Privacy Policy
Last updated July 20, 2026
TimeOS Invoicing ("the app") turns time-tracking data in your Notion workspace into an editable, downloadable invoice. This page explains what data the app touches, why, and how you can control it.
What we collect
- A Notion OAuth access token, issued when you connect your workspace. It's used to read the Invoices, Sessions, Tasks, and Contacts data your integration is granted access to.
- Your Notion workspace and user ID, used to identify your session and to look up the right stored token.
- The cosmetic edits you make in the invoice editor — renamed line items, merges, row order, layout, currency display — saved per invoice page so the editor looks the way you left it next time.
We don't run analytics, tracking scripts, or third-party pixels anywhere in the app. The only cookie set is the session cookie described below.
How we use it
The Notion token is used only to read your data live, on your request, in order to render or PDF your invoice. The app never writes to your Notion workspace — see how it works for the read-only design. The session cookie identifies which workspace/user is asking; your saved edits are used only to redisplay your customized invoice.
Where it's stored
Everything is stored in Deno KV, the app's built-in database, hosted on Deno Deploy. There's no separate database, data warehouse, or analytics vendor involved.
Who we share it with
Nobody. The only outbound request this app makes is to Notion's API, to read the data your token authorizes. We don't sell, share, or use your data for advertising or any purpose beyond rendering your invoice.
How long we keep it
Your token and saved edits persist until you clear them:
- Reset edits (⋮ menu) deletes your customizations for that specific invoice.
- Log out / Reconnect (⋮ menu) clears your session cookie, so you're asked to re-authorize on your next visit.
Your controls
- Revoke the app's access anytime from Notion itself: Settings → Connections in your workspace. This invalidates our stored token immediately.
- Reset edits or reconnect from the ⋮ menu in the editor.
- Request full data deletion by emailing us.
Cookies
One cookie: a signed, HttpOnly, Secure,
SameSite=Lax session cookie that identifies your
workspace and user. It can't be read or forged by page scripts, and
it isn't used for tracking.
Children
This app is a business tool and isn't directed at children. We don't knowingly collect data from anyone under 16.
Changes to this policy
If anything material changes, we'll update the date at the top of this page.
Contact
Questions or deletion requests: krisxtheory@gmail.com