Legal
GPS and IP Notice
GPS and IP Notice
Plain-language summary
GPS is off by default and optional. You can clock in and out without GPS. The app may ask the browser for GPS only after a clear in-app notice, normally during first login or first clock-in/out.
IP/client metadata is recorded automatically for security, abuse prevention and context. You must receive clear information about this, and the app must provide opt-out/deletion where implemented.
GPS and IP may help with context, but do not guarantee evidence or a legal result.
What is collected?
| Data | When | Status |
|---|---|---|
| GPS latitude/longitude | Only if the browser provides location during clock-in/out | Optional; off by default |
| GPS accuracy | With GPS, if recorded | Optional |
| GPS attempt time | During GPS attempt | Automatic metadata |
| GPS result | gps_success, gps_disabled_by_user, gps_denied_by_browser, gps_unavailable, gps_timeout, gps_error, gps_deleted_by_user | Automatic metadata |
| IP address | During relevant account, security and clock events if the app determines a client IP | Automatic, with clear information and deletion/opt-out flow where implemented |
Why?
GPS/IP is used to provide extra context for your time records and for security/integrity. It may help you explain where and when a record was created.
What GPS/IP cannot do
GPS/IP does not by itself prove:
- that you were physically at a certain place;
- that you worked the whole period;
- that an employer must pay you a specific amount;
- that a union, authority or court will accept the documentation;
- that you will win a case.
Your GPS choice
You can deny GPS in the browser. The app must still save the clock action without GPS. You can also change GPS permissions in browser or phone settings.
The app must have an app-level GPS setting in account/privacy settings. GPS consent/permission must be removable again.
IP address
IP address is different from GPS. IP is recorded automatically because the server receives technical network information as part of the request. IP is used for security, abuse protection, audit and context.
Users must be able to delete/request deletion of exact IP metadata. When IP is deleted, the exact IP must be deleted completely unless a minimal anonymised security/audit reference is necessary.
Deletion
Exact GPS coordinates and exact IP/client metadata are kept until account deletion, or until the user deletes/requests deletion of GPS/IP.
The user must be able to delete GPS/IP without deleting the time record itself. When GPS is deleted, the app may keep only a minimal non-identifying outcome, for example gps_deleted_by_user. When IP is deleted, the exact IP must be deleted completely unless a minimal anonymised security/audit reference is necessary.
Suggested short text near the clock button
GPS is optional. You can clock without GPS. The app may record IP/client metadata for security and context. GPS/IP does not guarantee evidence or a specific outcome. Including GPS/IP in exports requires password verification.
Contact
Contact: support@fejlgoblin.ovh