Privacy Policy
Updated 2026-09-13
This policy explains how TallyWage handles information when you use the app, create an account or contact support. You can use local features without creating an account.
1. Who to contact
The person responsible for the processing described in this policy is Arbios Kabashi, Gurra e Kocit, 32001 Istog, Kosovo.
TallyWage is responsible for the processing described in this policy. For privacy questions or requests about your information, contact shiftpay.info@gmail.com. Publisher and contact information is also available from Help & legal.
2. Information you provide
Your records can include job names, hourly rates, break and overtime rules, shifts, payslip comparison amounts, private payments, income, expenses, bills, budgets, notes and app preferences. Payroll settings can include your country, age, tax class, family-related inputs, insurance settings and a church-tax setting.
An account also includes your email address, an account identifier, your password (stored by our authentication provider only as a salted hash, never readable by us) and information needed to maintain secure sign-in sessions. If you contact support, we receive the contact details, message and any attachments you send. Do not send passwords, sign-in codes or information that is not needed to resolve your request.
3. Local records and synchronized history
Without an account, your records are stored on your device. Calculations take place on your device. When you sign in, the history associated with that account is stored online and synchronized with your devices. Existing guest history is transferred into an account only when you choose to move or restore it.
Records entered while signed in, including the pay settings and notes you save, form part of account history. Offline changes are uploaded when synchronization succeeds. Clearing device storage or uninstalling can remove local records and changes that have not synchronized.
4. Screenshots and image recognition
When you choose to read a schedule or payslip image, recognition runs on your device. The app does not send the image to an external AI service. You review and save the extracted fields; the source image is not stored as part of your account history. Your device, photo library or operating system may retain the original or temporary copies.
In a browser, recognition software and language files are downloaded from content-delivery providers. Those providers receive ordinary connection information, such as an IP address, when a download is requested. They do not receive your screenshot through the recognition feature.
5. Why we process information
We use ordinary account and record information to provide the features you request, including sign-in, synchronization, account management and support related to those features. Where the GDPR applies, the basis is performance of our agreement with you or steps you request before that agreement: Article 6(1)(b).
Necessary security, abuse prevention and general support rely on our legitimate interests in maintaining a safe, functioning service: Article 6(1)(f). Processing necessary to meet a legal obligation is based on Article 6(1)(c). Where a separate feature asks for consent, that consent applies only to the stated purpose and can be withdrawn. Providing an email address is necessary for an account, but optional local use remains available.
6. Sensitive information
Some pay settings or notes can reveal sensitive information. For example, a church-tax setting can indicate religious affiliation, and free-text notes or documents can reveal health information. Saved settings and notes synchronize with account history when you are signed in; they are not treated as local-only fields.
Enter only information needed for your own calculations and avoid unnecessary medical details, beliefs or third-party information. You can edit or delete saved entries.
7. Service providers and other recipients
We use providers of cloud hosting and storage, account authentication, transactional email delivery and technical content delivery to operate the app. Depending on their role, they receive account records, email and delivery details, or connection and security information. Support correspondence is handled through our email service.
Information may also be disclosed to competent authorities or professional advisers where necessary to meet a legal obligation or establish, exercise or defend legal claims. Your records are not sold, and the app does not include advertising or third-party audience analytics. Sign-in emails do not use open or click tracking.
8. Processing locations
Primary account storage is configured in the European Economic Area, and sign-in email uses a sending region there. The sending region does not determine where all email data is processed. Email delivery and related service operations can involve processing in other countries, including the United States.
The providers of account storage and sign-in email are subject to contractual confidentiality and data-protection requirements. Their agreements incorporate European Commission standard contractual clauses for international transfers where these safeguards are required. Contact shiftpay.info@gmail.com for information about the applicable arrangements and how to obtain a copy of the relevant safeguards.
9. Storage and security
The app uses authenticated access and account-level controls to separate synchronized records. Native app sign-in credentials use protected platform storage; browser sessions and app data use browser storage. Account connections use encrypted transport.
Your history is not end-to-end encrypted, and authorized service personnel may have access when needed to operate or support the service. Exported backups are not encrypted by TallyWage. Protect your devices and email account, sign out on shared devices and store exports somewhere private. No storage or transmission system can guarantee absolute security.
10. How long information is kept
Local records remain until you remove them or the device’s storage is cleared. Active account history remains available while you keep it in the account; you can edit, replace or delete it. Support correspondence is retained as needed to answer the request, follow up on the issue and meet any applicable legal obligations.
Security logs and service backups have separate retention cycles. Their retention depends on operational recovery, investigation of abuse and applicable legal requirements. Residual copies may remain until those cycles end; account deletion should not be understood as immediate erasure from every backup or log.
11. Deletion and your copies
Delete all data clears the active history but keeps your sign-in account. Delete account, available in Settings → Your account, removes the sign-in account and its active cloud history after a fresh email-code confirmation. Sign-out removes the account copy on the device after synchronization.
Deleting an account cannot remotely remove backups you exported, copies on offline devices, original photographs or operating-system backups. Remove those copies separately if you no longer want them. A new account does not restore the deleted account’s history.
12. Your choices and rights
You can inspect and correct your entries, export a machine-readable backup and delete account data within the app. Subject to applicable law, you may also request access, rectification, erasure, restriction or portability, and object to processing based on legitimate interests. Any consent you have given can be withdrawn without affecting processing that was lawful before withdrawal.
Send requests to shiftpay.info@gmail.com. We may need proportionate information to verify that the request concerns your account. You may complain to the data-protection authority responsible for your place of residence, work or the alleged infringement. TallyWage’s calculations do not make binding employment, credit or other decisions with legal or similarly significant effects on you.
13. Changes to this policy
The date shown on this page identifies the current version. If we materially change how personal information is handled, we will communicate the change through the app or another appropriate channel, and request consent where required. A new policy does not automatically authorize a new use of your information.
14. Purchases and card details
Paid purchases are not currently open. When you choose a web purchase, the hosted checkout will collect your card information directly for the payment processor. TallyWage does not receive or store your full card number or card security code. Never send card numbers or security codes to support.
Billing records may include your account and payment-customer identifiers, selected plan, transaction references, amount and currency, trial and renewal dates, payment status, invoices, and cancellation or refund records. These records support your purchase and access under Article 6(1)(b) GDPR, legal accounting duties under Article 6(1)(c), and proportionate fraud prevention or legal claims under Article 6(1)(f).
Payment processors receive the payment, billing and connection information needed to process and secure the purchase; their privacy information is available in the hosted checkout. Billing records are kept as needed to administer the purchase, resolve disputes and meet applicable accounting and tax retention duties. Deleting app history or an account does not erase records that must legally be retained.