one-way hash that cannot be traced back to a person, so there is nothing to consent to.
Data processing agreement
You process your own team's personal data through Ergosy, which makes you the controller and us the processor. Under Article 28 of the GDPR that requires an agreement between us, so we wrote one you can download, read and sign — including the annexes listing what we process, how we secure it, and who else is involved.
Or get it with your details already filled in
Protected by reCAPTCHA. The Google privacy policy and terms of service apply.
Found something?
Mail us at hello@ergosy.com and we will respond quickly. We will not take legal action against anyone who reports a problem in good faith and gives us time to fix it.
Questions
Frequently asked
Where is our data stored?
Do you use cookies on this website?
Can we export everything and leave?
Start tracking time your team will actually keep up
Set up your first project in under five minutes. No card, no sales call, nothing to install.