Privacy Policy
Last updated July 29, 2026. Telometris is built by NavCog on a simple premise: we collect only what the service needs to function, we never sell your data, and your business records belong to you.
What we collect
Account information: your name, email address, company name, and role, provided when you or your administrator creates an account.
Business records you create: time entries, project assignments, expenses, travel records, invoices, and notes. These exist solely so the service can do its job — tracking time and generating invoices.
Payment information: subscription billing is processed by Stripe. Your card details are held by Stripe, not by us; we store only a reference to your Stripe customer record and your subscription status.
Technical basics: session cookies to keep you signed in, and standard server logs (IP address, timestamps, request paths) retained briefly for security and troubleshooting. We do not use advertising trackers, behavioral analytics, or fingerprinting.
What we deliberately do not collect
No screenshots, keystroke logging, webcam capture, GPS tracking, or activity scoring. Telometris records the hours people report — nothing about what they did minute to minute.
We do not scan your records for marketing insights, build advertising profiles, or sell or rent any data to third parties. Ever.
How your data is used and shared
Your data is used to operate the service: displaying records to authorized members of your company, generating invoices and reports, sending transactional emails (password resets, invoice notifications, billing notices), and processing subscription payments.
Within your company, access follows role: workers see their own records; supervisors and administrators see the records their role requires. Across companies, data is fully isolated.
We share data only with the service providers required to run Telometris — hosting infrastructure, Stripe for payments, and our email delivery provider for transactional messages — each bound to use it only for providing their service to us. We will disclose records if legally compelled, and will notify you when the law allows.
Retention and deletion
Your records are retained while your subscription is active. If your subscription lapses, your data enters a grace period and is permanently deleted roughly 37 days after lapse, with warning emails beforehand.
You may request deletion of your company's data at any time by contacting privacy@telometris.com. Individual users can export their own records as CSV before leaving.
Security
All traffic is encrypted in transit with TLS. Passwords are stored only as salted hashes. Payment webhooks are cryptographically verified. Access to production systems is restricted and logged.
No system is perfectly secure; if we become aware of a breach affecting your data, we will notify affected customers promptly.
Your rights and contact
Depending on your jurisdiction, you may have rights to access, correct, export, or delete your personal data. To exercise them, email contact@navcog.com — we respond to all requests, regardless of jurisdiction.
If we change this policy materially, we will note the new effective date here and notify account owners by email.